Administrator Account Offboarding Process
Active Directory
Disable account in Active Directory
Remove all group memberships in Active Directory
Remove email address from fields in Active Directory (this will block sign-in through Citrix)
Move user to “Left Firm Internal” (Fresh OU ticket to be raised)
Repeat process for non-privileged account(s)
Azure
Revoke all sign-ins
Revoke MFA tokens
Block sign-in
Remove all PIM roles
Remove all group memberships
Beyond Trust
Password Safe
- Delete user from “Managed Accounts”
Configuration > User Management
- Find team (e.g. maddocks.com.au\BT-Team-Helpdesk) and run a sync using the kebab menu
PRA
- Users and Security > Delete User