Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Fundamentals
- Overview of Microsoft Intune and Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management strategies
- Core concepts: devices, applications, data, and users
- Intune architecture, role definitions, and licensing models
Module 2: Identity and Access Management
- Key concepts of Microsoft Entra ID and Azure AD
- Directory synchronization from AD to Entra ID via Azure AD Connect
- Device join mechanisms: Azure AD Join and Hybrid AD Join
- Defining roles, groups, and permissions within Intune
- Implementing Conditional Access and its synergy with Intune
Module 3: Device Enrollment Strategies
- Enrollment techniques for Windows, iOS, Android, and macOS
- Windows Autopilot: core concepts, profile design, and processing
- Automated enrollment using Apple DEP and Android Zero-touch
- Distinguishing between personal (BYOD) and corporate device management
- Differentiating MDM (Mobile Device Management) from MAM (Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Establishing device compliance standards
- Setting up configuration policies and profiles
- Applying device restrictions and security controls
- Formulating App Protection Policies
- Linking Conditional Access policies to compliance status
Module 5: Application Management
- Application categories in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Processes for deploying, installing, updating, and removing applications
- Safeguarding application data
- Managing application policies in relation to corporate data
- Handling license assignments and management
Module 6: Updates and Patch Management
- Integrating Windows Update for Business with Intune
- Defining feature and quality update policies
- Utilizing deployment ring models
- Tracking and monitoring update status
- Developing update strategies for corporate environments
Module 7: Security and Protection Frameworks
- Enhancing security via Microsoft Defender for Endpoint and Intune integration
- Applying Microsoft security baselines and templates
- Implementing threat protection measures such as antimalware and firewall settings
- Managing device encryption through BitLocker and encryption policies
- Overseeing certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Analyzing dashboards and default reports
- Interpreting logs and diagnostics for issues like enrollment errors and policy management
- Leveraging Intune support and troubleshooting utilities
- Utilizing administration portals, including the device and company portals
- Configuring alerts and notification systems
Module 9: Advanced Scenarios and Integrations
- Implementing co-management with Configuration Manager
- Managing existing devices without re-enrollment (Autopilot)
- Connecting with broader Microsoft services like Defender, Azure, and Copilot
- Automating tasks using PowerShell and Graph API
- Developing governance strategies for enterprise-scale structures
- Applying best practices for system design and implementation
Summary and Next Steps
Requirements
- Solid comprehension of Microsoft 365 and Azure environments
- Practical experience in Windows or mobile device management
- Working knowledge of organizational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for enterprise devices and security policies
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues