Azure System by Trustle is a cloud platform for developing and deploying applications, data, and compute resources, and for running Microsoft applications globally. Azure AD provides the access management framework for all users, resources, and systems on the platform. Azure AD differs from Microsoft Active Directory by not using a hierarchical naming structure or LDAP protocol. It offers a flat namespace for user accounts and manages access through groups and roles. Azure AD also provides Service Accounts for applications. The Trustle connector for Microsoft Azure allows management of access to Azure cloud resources and Azure AD resources like users, groups, roles, and service accounts. System owners and provisioners can view the dashboard, which provides an overall health check of your Azure platform with a 'Trustle Score,' a list of Azure accounts, their risk exposure, and recommendations for risk remediation or avoidance. System owners and provisioners can view all resources on the Azure instance and decide which should be visible and requestable by users. Trustle offers defaults, but admins can set the sensitivity of Azure resources, affecting approval workflows and context queues. Microsoft advises using Role Based Access Control (RBAC) and group membership to manage access to Azure resources. The strategy should grant users the least privilege necessary to perform their tasks. Enabling the principle of least privilege requires understanding the platform, the sensitivity of services, and the ability to monitor and correct changes that may violate policy. Azure has roles like Owner and Contributor, which should be limited to users responsible for managing the Azure instance. Other roles create less exposure on the system. Azure allows organizations to create custom roles, which the Trustle connector manages, but additional roles can complicate administration. Trustle allows system owners to manage permissions and instances across all environments, such as Test, Dev, and Prod, in a distributed and coordinated way. This enables deployment pipelines to be continuously secure and monitored, while keeping administration overhead low for any given person. Trustle discovers all users and profile data on Azure, linking accounts to Trustle users for precise access management. It detects system accounts and manages their access and visibility. Trustle identifies all roles, including custom roles, and manages role membership, enhancing Azure security operations. Trustle assists in organizing and operationalizing security practices. Trustle helps you right-size the access of your service accounts and enables you to move infrequently used resources to Temporary or Just-in-Time access. This means that users who need infrequent access to valuable assets and data can gain that access easily, while making their accounts less useful or attractive to attackers.