Can be configured to use the LifeTime Azure Indentity Service Credentials, or separate credentials:
For each Base Infrastructure Role, the Azure AD Group Name and ID can be configured:
Also for each Base Infrastructure Role, can be configured a predetermined list of Teams and Team Roles to be configured for new IT Users:
The Azure AD periodic IT Users Integration is done by the Timer ProcessITUsers from the module AzureITUsers_Timer - a convenient schedule should be set.
The site-properties CheckInactiveUsers and SimulateUserInactivate from the module AzureITUsers_Timer should be changed to True and False respectively in order for the IT Users Integration to be able to inactivate Users.