← Back to projects

Microsoft Entra ID · Short case

Access for external collaborators

Summary

Previously, some external collaborators received an internal account with a password managed by the organisation. I changed this to guest identities, so they could use their own account and only receive the resources they needed.

My role
Invitation, application assignment and removal.
Users
Providers, consultants and auditors.
Review
Manual when the collaboration ends.
Environment
Entra B2B and enterprise applications.

What changed

The collaborator receives a B2B invitation and uses their usual identity. I then assign the specific application, group or resource they need, without creating a full internal identity.

I have used this model for application support, SSO validation and technical audits.

Result

External collaborators use their own identity and only receive the applications or resources they need. When the work ends, I review and remove the assignments manually, without leaving an extra internal account in the directory.