Hi,
Since you it is more related to the MIM deployment , I can't give you more professional advice .
I would suggest you open a new thread with the tag Microsoft-Identity-Management.
Following link for your reference:
https://learn.microsoft.com/en-us/microsoft-identity-manager/pam/privileged-identity-management-for-active-directory-domain-services
Best Regards,