Microsoft Entra ID

Snowflake Provisioning Tutorial

In brief

With Privileged Identity Management (PIM) for Groups, you can provide just-in-time access to groups in Snowflake and reduce the number of users who have permanent access to privileged groups in Snowflake.

What Entra admins need to know

Review the documentation change to determine whether it affects tenant configuration, security posture, or rollout plans.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

Open on Microsoft Learn ↗

The comparison below is an extract of the Microsoft Learn article showing only the changed content. Open the full article for complete context.

With Privileged Identity Management (PIM) for Groups, you can provide just-in-time access to groups in Snowflake and reduce the number of users who have permanent access to privileged groups in Snowflake.

Configure your enterprise application for SSOsingle sign-on (SSO) and provisioning

To set up persistent, non-admin access in Snowflake, complete these steps:

  1. Add Snowflake to your tenant, configure it for provisioning as described in the article above,previous steps of this tutorial, and start provisioning.
  2. Configure single sign-on for Snowflake.
  3. Create a group that provides all users access to the application.
  4. Assign the group to the Snowflake application.