Company Branding (Logon Pages/Access Panel customization)
Application Proxy
Advanced group features
Self-Service Password Reset/Change/Unlock with on-premises writeback
Device objects two-way synchronization between on-premises directories and Azure AD (Device write-back)
Multi-Factor Authentication (Cloud and On-premises (MFA Server))
Microsoft Identity Manager user CAL
Cloud App Discovery
Connect Health
Automatic password rollover for group accounts
Conditional Access based on group and location
Conditional Access based on device state (Allow access from managed devices)
3rd party identity governance partners integration
Terms of Use
SharePoint Limited Access
OneDrive for Business Limited Access
3rd party MFA partner integration (preview)
Microsoft Cloud App Security integration
Join a device to Azure AD, Desktop SSO, Windows Hello for Azure AD, Administrator BitLocker recovery
MDM auto-enrollment, Self-Service BitLocker recovery, Additional local administrators to Windows 10 devices via Azure AD Join, Enterprise State Roaming