Enforce least privilege for Entra ID Company Branding with the new Organizational Branding role
Hello friends,
I’m pleased to announce General Availability (GA) of the Organizational Branding role for Microsoft Entra ID Company Branding.
This new role is part of our ongoing efforts to implement Zero Trust network access by enforcing the principle of least privilege for users when customizing their authentication user experience (UX) via Entra ID Company Branding.
Previously, users wanting to configure Entra ID Company Branding required the Global Admin role. This role, though, has sweeping privileges beyond what’s necessary for configuring Entra ID Company Branding.
The new Organizational Branding role limits its privileges to the configuration of Entra ID Company Branding, significantly improving security and reducing the attack surface associated with its configuration.
To assign the role to a user, follow these steps:
1. Log on to Microsoft Entra ID and select Users.
2. Select and open the user to assign the Organizational Branding role.
3. Select Assigned roles and then Add assignments.
4. Select the Organizational Branding Administrator role and assign it to the user.
Once the settings are applied, the user will be able to configure the authentication UX via Entra ID Company Branding.
Learn more about how to configure your company branding and create a consistent sign-in experience for your users
James Mantu
Sr. Product Manager, Microsoft identity
LinkedIn: jamesmantu | LinkedIn
Learn more about Microsoft Entra:
- Related Articles: Add company branding to your organization's sign-in page (preview) - Azure AD - Microsoft Entra | Microsoft Learn
- See recent Microsoft Entra blogs
- Dive into Microsoft Entra technical documentation
- Join the conversation on the Microsoft Entra discussion space and Twitter
- Learn more about Microsoft Security
Published on:
Learn moreRelated posts
Sync identities from Rippling to Microsoft Entra ID
Today, we’re thrilled to announce that customers using Rippling HCM can now automatically provision users to on-premises Active Directory and ...
Microsoft Entra ID Governance for government
I’m pleased to announce that as of November 1, 2024, Microsoft Entra ID Governance is available for federal agencies, state and local governme...
Update to security defaults
As part of the Secure Future Initiative, we’ve evolved our security approach to align with three security principles: secure by design, secure...
Meet Microsoft Entra at Ignite 2024: November 18-22
Microsoft Ignite is just around the corner, taking place from Monday, November 18, 2024 through Friday, November 22, 2024, in Chicago, Illinoi...
Manage Microsoft Entra ID role assignments with Microsoft Entra ID Governance
I’m excited to announce that we now support Microsoft Entra role assignments in Microsoft Entra ID Governance's Entitlement Management feature...
The latest enhancements in Microsoft Authenticator
Hi folks, I'm thrilled to announce three major Microsoft Entra ID advancements that will help you protect your users with phishing-resi...
Microsoft Security announcements and demos at Authenticate 2024
The Microsoft Security team is excited to connect with you next week at Authenticate 2024 Conference, taking place October 14 to 16 in Carlsba...
What's new in Microsoft Entra - September 2024
We’re excited to announce the general availability of Microsoft Entra Suite—one of the industry’s most comprehensive secure access solutions f...
Explore the key benefits of Microsoft Entra Private Access
The traditional network security models are becoming increasingly ineffective in a world where remote work and cloud services are the norm. Co...
Join us at the Microsoft Entra Suite Showcase!
This fall, we are bringing the Microsoft Entra Suite Showcase to cities worldwide. Join us to explore how our latest advancements in secure id...