This is a list of things we want them to be comfortable doing. For this, we should create lab exercises and also have tests where they prove to us that they can complete these tasks quickly and correctly.
Install and Configure Cloud Gateway
Configure a simple code-free flat file wizard Account Store as HR
Configure the Account Inbox Join and Provision rules to create people from the HR flat-file and to terminate based on ValidUntil
Create a simple Business Role and Location tree mapped to Dynamic Hierarchy External Roles and Locations generated from the HR flat file
Simulate a mover event based on HR data changes
Configure the Advanced LEaver options understanding how they work and simulate a multi-step Leaver Event
Deploy and Configure the Azure AD SCIM Connector
Configure an Azure AD Account Store
Configure an AD Account Store
Configure an SAP Account Store
Create and configure a Tracking Only Account Store
Configure Attribute Flow Rules for all Account stores
Create and configure RETS for all Account Stores
Configure EmpowerID to use Azure Native Authentication
Configure EmpowerID to use Social Media Authentication
Configure EmpowerID to use Windows Authentication with the Remote IdP
Configure EmpowerID to require MFA for Admins
Perform Passwordless and usernameless login as an admin user
Configure an Admin Person for Persona Switching
Configure and use MFA (FIDO and EmpowerID Mobile App) for the Password Reset Center
Use T-RBAC to configure a person as a Group Membership Manager but only for Groups and Accounts below Germany