Get in Touch
 Duration 21 hours

Course Outline

Module 1: Foundations and Core Concepts

  • Defining Microsoft Intune and Endpoint Manager
  • Integration with Configuration Manager (co-management and cloud attach)
  • Advantages of modern endpoint management strategies
  • Core elements: devices, applications, data, and users
  • Intune architecture, administrative roles, and licensing models

Module 2: Identity and Access Control

  • Essential concepts in Microsoft Entra ID (formerly Azure AD)
  • Synchronizing data from on-premise AD to Entra ID via Azure AD Connect
  • Types of device joins: Azure AD Join and Hybrid AD Join
  • Management of roles, groups, and permissions within Intune
  • Implementing Conditional Access and its synergy with Intune

Module 3: Device Enrollment Processes

  • Enrollment techniques for Windows, iOS, Android, and macOS
  • Windows Autopilot: underlying concepts, profile configurations, and workflow
  • Automated enrollment using Apple DEP and Android Zero-touch
  • Differentiating between personal (BYOD) and corporate-owned device management
  • Comparing MDM (Mobile Device Management) with MAM (Mobile Application Management)

Module 4: Configuration and Compliance Frameworks

  • Establishing device compliance standards
  • Setting up Configuration Profiles
  • Applying device restrictions and security controls
  • Implementing App Protection Policies
  • Defining Conditional Access policies driven by compliance status

Module 5: Application Lifecycle Management

  • Categorizing Intune applications: Line of Business (LOB), Win32, Microsoft Store, and web apps
  • Managing app deployment, installation, removal, and updates
  • Securing application data
  • Distinguishing between application policies and corporate data isolation
  • Oversight of licensing and user assignment

Module 6: Patch Management and Updates

  • Integrating Windows Update for Business with Intune
  • Strategies for Feature and Quality updates
  • Utilizing deployment ring models
  • Tracking and monitoring update status
  • Formulating update strategies for enterprise settings

Module 7: Security Posture and Protection

  • Combining Microsoft Defender for Endpoint with Intune
  • Applying Microsoft security baselines and templates
  • Threat mitigation via antimalware and firewall configurations
  • Device encryption using BitLocker and associated policies
  • Managing certificates and securing VPN and Wi-Fi profiles

Module 8: Monitoring, Reporting, and Diagnostics

  • Leveraging dashboards and standard reports
  • Analyzing logs and diagnostics for issues like enrollment errors
  • Utilizing built-in Intune support and troubleshooting utilities
  • Interacting with administration and company portals
  • Configuring alerts and notification systems

Module 9: Advanced Integrations and Scenarios

  • Advanced co-management strategies with Configuration Manager
  • Managing devices without traditional enrollment (Autopilot for existing assets)
  • Connecting with broader Microsoft services including Defender, Azure, and Copilot
  • Automation techniques using PowerShell and Graph API
  • Designing governance strategies for enterprise-scale infrastructure
  • Best practices for architectural design and implementation

Summary and Recommended Next Steps

Requirements

  • Foundational knowledge of Microsoft 365 and Azure ecosystems
  • Prior exposure to Windows or mobile device management frameworks
  • Basic understanding of organizational IT security standards

Target Audience

  • System administrators
  • Specialists in endpoint management
  • IT professionals responsible for enterprise device security and policy oversight

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories