Home icon
Manage users and group memberships on Amazon QuickSight using SCIM events generated in IAM Identity Center with Azure AD

Blog



This article provides a comprehensive guide for managing Amazon QuickSight users and groups using SCIM events from IAM Identity Center integrated with Azure AD.

  • Configure Azure AD as external identity provider in IAM Identity Center for federated SSO
  • Enable automatic SCIM provisioning between Azure AD and IAM Identity Center
  • Set up SAML 2.0 federation to allow QuickSight access via Azure AD credentials
  • Create Lambda function triggered by UpdateUser SCIM events to automate group membership changes
  • Use EventBridge to capture SCIM events and invoke Lambda for QuickSight group updates
  • Combine user attributes (department, jobTitle) into single group name for simplified management
  • Synchronize user and group information automatically without manual QuickSight administration

This solution enables centralized user management where Azure AD changes automatically propagate to QuickSight group memberships through event-driven automation, eliminating manual synchronization.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.