Microsoft Entra ID · Short case
Access for external collaborators
Summary
Previously, some external collaborators received an internal account with a password managed by the organisation. I changed this to guest identities, so they could use their own account and only receive the resources they needed.
- My role
- Invitation, application assignment and removal.
- Users
- Providers, consultants and auditors.
- Review
- Manual when the collaboration ends.
- Environment
- Entra B2B and enterprise applications.
What changed
The collaborator receives a B2B invitation and uses their usual identity. I then assign the specific application, group or resource they need, without creating a full internal identity.
I have used this model for application support, SSO validation and technical audits.
Result
External collaborators use their own identity and only receive the applications or resources they need. When the work ends, I review and remove the assignments manually, without leaving an extra internal account in the directory.