The Device Pros Enterprise Mobility

The Device Pros Enterprise Mobility


EMS Azure Active Directory Premium – Part 1 – Episode 19 - The Device Pros Enterprise Mobility

November 06, 2014

EMS (Enterprise Mobility Suite) by Microsoft - Episode 19
EMS Part 1 of 3 Part Series - Azure Active Directory Premium
In episode 19  (http://thedevicepros.com/ems-azure-active-directory-premium)Frank and Alfred take a deep dive into EMS Azure Active Directory Premium. One of three things that comes with the Microsoft Enterprise Mobility Suite.  In the next two episodes The Device Pros (http://thedevicepros.com)will cover the other two components of EMS, Azure RMS and Microsoft Intune.

EMS (http://2405433.r.msn.com/?ld=d3x3WgOufv8YJCkW8uTW3s7zVUCUxTO5idT26iHoPucUAiKw15pPUMiLOiDfZ_ZebV0ifGdD3NHErFsspWeT1m14moKKEHMivQdaQNydYctJjep1IEGfA4thkxUK5VXP6w0kpY7QcfCV9JgvRjWrNMI6aIiCabeYaFmyaIa3ZQrcwF3QXK&u=http%3a%2f%2f1156.xg4ken.com%2fmedia%2fredir.php%3fprof%3d492%26camp%3d87186%26affcode%3dkw105126%26k_inner_url_encoded%3d1%26cid%3d2640142621%26queryStr%3dmicrosoft%2520enterprise%2520mobility%2520suite%26url%5b%5d%3dhttp%253A%252F%252Fclk.atdmt.com%252FEM3%252Fgo%252F475497026%252Fdirect%252F01%252F%253Fhref%253Dhttp%3a%252F%252Fview.atdmt.com%252Faction%252Fmrt203_PFXUSGAPrivateCloudITSTBFY14GenericActi_1%252Fv3%252F%255Batc1._kenshoo_clickid_%252Fatc2.492%255D%252F%253Fhref%253Dhttp%3a%252F%252Fwww.microsoft.com%252Fen-us%252Fserver-cloud%252Fproducts%252Fenterprise-mobility-suite%252Fdefault.aspx%253FWT.srch%253D1%2526WT.mc_ID%253DSEM_BING_USEvergreenSearch_Intune%2526CR_CC%253DUnassigned) includes Azure Active Directory Premium which enables:

* Self-service password reset for your people, to reduce helpdesk calls
* Multi-factor authentication (http://azure.microsoft.com/en-us/services/multi-factor-authentication/)options for greater security
* Group-based provisioning and single sign on for over 2000 SaaS apps (http://www.microsoft.com/industry/government/guides/cloud_computing/4-SaaS.aspx)
* Machine learning (http://azure.microsoft.com/en-us/services/machine-learning/)-driven security reports for visibility and threat management
* Robust sync capabilities across cloud and on-premises directories

What is Azure Active Directory?
Azure Active Directory is a service that provides identity and access management capabilities in the cloud. In much the same way that Active Directory is a service made available to customers through the Windows Server operating system for on-premises identity management, Azure Active Directory (Azure AD) is a service that is made available through Azure for cloud-based identity management. Learn more (http://msdn.microsoft.com/library/hh967611.aspx)

Because it is your organization's cloud directory, you decide who your users are, what information to keep in the cloud, who can use the information or manage it, and what applications or services are allowed to access that information.

When you use Azure AD, it is Microsoft's responsibility to keep Active Directory running in the cloud with high scale, high availability, and integrated disaster recovery, while fully respecting your requirements for the privacy and security of your organization's information.
Integration with your on-premises Active Directory
Azure AD can be used as a standalone cloud directory for your organization, but you can also integrate existing on-premise Active Directory with Azure AD. Some of the features of integration include directory sync and single sign-on, which further extend the reach of your existing on-premises identities into the cloud for an improved admin and end user experience. Learn more (http://msdn.microsoft.com/library/jj573653)
Integration with your applications
Application developers can integrate their applications with Azure AD to provide single sign-on functionality for their users. This enables enterprise applications to be hosted in the cloud and to easily authenticate users with corporate credentials. It also enables software as a service (SaaS) providers to make authentication easier for users in Azure AD organizations when authenticating to their services.