{"id":218,"date":"2026-04-03T22:47:30","date_gmt":"2026-04-04T01:47:30","guid":{"rendered":"https:\/\/proglab.com.br\/?page_id=218"},"modified":"2026-05-24T16:00:15","modified_gmt":"2026-05-24T19:00:15","slug":"recommend-a-solution-for-identity-governance","status":"publish","type":"page","link":"https:\/\/proglab.com.br\/?page_id=218","title":{"rendered":"Recommend a solution for identity governance"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">For identity governance there are three main areas that you want to focus on and each one of these areas plays a critical role in securing access and managing risk. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The first thing we have is <strong>conditional access<\/strong>. You&#8217;ll want to understand how to configure policies that enforce <strong>multifactor authentication<\/strong>, block access from specific geographic regions, and allow access only for managed devices or approved clients.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">These are examples of things that you&#8217;ll definitely want to know. Keep in mind that these controls help you ensure that only trusted users and devices can access these resources.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A few key considerations when using Conditional Access:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>MFA for more granular control<\/li>\n\n\n\n<li>Access prevention for specific geographic areas<\/li>\n\n\n\n<li>Access only from managed devices and only from approved client apps<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/learn.microsoft.com\/en-us\/training\/modules\/design-authentication-authorization-solutions\/6-design-for-conditional-access\/?ns-enrollment-type=learningpath&amp;ns-enrollment-id=learn.wwl.design-identity-governance-monitor-solutions\"><strong>Design for conditional access<\/strong><\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Next take a closer look at identity protection. Keep in mind that this is where <strong>risk based policies <\/strong>come in to play. Know how to set thresholds like requiring actions when a user&#8217;s risk level is high or when a sign in risk is medium or above. And understand those various levels.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Also be familiar with how to <strong>investigate and respond to these risks<\/strong> using the Azure portal. Now this is going to be one of those key things to identify threats and risks within your organization.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A few key considerations when using Identity Protection:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>&#8220;High&#8221; threshold for user risk policy<\/li>\n\n\n\n<li>&#8220;Medium and above&#8221; threshold for sign-in risk policy.<\/li>\n\n\n\n<li>Risk investigation in the Azure portal<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/learn.microsoft.com\/en-us\/training\/modules\/design-authentication-authorization-solutions\/7-design-for-identity-protection\/?ns-enrollment-type=learningpath&amp;ns-enrollment-id=learn.wwl.design-identity-governance-monitor-solutions\"><strong>Design for identity protection<\/strong><\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">And finally study how to design an effective <strong>access review plan<\/strong>. You&#8217;ll need to identify which resources should be reviewed, determine what automatic actions should be taken for <strong>users who no longer need access<\/strong>, and choose the right reviewers whether it&#8217;s the resource owner or someone else.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A few key considerations when designing Access Review Plan<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Resources to be reviewed<\/li>\n\n\n\n<li>Automatic action for resources<\/li>\n\n\n\n<li>Reviewer background<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/learn.microsoft.com\/en-us\/training\/modules\/design-authentication-authorization-solutions\/8-design-for-access-reviews\/?ns-enrollment-type=learningpath&amp;ns-enrollment-id=learn.wwl.design-identity-governance-monitor-solutions\"><strong>Design for access reviews<\/strong><\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">These are three areas: <strong>conditional access<\/strong>, <strong>identity protection<\/strong>, and <strong>access reviews<\/strong>, which can work together to secure your environment. And understanding how to configure these and apply these is going to be essential for passing your exam.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>For identity governance there are three main areas that you want to focus on and each one of these areas plays a critical role in securing access and managing risk. The first thing we have is conditional access. You&#8217;ll want to understand how to configure policies that enforce multifactor authentication, block access from specific geographic &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/proglab.com.br\/?page_id=218\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Recommend a solution for identity governance&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"parent":172,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-218","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/pages\/218","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/proglab.com.br\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=218"}],"version-history":[{"count":7,"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/pages\/218\/revisions"}],"predecessor-version":[{"id":853,"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/pages\/218\/revisions\/853"}],"up":[{"embeddable":true,"href":"https:\/\/proglab.com.br\/index.php?rest_route=\/wp\/v2\/pages\/172"}],"wp:attachment":[{"href":"https:\/\/proglab.com.br\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=218"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}