Microsoft Entra
Tenant architecture, authentication, Conditional Access, governance, External ID, applications and workload identity.
Explore Microsoft EntraIdentity, access & cloud security
MAITS helps New Zealand organisations resolve difficult identity, access and cloud security problems — from strategy and architecture through implementation guidance and assurance.
Technology matters, but only after the trust boundary, access decision and operating responsibility are clear.
Capability map
MAITS spans identity, authentication, context, authorisation, provisioning, governance and assurance — with every hand-off designed as part of one control system.
Identity platform
Tenant architecture, authentication, Conditional Access, governance, External ID, applications and workload identity.
Explore Microsoft EntraActive Directory, Entra Connect, Cloud Sync, source authority, authentication, writeback and Exchange identity dependencies.
Explore Hybrid identityCustomer journeys and controlled transition from Azure AD B2C to Microsoft Entra External ID.
Explore Customer identity & B2C migrationAccess, governance & integration
Joiner-mover-leaver lifecycle, entitlements, reviews, roles, ownership and segregation of duties.
Explore Identity governancePrivileged personas, Entra PIM, eligible access, activation, emergency access and assurance.
Explore Privileged identity & accessPhishing-resistant authentication, registration, recovery and coherent context-aware policy.
Explore Passkeys & Conditional AccessOIDC, OAuth, SAML, SCIM, Graph, APIs and custom connectors across the application lifecycle.
Explore Application identity & provisioningCloud & digital trust
Human and workload identity, least privilege, secrets, network boundaries, policy and telemetry.
Explore Azure cloud securityIssue, hold and verify reusable digital evidence across people, organisations and trust boundaries.
Explore DiligenceIDTechnical capability
The technology is organised around the control outcome it supports, not presented as an undifferentiated product list.
Active Directory · Microsoft Entra ID · hybrid directories · tenant and forest architecture
Entra Connect · Cloud Sync · attribute mapping · source authority · supported writeback
OIDC · SAML · FIDO2 · passkeys · Windows Hello for Business · MFA
SCIM · Microsoft Graph · REST APIs · custom connectors · reconciliation
Conditional Access · RBAC · ABAC patterns · groups · application roles · claims
PIM · entitlement management · access reviews · lifecycle workflows · SoD
External ID · B2B · federation · registration · recovery · B2C migration
DiligenceID · Verified ID integration · credentials · authority · consent
How MAITS engages
The starting point may be a risk, platform, migration or difficult decision. The method keeps the control objective visible from discovery through to operation.
Map the people, platforms, applications, dependencies, ownership and material control gaps.
Set the intended trust boundaries, access decisions, architecture and governance outcomes.
Prioritise work around risk, dependencies and the organisation’s capacity to implement and operate it.
Review design and implementation so that important controls do not disappear between architecture and production.
Engagements can focus on architecture, a specific platform or migration, implementation assurance, or a structured IAM Health Check. Scope is agreed around the organisation’s environment and priorities.
Start a conversation
Bring the identity risk, migration deadline or architecture decision. We’ll help turn it into a practical scope.