Skip to content
Identity and access

Entra decides who, and now what.

Microsoft Entra is the directory of record in a large share of enterprises, which makes it the thing an Atlassian estate has to obey. Our work is Entra as the directory of record, agent identity, and Azure DevOps as a migration source.

We work across Azure where Entra is the directory of record. Agent identity arrived here early, which makes it one of the few places the lifecycle question is already answerable.

What it is

Microsoft Entra is the directory of record in a large share of enterprises, which makes it the thing an Atlassian estate has to obey. Entra Agent ID extended that model to non-human identities earlier than most, so the lifecycle question has a real answer here rather than a roadmap.

We work across Azure rather than reselling it. Most engagements meet it at the identity boundary, and a good number meet it at Azure DevOps, which is usually a source rather than a destination.

identity owner expires one owner recorded, five unaccounted L1 L2 L3 L4

Where it fits

Azure touches three layers. L1 is Entra ID and Entra Agent ID, the directory for people and for agents. L2 is the platform, including Azure DevOps, which in our engagements is generally the system being migrated away from. L3 is Azure Policy, where guardrails are enforced rather than described. L4 is Foundry, where models reach production and inherit whatever identity boundary exists.

Questions we get

Are you a Microsoft partner?
Atlas Bench is a Microsoft Solutions Partner. Our involvement is the identity boundary and migration off Azure DevOps.
Entra or Okta?
Whichever is already authoritative. The failure is running both as sources of truth, which produces two lists that disagree quietly.

Find out what you are actually running.

Fixed scope. The assessment reads the estate as it is: instances, schemes, licensing, and the decisions a migration would force you to make anyway. You get the findings, the ownership gaps, and the order to close them in.