Hello, to avoid enabling each user to an Azure AD enterprise application you can create an Azure AD dynamic group that automatically adds the intended users and use such group to manage access to the application.
Let us know if you need additional assistance. If the answer was helpful, please accept it so that others can find a solution.