Understanding Security and Privileged Access in Azure Active Directory
Azure AD is also nowhere close to being as mature as on-prem AD. There’s a lot of things you can’t do – such as fine grained delegation of admin authority. And there’s no organizational units in Azure AD.
Here’s a few of the technical areas to be reviwed:
– Privileged access controls
– Administrative roles and Delegation
– Synchronization security
– How to determine who really has access to Azure AD
– How to detect unauthorized changes
– How vulnerable is Azure AD to external attacks
Read more at – Understanding Security and Privileged Access in Azure Active Directory