Organising who is who.
WHAT IDENTITY TYPES EXIST
Members, belonging to your organisation Guests, from outside Service identities, for applications
WHAT GROUP TYPES EXIST
Security groups, for granting access Groups connected to collaboration, which also create a mailbox and site Distribution groups, for mail only
WHAT TO USE FOR ACCESS
Security groups.
WHAT DYNAMIC GROUPS DO
Populate membership automatically from attributes.
WHAT THAT SUITS
Membership derived from department, location or role.
WHY IT MATTERS
Membership stays correct without anyone maintaining it.
WHAT IT REQUIRES
Attributes populated accurately and consistently.
WHAT TO ESTABLISH
A naming convention for groups.
WHY
Without one, nobody can tell what a group is for.
WHAT TO RECORD FOR EVERY GROUP
Its purpose, and its owner.
WHAT TO REVIEW
Groups with no owner Groups with no members Groups nobody can explain
WHAT TO AVOID
Nested groups several levels deep Groups created for one request and never removed