Improve security with Privileged Identity Management

Important

Some of the functionality described in this release plan has not been released. Delivery timelines may change and projected functionality may not be released (see Microsoft policy). Learn more: What's new and planned

Enabled for Public preview General availability
Admins, makers, marketers, or analysts, automatically Jan 2024 Mar 2024

Business value

Customers can now use Privileged Identity Management (PIM) in Azure Active Directory (Azure AD) to assign admin roles and use Power Platform admin center with the elevated role assignments. PIM is a service that enables you to manage, control, and monitor access to important resources in your organization.

Feature details

Customers can use PIM to assign Azure AD admin roles to users. Users can log into Power Platform admin center with the elevated, role assignments and can request just-in-time System Administrator access to a specific environment. Customers can use the official [PowerShell scripts] (https://github.com/microsoft/PowerApps-Samples/tree/master/powershell/UserManagement/Microsoft.PowerPlatform.Administration.UserManagement) to remove the user from the System Administrator role after the PIM assignment expires.