Microsoft Entra ID, which used to be called Azure Active Directory (Azure AD), is a cloud service that helps manage who can use apps and resources. It works for both cloud and on-site systems. In healthcare, where keeping data safe and following rules like HIPAA is very important, controlling who can see sensitive information and AI tools matters a lot.
Starting July 1, 2025, Microsoft will require all new healthcare agent service setups, like those that handle patient calls, staff schedules, and front-office questions, to use Microsoft Entra ID for assigning and managing user permissions. This is done through the Azure Portal. Current healthcare agent services will also switch to this system and can start using it earlier if they want. This change makes user access management more secure and centralized on one cloud platform built for safety and rule-following.
Microsoft Entra ID keeps identities safe so that only allowed users can get into important healthcare systems and sensitive data. Healthcare data is very private, and providers often face cyberattacks, so strong security is needed.
Microsoft Entra ID offers these features:
Over 720,000 organizations, including many in healthcare, use Microsoft Entra ID to keep identity management safe and effective.
When managing user permissions in healthcare agent services like Simbo AI, Microsoft Entra ID has three main roles:
This is the highest access level. Users in this role can:
This role controls the security and compliance of the healthcare AI agent service.
This role is for users who need to work with the bot and its settings but should not see sensitive data like keys or user conversations. Editors can:
This role fits IT staff who handle bot functions but not security details.
This role is only for viewing. Readers can check bot resources and settings but cannot see secrets or user conversations. They can:
This role makes sense for auditors or compliance officers who watch over the system without making changes.
From July 1, 2025, all new healthcare agent services must assign users and roles only through Microsoft Entra ID with the Azure Portal. The old system inside Healthcare Agent Service Management will stop working for user management.
Here is how to assign roles step-by-step:
Microsoft Entra ID lets you group users for easy management. Groups help assign roles to many staff members at once, which is useful for big clinics or hospitals with multiple locations.
Healthcare providers who use healthcare agent services now can switch early to Microsoft Entra Access Management using the User Management page if they have the Healthcare Agent Admin role. After enabling this:
This change means healthcare IT teams must prepare and train to work with the new centralized user system.
Keeping user access safe is very important. AI tools like Simbo AI use artificial intelligence to improve front-office tasks beyond just answering phones. AI helps staff focus more on patient care.
The AI tools work with private patient data, so user access must be carefully controlled. Microsoft Entra ID’s zero trust security and multi-factor authentication make sure only authorized staff use the AI tools and data. This helps follow HIPAA and other laws.
Microsoft Entra ID supports automated processes that happen based on user roles. For example:
These tools help make sure tasks are done or checked by the right people, reducing risks.
Healthcare groups must protect patient privacy. Microsoft Entra ID keeps logs that show who changes roles, who accesses what, and when. These logs are important for:
Microsoft Entra ID works with Microsoft Security Copilot, an AI tool that helps IT staff watch for risks by spotting unsafe user behavior and configuration problems early.
Microsoft offers different license plans for Entra ID depending on healthcare providers’ needs:
Choosing a plan depends on the size of the organization, legal rules it follows, and security needs.
In the U.S., healthcare settings vary from single doctors to big hospital groups. Using Microsoft Entra ID makes managing user permissions simpler and safer. It helps reduce data breaches and supports flexible, secure remote work, which is important as telemedicine and remote patient monitoring grow.
Stories from other organizations show positive results:
Though these examples are not from healthcare, they show how reliable the platform is for managing AI services.
Moving user access for AI healthcare agent services to Microsoft Entra ID and the Azure Portal gives U.S. healthcare providers a single secure place to control important AI tools. This change will bring stronger security, clearer user roles, and easier compliance with rules. It helps healthcare offices keep up with new technology in the front office.
User permissions for Healthcare agent services will be managed using Microsoft Entra ID via the Azure Portal to streamline and secure access control.
Only users with the Healthcare Agent Admin role within the Azure Access Control (IAM) pane can enable or disable the Microsoft Entra Access Management toggle.
There are three main roles: Healthcare Agent Admin (full access including user management and bot keys), Healthcare Agent Editor (can edit bot resources excluding keys and user inputs), and Healthcare Agent Reader (read-only access excluding keys and sensitive inputs).
Healthcare Agent Admins can fully manage bot resources, configuration settings, instance keys, and user access, including assigning roles through the Azure Portal, making them the primary authority for access control.
All previously assigned users in the Healthcare Agent Service Management page will no longer control access; they remain visible for reference only. Users must be reassigned via the Azure IAM pane.
Admins sign in to the Azure Portal, navigate to the Healthcare Agent Service, go to the Access control (IAM) pane, add a role assignment, select the Healthcare Agent role, add members, and confirm with Review + assign.
Editors cannot access bot instance keys, end-user inputs like feedback or conversation logs, and have only read-only access to skills, channels, and user management, restricting critical configuration and sensitive data access.
Microsoft Entra ID assigned groups help organize and manage collections of users efficiently in the Azure Portal, supporting scalable and secure role assignments for Healthcare AI Agents.
Yes, starting July 1st, 2025, all new Healthcare agent service instances will automatically use Microsoft Entra Access Management for user permissions.
No, users without the Healthcare Agent Admin role will see the toggle greyed out and cannot enable or disable the Microsoft Entra Access Management feature.