In this section

Module Summary

8 hours · Module 1 · Free

What you built in Module 1

Seven sections turned the governance baseline from Module 0 into documented ecosystem understanding with your first program artifacts.

Identity type inventory — every identity type in your tenant catalogued as a governance object: members, guests, service principals, managed identities, workload identities. Each with its governance requirements identified and the current governance gap measured.

Data model map — the attributes that lifecycle automation, dynamic groups, and access reviews depend on. You know which attributes are populated, which are missing, and what governance mechanisms fail silently without them.

Data quality baseline — specific percentages for the attributes that matter: manager coverage, department coverage, employeeHireDate coverage. The numbers that determine whether your governance automation governs the whole population or a fraction of it.

Group architecture assessment — total groups, ownership coverage, description coverage, dynamic vs static ratio. The group landscape audited against the governance requirements that access reviews and lifecycle workflows demand.

Delegation boundaries — administrative unit design for scoped administration that matches your organizational structure.

Licensing model — what governance capabilities your current licensing tier provides, what requires an upgrade, and the cost model for the business case.

First ADRs and risk register entriesIAM1-001 through IAM1-003 documenting the design decisions from the ecosystem assessment. The program package has its first artifacts.

What Module 2 builds

Module 2 — Implementing and Managing User Identities — moves from assessment to implementation. You'll build the user identity management layer: the user object model, provisioning with governance built in from the start, bulk operations, attribute management, password policies, authentication method registration, lifecycle states, external identities, and Graph API patterns for identity management at scale.

The transition from "I've assessed the ecosystem" to "I'm building the governance controls" happens in Module 2.

What comes after the free modules

Phase 2. User identity management, group architecture, role-based access

Phase 3. Authentication architecture, passwordless, Conditional Access

Phase 4. App access governance, service principal and workload identity, AI agents

Phase 5. PIM, privileged access, delegation architecture

Phase 6. Lifecycle workflows, entitlement management, access reviews, compliance

Capstone. Complete IAM program assembly, stakeholder challenges, executive summary

Cancel anytime. Every tool in the course is free.

💬

How was this module?

Your feedback helps us improve the course. One click is enough — comments are optional.

Thank you — your feedback has been received.
Unlock the Full Course See Full Course Agenda