Earn a 50% discount on the DP-600 certification exam by completing the Fabric 30 Days to Learn It challenge.
Hi,
I need the Users with Email-Address in my Report from this Azure Policy Report.
If I try it with the Resource Graph Explorer, I won't get the Usernames. My current solution is a Powershell, which loop through all AAD Users and get the Roleassignment:
Get-AzRoleAssignment -RoleDefinitionName "owner" -ObjectId $user.Id -ExpandPrincipalGroups
But then I need the MFA Data for this users. This Script is very slow (~3hours) and I think there is a better way.
The Recommendation for this topic can be found in the azure portal under:
Microsoft Defender for Cloud >> Recommendations >> Enable MFA >> Accounts with owner permissions on azure resources should be MFA enabled
Can somebody help me with this task, or help me to connect this policy Data from azure?
Thanks!