Administrator Account Offboarding Process

 

Active Directory

Disable account in Active Directory

Remove all group memberships in Active Directory

Remove email address from fields in Active Directory (this will block sign-in through Citrix)

Move user to “Left Firm Internal” (Fresh OU ticket to be raised)

 

Repeat process for non-privileged account(s)


Azure
Revoke all sign-ins

Revoke MFA tokens

Block sign-in

Remove all PIM roles

Remove all group memberships

 

Beyond Trust

Password Safe

- Delete user from “Managed Accounts”

Configuration > User Management
- Find team (e.g. maddocks.com.au\BT-Team-Helpdesk) and run a sync using the kebab menu

PRA

- Users and Security > Delete User