You already have a way to see your identity posture. It's just spread across four different places.
Identity Secure Score, Purview Compliance Manager, the Azure portal, and Conditional Access reports each hold part of your Entra ID posture. ID Posture puts all of it in one place.
What checking your posture actually looks like today
If you want the full picture of your organisation's identity posture in Entra ID right now, here's the actual process: open the Entra admin center for your Identity Secure Score. Switch to Purview Compliance Manager if you're tracking Essential Eight. Switch again to the Azure portal to check subscription-level role assignments. Check Conditional Access reports separately for policy coverage gaps.
None of these tools are wrong. Each one does its job. But none of them talks to the others, and none of them gives you a single number or a single trend line for whether your identity posture is getting better or worse.
One dashboard, four things it does that the native tools don't
One score, not four dashboards
Every pillar (Member Identity, Guest Identity, Non-Human Identity, Access & RBAC) plus tenant-wide health checks and Azure resource configuration (SQL, Cosmos DB, Redis, networking, Key Vault, storage, AKS, and VMs), in one view. No switching between the Entra admin center, Purview, and the Azure portal to answer "how are we doing."
Mapped to Essential Eight and ISO 27001
Findings link directly to the specific Essential Eight and ISO 27001 controls they affect. Identity Secure Score doesn't map to either framework. When a finding can't be verified, it says so honestly instead of showing a false pass.
Tracks what changed, not just what's true today
Every scan is compared to the last one. A new permission granted to an app, or a guest account that gained access it didn't have last week, shows up as drift, with an alert. Accepted a risk on purpose? Mark it once, with a reason, and it stops resurfacing.
Sponsors and owners tracked for AI agents too
Microsoft Entra Agent ID identities created by Azure AI Foundry or Security Copilot get an owner assigned automatically, but never a sponsor, so real accountability is often missing entirely. ID Posture checks agent identities the same way it checks every other identity in your tenant, no separate tool required.
When Microsoft's own tools are probably enough
If your Entra ID tenant is small and simple, no guests, one or two admins, minimal app sprawl, Identity Secure Score alone may be enough. ID Posture is built for organisations with enough real identity complexity that a single number, updated nightly, with drift alerts and framework mapping, is worth having. If that's not you yet, Microsoft's own score is free and worth using.
Common questions
Doesn't Identity Secure Score already do this for free?
Yes, and it's worth using. It gives you a percentage score based on recommendations inside the Entra admin center. What it doesn't do: map to Essential Eight or ISO 27001, track drift between scans, or bring in your subscription-level Azure RBAC and Conditional Access posture alongside it. ID Posture pulls all of that into one dashboard instead of four.
We already use Purview Compliance Manager for Essential Eight. Why would we need this too?
Purview's Essential Eight templates are a real, valid path if you're tracking that framework in isolation. ID Posture maps the same controls, plus ISO 27001, alongside your day-to-day identity findings, in the same dashboard you'd already be checking for stale accounts and expiring secrets. It's one place instead of a separate compliance tool bolted on the side.
Is this replacing our Azure/Entra admin center?
No. ID Posture reads from Microsoft Graph and Azure Resource Manager (read-only, nothing is changed on your tenant) and turns what it finds into a single scored, prioritised view. You'd still use the Entra admin center to actually fix things; ID Posture tells you what needs fixing and tracks whether it's getting better.
Connect your Entra ID tenant and get your first scored dashboard tonight.