On behalf of a partner, we reviewed a large and complex set of Azure AD groups used across Microsoft 365 and Azure resources. Over time, group sprawl had led to inconsistencies, duplication, and unclear access rights. We carried out a structured analysis to determine which groups were still in use, what purpose they served, and where consolidation was possible.
Work included:
• Export and review of all Azure AD groups and members
• Tagging and classification of groups by purpose, use, and ownership
• Identification of redundant, unused, or legacy groups
• Planning and supporting safe removal or merging of entries
• Documentation for ongoing governance and clarity
This process significantly improved group hygiene, tightened access controls, and gave the organisation a clean foundation for future identity management practices.