Simplify IT Automation – Trigger, Track, and Report on the operation of Azure Automation, Orchestrator, Power Automate, Logic Apps and PowerShell

Microsoft Entra ID Automation for System Center Orchestrator

The Kelverion Integration Pack for Microsoft Entra ID extends Microsoft System Center Orchestrator with ready-to-use activities for automating identity administration.

Formerly known as Azure Active Directory, Microsoft Entra ID provides the identity foundation for modern cloud and hybrid IT. It helps ensure the right people, devices and applications can access the right resources at the right time, while supporting security controls such as strong authentication, risk-based access and least-privilege administration.

For organisations using Microsoft 365, Azure and third-party SaaS applications, Microsoft Entra ID acts as a central control point for identity. IT teams can manage user lifecycle events, assign application access, apply Conditional Access policies, support secure collaboration and reduce password-related support overhead through self-service and passwordless options.

Typical Automation Scenarios

  • Employee Onboarding
    Create a new Microsoft Entra ID user from an approved service request, populate user attributes and assign the correct licences
  • Joiner, Mover and Leaver Processes 
    Update user properties, manage group membership and support lifecycle changes through controlled Orchestrator runbooks
  • Licence Management
    Assign, update or remove Microsoft cloud licences as part of standard service fulfilment
  • Self-Service Fulfilment 
    Connect a service desk or automation portal request to an Orchestrator runbook that completes the approved Entra ID action
  • Operational Remediation
    Automate account updates or corrective actions when monitoring, ITSM or security workflows identify a required change
  • Hybrid Identity Transition
    Support organisations moving from on-premises Active Directory administration towards cloud-first Entra ID management

Benefits at a Glance

  • Reduce Manual Administration 
    Automate common Entra ID tasks such as creating users, updating account details and assigning licences
  • Improve Service Request Fulfilment 
    Trigger identity automation directly from service desk requests, onboarding workflows or operational runbooks
  • Increase Consistency and Compliance 
    Standardise identity processes so every request follows the same validated, auditable runbook path
  • Extend Existing Orchestrator Investments 
    Add Microsoft Entra ID automation to existing System Center Orchestrator deployments without replacing established automation practices
  • Accelerate Cloud Identity Operations 
    Support Entra ID-only and hybrid identity models with repeatable processes that reduce reliance on manual portal work
  • Free Service Desk Capacity 
    Remove repetitive identity tasks from first-line support teams so they can focus on higher-value service and incident work

Key Capabilities

  • Pre-defined Orchestrator activities for Microsoft Entra ID user and licence management
  • Runbook-driven automation for provisioning, updates and administration tasks
  • Integration with existing service request, approval and fulfilment processes
  • Support for repeatable, standardised identity workflows across IT operations
  • Reduced dependency on manual Azure portal administration and one-off PowerShell scripts
  • Designed for Microsoft System Center Orchestrator customers who need supported, production-ready integration

Integration Activities

Activity Name
Description
Add-GroupMember
Assign a new member to an existing group
Add-User
Add new users to your environment
Add-UserLicense
Assign one or more licenses to an existing user
Get-Groups
Retrieve groups
Get-GroupMembers
Retrieve members of a group
Get-User
Retrieve a specific user
Get-UserLicense
Retrieve licenses assigned to a specific user
Get-Users
Retrive and filter users from your environment
Remove-GroupMember
Remove a member from the group
Remove-User
Remove users from your environment
Remove-UserLicense
Remove one or more licenses from an existing user
Update-User
Update the properties of existing users in your environment
Update-UserPassword
Update the password of an existing user
Update-UserUPN
Update the UPN of an existing user