Implementing hybrid authentication in Azure

Providing SSO across on-premises applications and those running in the cloud (yours and 3rd party), enabling access to applications with organizational as well as individual credentials are all examples of what is called hybrid authentication. How would you approach implementing it in your solution? »