Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Fundamentals
- Overview of Microsoft Intune and Endpoint Manager.
- Interoperability with Configuration Manager (co-management, cloud attach).
- Advantages of adopting modern endpoint management.
- Core concepts: devices, applications, data, and users.
- Intune architecture, role definitions, and licensing models.
Module 2: Identity and Access
- Key concepts in Microsoft Entra ID / Azure AD.
- Directory synchronization from AD to Entra ID via Azure AD Connect.
- Device registration types: Azure AD Join and Hybrid AD Join.
- Managing roles, groups, and permissions within Intune.
- Implementing Conditional Access and its synergy with Intune.
Module 3: Device Enrollment
- Enrollment procedures for Windows, iOS, Android, and macOS.
- Windows Autopilot: underlying concepts, profiles, and workflows.
- Automated enrollment using Apple DEP and Android Zero-touch.
- Distinguishing between Personal device (BYOD) and corporate device management.
- Comparing MDM and MAM (Mobile Device Management / Mobile Application Management).
Module 4: Configuration and Compliance Policies
- Establishing device compliance standards.
- Defining configuration policies (Configuration Profiles).
- Applying device restrictions and security controls.
- Implementing App Protection Policies.
- Creating Conditional Access policies driven by compliance status.
Module 5: Application Management
- Categorizing Intune applications: Line of Business (LOB), Win32, Microsoft Store, and web apps.
- Managing app deployment, installation, removal, and updates.
- Safeguarding application data.
- Separating application policies from corporate data.
- Overseeing license and assignment management.
Module 6: Updates and Patches
- Integrating Windows Update for Business with Intune.
- Managing feature and quality update policies.
- Implementing deployment ring models.
- Monitoring update status and compliance.
- Strategies for update management in corporate settings.
Module 7: Security and Protection
- Integrating Microsoft Defender for Endpoint with Intune.
- Applying Microsoft security baselines and templates.
- Enhancing threat protection through antimalware and firewalls.
- Managing device encryption (BitLocker) and related policies.
- Handling certificate management and secure VPN/Wi-Fi profiles.
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilizing dashboards and standard reports.
- Analyzing logs and diagnostics for issues like enrollment errors.
- Leveraging support and troubleshooting tools within Intune.
- Navigating administration portals (device portal, company portal).
- Configuring alerts and notification systems.
Module 9: Advanced Scenarios / Integrations
- Implementing co-management with Configuration Manager.
- Managing devices without full enrollment (Autopilot for existing devices).
- Connecting with other Microsoft services (Defender, Azure, Copilot, etc.).
- Automating processes using PowerShell and Graph API.
- Developing governance strategies and enterprise-scale structures.
- Adhering to best practices for design and implementation.
Summary and Next Steps
Requirements
- A solid understanding of Microsoft 365 and Azure environments.
- Practical experience with Windows or mobile device management.
- Familiarity with organizational IT security principles.
Target Audience
- System administrators.
- Endpoint management specialists.
- IT professionals responsible for managing enterprise devices and security policies.
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues