Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Concepts
- Overview of Microsoft Intune / Endpoint Manager
- Interoperability with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management strategies
- Core concepts: devices, applications, data, and users
- Intune architecture, roles, and licensing models
Module 2: Identity and Access Management
- Microsoft Entra ID / Azure AD: Key concepts
- Synchronizing from AD to Entra ID (Azure AD Connect)
- Device join types: Azure AD Join, Hybrid AD Join
- Managing roles, groups, and permissions within Intune
- Conditional Access and its integration with Intune
Module 3: Device Enrollment Processes
- Enrollment methods for Windows, iOS, Android, and macOS
- Windows Autopilot: Concepts, profiles, and workflows
- Automated enrollment using DEP (Apple) and Zero-touch (Android)
- Distinguishing between BYOD and corporate device management
- Comparison of MDM and MAM (Mobile Device Management / Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Establishing device compliance policies
- Defining configuration policies (Configuration Profiles)
- Implementing device restrictions and security controls
- Creating App Protection Policies
- Setting up conditional access policies driven by compliance status
Module 5: Application Management
- Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Managing deployment, installation, removal, and updates
- Safeguarding application data
- Differentiating between application policies and corporate data handling
- Managing licenses and assignments
Module 6: Updates and Patch Management
- Integrating Windows Update for Business with Intune
- Setting feature and quality update policies
- Implementing deployment ring models
- Tracking and monitoring update status
- Developing update strategies for corporate environments
Module 7: Security and Protection
- Integrating Microsoft Defender for Endpoint with Intune
- Applying Microsoft security baselines and templates
- Implementing threat protection measures (antimalware, firewall, etc.)
- Managing device encryption (BitLocker) and encryption policies
- Handling certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilizing dashboards and standard reports
- Analyzing logs and diagnostics (e.g., enrollment errors, policy issues)
- Leveraging support and troubleshooting tools within Intune
- Navigating administration portals (device portal, company portal)
- Managing alerts and notifications
Module 9: Advanced Scenarios and Integrations
- Implementing co-management with Configuration Manager
- Managing devices without traditional enrollment (“Autopilot for existing devices”)
- Integrating with other Microsoft services (Defender, Azure, Copilot, etc.)
- Automation using PowerShell and Graph API
- Developing governance strategies and enterprise-scale structures
- Best practices for design and implementation
Summary and Future Directions
Requirements
- A solid grasp of Microsoft 365 and Azure environments
- Practical experience with Windows or mobile device management
- Knowledge of organizational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for enterprise device and security policy management
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues