Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Fundamentals
- Overview of Microsoft Intune and Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management strategies
- Core concepts: devices, applications, data, and users
- Intune architecture, role assignments, and licensing models
Module 2: Identity and Access
- Microsoft Entra ID (formerly Azure AD): fundamental concepts
- Synchronizing from on-premises AD to Entra ID (Azure AD Connect)
- Device join mechanisms: Azure AD Join and Hybrid AD Join
- Managing roles, groups, and permissions within Intune
- Implementing Conditional Access and its synergy with Intune
Module 3: Device Enrollment
- Enrollment methods for Windows, iOS, Android, and macOS
- Windows Autopilot: core concepts, profiles, and workflows
- Automated enrollment via Apple DEP and Android Zero-touch
- Distinguishing between BYOD (personal) and corporate device management
- Comparing MDM (Mobile Device Management) and MAM (Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Defining device compliance policies
- Creating configuration policies (Configuration Profiles)
- Applying device restrictions and security controls
- Establishing App Protection Policies
- Enforcing Conditional Access policies based on compliance status
Module 5: Application Management
- Categorizing applications in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Managing application deployment, installation, removal, and updates
- Safeguarding application data
- Differentiating application policies from corporate data management
- Handling license and assignment management
Module 6: Updates and Patches
- Integrating Windows Update for Business with Intune
- Configuring feature and quality update policies
- Implementing deployment ring models
- Monitoring update status and compliance
- Designing update strategies for corporate environments
Module 7: Security and Protection
- Leveraging Microsoft Defender for Endpoint with Intune integration
- Applying Microsoft security baselines and templates
- Enhancing threat protection (antimalware, firewall, etc.)
- Implementing device encryption (BitLocker) and encryption policies
- Managing certificates and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilizing dashboards and standard reports
- Analyzing logs and diagnostics (e.g., enrollment errors, policy management)
- Using Intune support and troubleshooting tools
- Navigating administration portals (device portal, company portal)
- Configuring alerts and notifications
Module 9: Advanced Scenarios and Integrations
- Implementing co-management with Configuration Manager
- Managing existing devices without traditional enrollment (Autopilot for existing devices)
- Integrating with other Microsoft services (Defender, Azure, Copilot, etc.)
- Automating tasks with PowerShell and Graph API
- Developing governance strategies and enterprise-scale structures
- Adopting best practices for design and implementation
Summary and Next Steps
Requirements
- Working knowledge of Microsoft 365 and Azure environments
- Practical experience with Windows or mobile device management
- Understanding of organizational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for enterprise device and security policy management
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues