You need to configure just in time access to meet the technical requirements.
What should you use?
entitlement management
Azure AD Privileged Identity Management (PIM)
access reviews
Azure AD Identity Protection
Submit