Integrating SailPoint with Microsoft Entra SaaS
Revised Date: 04 September 2026
The SailPoint Microsoft Entra SaaS connector manages the users and groups in Microsoft Entra. Microsoft Entra is the directory for all cloud based organizational Microsoft Directory services including Microsoft Office 365.
The SailPoint Microsoft Entra SaaS connector:
-
Can also be used to aggregate users into a federated domain in Microsoft Entra.
-
Uses Microsoft Graph APIs to manage users, and groups.
Azure is Microsoft’s cloud solution platform, which provides plenty of cloud services such as IaaS, PaaS, or SaaS. Azure uses Microsoft Entra as its authentication source to provide access on different services to users. Azure has management container objects which are used to group resources and manage access to them.
The Microsoft Entra SaaS connector provides support for access management of Azure Management Objects along with managing of the Microsoft Entra Management Objects.
Microsoft Entra SaaS connector supports deleting accounts.
Onboard Microsoft Entra with SailPoint Agentic Fabric (SAF)
SailPoint Agentic Fabric (SAF) provides an automated, guided onboarding experience to connect your Microsoft Entra environment to Identity Security Cloud (ISC). SAF automatically creates, deploys, and configures the Microsoft Entra SaaS source in ISC, reducing the manual setup steps. After onboarding, the source is ready for aggregation and governance.
For detailed onboarding instructions, prerequisites, and supported deployment models, refer to Configuring the Microsoft Entra SaaS Connector.
Important
To enable advanced governance capabilities for Microsoft Entra SaaS resources and AI agents, an active SailPoint Agentic Fabric Advanced Governance license is required. Contact your SailPoint Customer Success Manager to request access and for more information.
Note
To view the latest features, enhancements, and fixes for all SaaS connectors, refer to the SaaS Release Notes page.