Get in Touch
 Duration 21 hours

Course Outline

Module 1: Introduction and Fundamentals

  • Overview of Microsoft Intune and Endpoint Manager.
  • Interoperability with Configuration Manager (co-management, cloud attach).
  • Advantages of adopting modern endpoint management.
  • Core concepts: devices, applications, data, and users.
  • Intune architecture, role definitions, and licensing models.

Module 2: Identity and Access

  • Key concepts in Microsoft Entra ID / Azure AD.
  • Directory synchronization from AD to Entra ID via Azure AD Connect.
  • Device registration types: Azure AD Join and Hybrid AD Join.
  • Managing roles, groups, and permissions within Intune.
  • Implementing Conditional Access and its synergy with Intune.

Module 3: Device Enrollment

  • Enrollment procedures for Windows, iOS, Android, and macOS.
  • Windows Autopilot: underlying concepts, profiles, and workflows.
  • Automated enrollment using Apple DEP and Android Zero-touch.
  • Distinguishing between Personal device (BYOD) and corporate device management.
  • Comparing MDM and MAM (Mobile Device Management / Mobile Application Management).

Module 4: Configuration and Compliance Policies

  • Establishing device compliance standards.
  • Defining configuration policies (Configuration Profiles).
  • Applying device restrictions and security controls.
  • Implementing App Protection Policies.
  • Creating Conditional Access policies driven by compliance status.

Module 5: Application Management

  • Categorizing Intune applications: Line of Business (LOB), Win32, Microsoft Store, and web apps.
  • Managing app deployment, installation, removal, and updates.
  • Safeguarding application data.
  • Separating application policies from corporate data.
  • Overseeing license and assignment management.

Module 6: Updates and Patches

  • Integrating Windows Update for Business with Intune.
  • Managing feature and quality update policies.
  • Implementing deployment ring models.
  • Monitoring update status and compliance.
  • Strategies for update management in corporate settings.

Module 7: Security and Protection

  • Integrating Microsoft Defender for Endpoint with Intune.
  • Applying Microsoft security baselines and templates.
  • Enhancing threat protection through antimalware and firewalls.
  • Managing device encryption (BitLocker) and related policies.
  • Handling certificate management and secure VPN/Wi-Fi profiles.

Module 8: Monitoring, Reporting, and Troubleshooting

  • Utilizing dashboards and standard reports.
  • Analyzing logs and diagnostics for issues like enrollment errors.
  • Leveraging support and troubleshooting tools within Intune.
  • Navigating administration portals (device portal, company portal).
  • Configuring alerts and notification systems.

Module 9: Advanced Scenarios / Integrations

  • Implementing co-management with Configuration Manager.
  • Managing devices without full enrollment (Autopilot for existing devices).
  • Connecting with other Microsoft services (Defender, Azure, Copilot, etc.).
  • Automating processes using PowerShell and Graph API.
  • Developing governance strategies and enterprise-scale structures.
  • Adhering to best practices for design and implementation.

Summary and Next Steps

Requirements

  • A solid understanding of Microsoft 365 and Azure environments.
  • Practical experience with Windows or mobile device management.
  • Familiarity with organizational IT security principles.

Target Audience

  • System administrators.
  • Endpoint management specialists.
  • IT professionals responsible for managing enterprise devices and security policies.

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories