Home › Forums › Azure › SC-300 Microsoft Identity and Access Administrator › PIM roles
-
It’s really annoying to have to copy and paste the question each time. Why can’t you put ID’s on each question for easy reference??
Category: SC-300 – Plan and Automate Identity Governance
You manage a Microsoft Entra tenant that uses Microsoft Entra ID Identity Protection to detect and respond to risky sign-ins across the environment.
You intend to configure Microsoft Entra Privileged Identity Management (PIM) so that privileged access to critical resources is available only when necessary
Which combination of roles can be managed by Entra PIM?
<ul data-question_id=”15649″ data-type=”single”>
The anwer that only “privileged” roles can be assigned with PIM is wrong.
I can assign network administrator -
Thanks for raising this. Your observation is correct.
Microsoft Entra Privileged Identity Management supports all Microsoft Entra roles, including roles like Network Administrator, not just highly privileged ones such as Global Administrator. So your point that the Network Administrator role can also be assigned via PIM is valid.
The only exception in the options is Account Administrator, which is a classic subscription role and not supported in PIM under Microsoft Entra ID.
We have flagged this question for review and will update the answer and explanation to better reflect the correct behavior of PIM and avoid confusion. Thanks again for pointing this out!
Regards,
Lois @ Tutorials Dojo
Log in to reply.