Active Directory Premium p2 has all the features of P1, and along with that, you will get a few excellent additional features with Microsoft Azure Active Directory Premium p2 version, and those are as below
- Identity Protection: Here, you will find excellent functionalities like risky account detection, Vulnerabilities, and Different Risk-based conditional access policies.
- Identity governance: This feature includes key features like access reviews, Privileged Identity Management, etc.
Let’s discuss this in detail.
Table of Contents
Identity Protection
It helps with Risky accounts detection, Risk-based Conditional Access policies, Risk events investigation, etc. You can consider it as a tool that helps with the following benefits
- It helps to export the data to third-party utilities so that it will be helpful for further investigation.
- Helps to investigate the risk factors.
- Helps with the automation process that helps identify identity-based risks quickly.
The User risk policy
Using the user risk policy, the Administrator can protect the users and group members. It also allows the Administrator to set the risk level, i.e., Low, Medium, or High. Based on the risk level, the Admin can set the conditions so that the Policy can be executed based on the condition.
The Sign-in risk policy
The Administrator can protect the sign-in users and group members using the sign-in risk policy. It also allows the Administrator to set the risk level, i.e., Low, Medium, or High. Based on the risk level, the Admin can set the conditions so that the Policy can be executed based on the condition.
Identity Governance
Identity Governance includes Access reviews, Privileged Identity Management, Entitlement Management, etc.
Privileged Identity Management (PIM)
Azure Active Directory Privileged Identity Management (PIM) is an excellent service that allows you to manage, control, and monitor access to the important in your organization. Privileged Identity Management (PIM) also helps to limit admin access.
The PIM works with 4 essential steps. Those are as below
- Assign
- Activate
- Approve
- Audit

I am Rajkishore, and I am a Microsoft Certified IT Consultant. I have over 14 years of experience in Microsoft Azure and AWS, with good experience in Azure Functions, Storage, Virtual Machines, Logic Apps, PowerShell Commands, CLI Commands, Machine Learning, AI, Azure Cognitive Services, DevOps, etc. Not only that, I do have good real-time experience in designing and developing cloud-native data integrations on Azure or AWS, etc. I hope you will learn from these practical Azure tutorials. Read more.
