Get in Touch
 Duration 21 hours

Course Outline

Module 1: Introduction and Core Fundamentals

  • Overview of Microsoft Intune and Endpoint Manager
  • Integration with Configuration Manager (co-management, cloud attach)
  • Advantages of modern endpoint management strategies
  • Core concepts: devices, applications, data, and users
  • Intune architecture, role definitions, and licensing models

Module 2: Identity and Access Management

  • Key concepts of Microsoft Entra ID and Azure AD
  • Directory synchronization from AD to Entra ID via Azure AD Connect
  • Device join mechanisms: Azure AD Join and Hybrid AD Join
  • Defining roles, groups, and permissions within Intune
  • Implementing Conditional Access and its synergy with Intune

Module 3: Device Enrollment Strategies

  • Enrollment techniques for Windows, iOS, Android, and macOS
  • Windows Autopilot: core concepts, profile design, and processing
  • Automated enrollment using Apple DEP and Android Zero-touch
  • Distinguishing between personal (BYOD) and corporate device management
  • Differentiating MDM (Mobile Device Management) from MAM (Mobile Application Management)

Module 4: Configuration and Compliance Policies

  • Establishing device compliance standards
  • Setting up configuration policies and profiles
  • Applying device restrictions and security controls
  • Formulating App Protection Policies
  • Linking Conditional Access policies to compliance status

Module 5: Application Management

  • Application categories in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
  • Processes for deploying, installing, updating, and removing applications
  • Safeguarding application data
  • Managing application policies in relation to corporate data
  • Handling license assignments and management

Module 6: Updates and Patch Management

  • Integrating Windows Update for Business with Intune
  • Defining feature and quality update policies
  • Utilizing deployment ring models
  • Tracking and monitoring update status
  • Developing update strategies for corporate environments

Module 7: Security and Protection Frameworks

  • Enhancing security via Microsoft Defender for Endpoint and Intune integration
  • Applying Microsoft security baselines and templates
  • Implementing threat protection measures such as antimalware and firewall settings
  • Managing device encryption through BitLocker and encryption policies
  • Overseeing certificate management and secure VPN/Wi-Fi profiles

Module 8: Monitoring, Reporting, and Troubleshooting

  • Analyzing dashboards and default reports
  • Interpreting logs and diagnostics for issues like enrollment errors and policy management
  • Leveraging Intune support and troubleshooting utilities
  • Utilizing administration portals, including the device and company portals
  • Configuring alerts and notification systems

Module 9: Advanced Scenarios and Integrations

  • Implementing co-management with Configuration Manager
  • Managing existing devices without re-enrollment (Autopilot)
  • Connecting with broader Microsoft services like Defender, Azure, and Copilot
  • Automating tasks using PowerShell and Graph API
  • Developing governance strategies for enterprise-scale structures
  • Applying best practices for system design and implementation

Summary and Next Steps

Requirements

  • Solid comprehension of Microsoft 365 and Azure environments
  • Practical experience in Windows or mobile device management
  • Working knowledge of organizational IT security principles

Target Audience

  • System administrators
  • Endpoint management specialists
  • IT professionals responsible for enterprise devices and security policies

Number of participants


Price per participant

Testimonials (1)

Provisional Upcoming Courses (Require 5+ participants)

Related Categories