Get in Touch

Course Outline

Module 1: Introduction and Fundamentals

  • Understanding Microsoft Intune / Endpoint Manager
  • Relationship with Configuration Manager (co-management, cloud attach)
  • Advantages of modern endpoint management
  • Core concepts: devices, applications, data, users
  • Intune architecture, roles, and licensing

Module 2: Identity and Access

  • Microsoft Entra ID / Azure AD: fundamental concepts
  • Synchronizing from AD to Entra ID (Azure AD Connect)
  • Device join types: Azure AD Join, Hybrid AD Join
  • Roles, groups, and permissions within Intune
  • Conditional Access and its integration with Intune

Module 3: Device Enrollment

  • Enrollment methods for Windows, iOS, Android, and macOS
  • Windows Autopilot: concepts, profiles, and processes
  • Automated enrollment using DEP (Apple) and Zero-touch (Android)
  • Distinguishing between personal device (BYOD) and corporate device management
  • MDM vs MAM (Mobile Device Management / Mobile Application Management)

Module 4: Configuration and Compliance Policies

  • Device compliance policies
  • Configuration policies (Configuration Profiles)
  • Device restrictions (security controls and restrictions)
  • App Protection Policies
  • Conditional access policies driven by compliance status

Module 5: Application Management

  • Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
  • Deployment, installation, uninstallation, and updating of applications
  • Application data protection mechanisms
  • Differentiating application policies from corporate data policies
  • License and assignment management

Module 6: Updates and Patches

  • Windows Update for Business and its integration with Intune
  • Policies for feature and quality updates
  • Deployment ring models
  • Monitoring update status
  • Update strategies within corporate environments

Module 7: Security and Protection

  • Microsoft Defender for Endpoint and its integration with Intune
  • Microsoft security baselines and templates
  • Threat protection (antimalware, firewall, etc.)
  • Device encryption (BitLocker) and associated encryption policies
  • Certificate management and secure VPN/Wi-Fi profile configurations

Module 8: Monitoring, Reporting, and Troubleshooting

  • Navigating dashboards and default reports
  • Logs and diagnostics (e.g., resolving enrollment errors, policy management)
  • Support and troubleshooting tools available in Intune
  • Utilizing administration portals (device portal, company portal)
  • Managing alerts and notifications

Module 9: Advanced Scenarios / Integrations

  • Co-management with Configuration Manager
  • Device management without traditional enrollment (“Autopilot for existing devices”)
  • Integrations with other Microsoft services (Defender, Azure, Copilot, etc.)
  • Automation using PowerShell and Graph API
  • Governance strategies and enterprise-scale structures
  • Best practices for design and implementation

Summary and Next Steps

Requirements

  • Familiarity with Microsoft 365 and Azure environments
  • Experience in Windows or mobile device management
  • Understanding of organizational IT security principles

Audience

  • System administrators
  • Endpoint management specialists
  • IT professionals responsible for managing enterprise devices and security policies
 21 Hours

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories