Allow 3rd party MFA with PIM
Azure conditional access policies allow for 3rd party MFA, such as Duo, but Azure PIM does not allow this level of customization with the "Require MFA" configuration for a PIM role. This means that we need to manage 2 different MFA platforms if we're going to leverage both Duo MFA and Azure PIM for security. I'd like the ability to use Duo MFA when activating a PIM role.
Tim Humphrey commented
+1 for Ping MFA
ABHINAVA GOPAGANI commented
+1 for Enabling DUO for PIM and SSPR.
As a standard in our organisation, we use DUO for MFA. Two instances, where we are not able to use Duo MFA are PIM and SSPR. We want to enable SSPR in our organisation but authentication methods of SSPR does not support DUO as of now.