Automate auditing of Azure AD group memberships

Girish Prajwal 706 Reputation points
2021-12-17T13:16:21.82+00:00

Hi Team,

We are planning to implement Group membership audits for the security groups on our Azure AD. Please suggest if you have a script which does the job.

Regards,
Girish

Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

Accepted answer
  1. JamesTran-MSFT 36,911 Reputation points Microsoft Employee Moderator
    2021-12-27T21:31:42.437+00:00

    @Girish Prajwal
    Thank you for your post!

    When it comes to automating Access Reviews, you should be able to do this by creating an access review of an access package. When creating or editing an existing policy within your Access Package, you can designate a Review Frequency, which will run the access review on an annual, bi-annual, quarterly, monthly, or weekly basis.

    160639-image.png

    For more info:
    Start new access package
    Create an access review of an access package

    If this isn't what you're looking for, I'd recommend leveraging our User Voice forum and creating a feature request, so our engineering team can look into implementing this.

    If you have any other questions, please let me know.
    Thank you for your time and patience throughout this issue.

    ----------

    Please remember to "Accept Answer" if any answer/reply helped, so that others in the community facing similar issues can easily find the solution.

    1 person found this answer helpful.

1 additional answer

Sort by: Most helpful
  1. Devaraj G 2,096 Reputation points Volunteer Moderator
    2021-12-19T09:33:51.407+00:00

    Hi,

    You should be able to view the audit logs though Azure AD audit logs and you can also access the audit log through the Microsoft Graph API.
    Refer this link for more info : https://learn.microsoft.com/en-us/azure/active-directory/reports-monitoring/concept-audit-logs#what-license-do-i-need

    1 person found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.