I have already written several blog posts explaining how to configure Azure AD PIM. Please follow those to implement Azure AD PIM in your environments:
- Step-by-Step Guide to Azure AD Privileged Identity Management – Part 1: http://www.rebeladmin.com/2016/07/step-step-guide-azure-ad-privileged-identity-management-part-1/
- Step-By-Step guide to Azure AD Privileged Identity Management – Part 2: http://www.rebeladmin.com/2016/08/step-step-guide-azure-ad-privileged-identity-management-part-2/
- Step-By-Step guide to set up temporally privileged access using Azure AD Privileged Identity Management: http://www.rebeladmin.com/2018/09/step-step-guide-setup-temporally-privilege-access-using-azure-ad-privileged-identity-management/
- Step-By-Step guide: Privileged access management in Office 365: http://www.rebeladmin.com/2019/04/step-step-guide-privileged-access-management-office-365/