RiskP2Bridge, by Solution CifersID

Lost P2? Keep your tenant. Get your risk protection back.

P2-grade risk protection, without P2.

RiskP2Bridge brings risk detection and automatic response back to Azure AD B2C and Entra ID tenants running on P1. No migration. No app changes. It runs in your own Azure.

Azure AD B2CEntra ID on P1Runs in your Azure
01 / The gap
What changed in 2026

On March 15, 2026, risk protection in B2C went quiet.

Microsoft retired Azure AD B2C Premium P2 for every customer. Policies based on sign-in risk and user risk stopped working, and the risk reports were later removed. Tenants kept running, but nothing was acting on risky sign-ins anymore.

i.

B2C tenants that lost P2

Your risk policies can no longer fire. Customer accounts face spray and takeover attacks with no automatic response.

ii.

Workforce tenants on P1

You can see some risk reports, but acting on them automatically needs P2. Every response is manual, and often late.

iii.

The usual advice

Migrate to a new identity platform. That means months of work, app changes, and disruption for your users, just to get one capability back.

02 / Capabilities
What it does

Detect, decide, and respond, automatically.

RiskP2Bridge watches your sign-ins for the attacks that matter and acts on them, the way P2 used to.

S

Password spray

Spots one source trying many accounts, then protects every account it touched.

T

Account takeover

Catches the successful login that follows an attack, before the attacker settles in.

A

Atypical travel

Flags sign-ins no person could physically make, and asks for proof.

H

Hostile sources

Recognizes networks with a bad reputation and keeps them out.

C

Credential stuffing

Detects leaked password lists being replayed against your users.

R

Automatic response

Risky users are placed under MFA or block protection based on severity, without waiting on a person.

Teams alerts

Your response team hears about every event in the channel they already use.

Triage portal

Confirm, revoke sessions, acknowledge, or release users in a few clicks.

Dashboard

Trends, outcomes, and false positive rates, ready for management and audit.

03 / Steps
Four steps

Four steps, running on the Azure you already own.

1

Detect

Sign-ins are watched continuously for attack patterns.

2

Decide

Each finding gets a severity, high or medium.

3

Respond

The user is placed under MFA or block protection automatically.

4

Review

Your team is alerted in Teams and closes the loop in the portal.

Safe start. Every deployment begins in alert only mode. We tune on your real traffic, and blocking is turned on only when you approve it.
04 / Visibility
Reporting

See every attack, and every decision.

A clear view for your security team and your management, from the first day.

Detections by type

Last 14 days
0102030Sep 1Sep 3Sep 5Sep 7Sep 9Sep 11Sep 13
Password sprayAccount takeoverTravel and hostile sources

Outcomes

Last 30 days
78%automatic
Handled automaticallyAcknowledgedConfirmed compromiseFalse positive
1,284
Accounts protected
212
Attacks detected
0
Migrations needed
3%
False positive rate

Illustrative dashboard. All figures are demo data.

05 / Fit
Who it is for

Built for tenants Microsoft left without a risk engine.

Azure AD B2C

Customer identity tenants that lost Premium P2
  • Risk policies stopped working in March 2026
  • No plan to migrate before 2030
  • Customer accounts that are a target for fraud

Entra ID workforce

Employee tenants licensed with P1
  • Risk reports with no automatic response
  • P2 for every user is too costly
  • A security team that wants alerts it can act on
What you need. An Azure subscription and a Log Analytics workspace. Azure usage is billed to you by Microsoft, and we estimate it with you before we deploy.
06 / Plans
Engagement

Deploy it once. Keep it sharp.

Every tenant is different, so we price each engagement after a short call about your environment.

One time

Deploy

We set up RiskP2Bridge in your tenant and hand it over working.

  • Deployment in your own Azure
  • Alert only period, tuned on your live traffic
  • Enforcement switched on with your approval
  • Handover session and runbook for your team
Contact us for pricing
Ask about →

Proven in production. RiskP2Bridge runs today on multiple customer tenants in Government agencies and Major Insurance groups.

In production
07 / Questions
FAQ

Straight answers.

Do we need to migrate off Azure AD B2C?

No. RiskP2Bridge works with your current tenant and your current apps.

Do our applications need code changes?

No. Your apps and user flows stay as they are.

Does our sign-in data leave our environment?

No. Everything runs in your own Azure subscription. We do not host your data.

Could real customers get blocked by mistake?

We start in alert only mode, tune on your real traffic, and turn on blocking only when you approve it.

Is this a Microsoft product?

No. RiskP2Bridge is built and supported by Solution CifersID, using standard Microsoft Azure services.

What does it cost to run in Azure?

It depends on your sign-in volume. We give you an estimate before we deploy.

08 / Contact
Start a conversation

Tell us about your tenant.

A short call is enough to tell you if RiskP2Bridge fits, and what it would take.