Manage identities, licenses, roles, and access in Azure AD (Microsoft Entra ID)
Azure AD is a Sim integration in the Security category. Sim is the AI workspace where teams build and deploy AI agents. Sim's Azure AD integration provides 36 tools that AI agents can use inside Sim's visual workflow builder. Azure AD connects with one-click OAuth. Free to start at sim.ai.
Last updated
Integrate Azure Active Directory into your workflows. Create, update, and delete users and groups, manage group memberships, assign and remove licenses, reset passwords, revoke sign-in sessions, read sign-in and directory audit logs, grant and revoke app and directory roles, and read registered devices and conditional access policies. Device writes are not supported.
Sign up at sim.ai in seconds. No credit card required. Your workspace is ready immediately.
Open your workspace, drag an Azure AD block onto the workflow builder, and connect your account with one-click OAuth.
Pick the tool you need, wire in an AI agent for reasoning or data transformation, and run. Your Azure AD automation is live.
Ready-to-use templates featuring Azure AD. Click any to build it instantly.
36 Azure AD tools available to Sim agents.
List users in Azure AD (Microsoft Entra ID)
Get a user by ID or user principal name from Azure AD
Create a new user in Azure AD (Microsoft Entra ID)
Update user properties in Azure AD (Microsoft Entra ID)
Delete a user from Azure AD (Microsoft Entra ID). The user is moved to a temporary container and can be restored within 30 days.
List groups in Azure AD (Microsoft Entra ID)
Get a group by ID from Azure AD (Microsoft Entra ID)
Create a new group in Azure AD (Microsoft Entra ID)
Update group properties in Azure AD (Microsoft Entra ID)
Delete a group from Azure AD (Microsoft Entra ID). Microsoft 365 and security groups can be restored within 30 days.
List members of a group in Azure AD (Microsoft Entra ID)
Add a member to a group in Azure AD (Microsoft Entra ID)
Remove a member from a group in Azure AD (Microsoft Entra ID)
Add or remove subscription licenses (SKUs) on a user in Microsoft Entra ID. Removing a license immediately revokes the access it granted to the associated services.
List the subscription licenses assigned to a user in Microsoft Entra ID
List the subscription SKUs the tenant owns, including how many license units are prepaid and how many are consumed
Invalidate every refresh token and session cookie issued to a user, forcing them to sign in again on all applications and devices. Revocation can take a few minutes to take effect and does not apply to external users.
Set a specific password on a user by updating their password profile. Cannot be used for federated users. Requires an administrator role in Microsoft Entra ID.
Reset another user's password through their password authentication method. Leave the new password empty to have Microsoft generate one and return it. The user is prompted to change the password at their next sign-in. Cannot be run against your own account.
List the authentication methods a user has registered, such as passwords, phone numbers, FIDO2 keys, and authenticator apps
List sign-in events from the Microsoft Entra ID sign-in logs, newest first. Requires a Microsoft Entra ID P1 or P2 license. Apply a date filter to keep large queries from timing out.
List directory audit records showing who changed what in Microsoft Entra ID, such as user creation, group membership changes, and role assignments
List the application role assignments granted to a user, including assignments the user inherits from groups they are a direct member of
Grant a user an application role on a service principal, giving them access to that application
Revoke an application role assignment from a user, removing their access to that application. Takes the assignment's own ID, not the app role ID.
List the enterprise applications and service principals in the tenant, including the app roles each one exposes
List every user, group, and service principal assigned to an application, by reading the app role assignments on its service principal. Recently granted or removed assignments can take time to appear.
List the administrator roles that are activated in the tenant, such as Global Administrator and User Administrator. Roles that have never been activated are not returned.
List the principals holding an administrator role. Returns up to 1000 members; this endpoint does not support paging.
Grant a user an administrator role in Microsoft Entra ID. This is a privileged change that expands what the user can do across the tenant.
Revoke an administrator role from a user in Microsoft Entra ID. Removes only the role membership; the user account itself is not deleted.
List the devices registered in Microsoft Entra ID
Get a registered device by its object ID from Microsoft Entra ID
List the devices a user has registered or owns. Devices the caller cannot read are returned with only their ID and the remaining fields null.
List the conditional access policies configured in the tenant, including their state and the conditions and controls they enforce. Read-only.
Get a single conditional access policy by ID, including the conditions it matches and the controls it enforces. Read-only.
Sim's Azure AD integration adds 36 tools to the AI agents you build in Sim's visual workflow builder. Manage identities, licenses, roles, and access in Azure AD (Microsoft Entra ID).