r/microsoft365 • u/ac3_92 • 5h ago
What is your biggest Microsoft Entra governance pain point?
I'm curious what other organizations struggle with most.
In the environments I've worked with, the biggest challenges aren't authentication or MFA anymore. It's governance after access has already been granted.
Things like:
- Nobody knows who owns an application.
- Hundreds of security groups with no clear purpose.
- Access reviews only happen before an audit.
- Standing privileged access that nobody questions anymore.
- Employees not knowing what they can actually request.
If you could change one thing about Microsoft Entra Governance tomorrow, what would it be?