Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Fundamentals
- Overview of Microsoft Intune and Endpoint Manager.
- Integration with Configuration Manager (co-management, cloud attach).
- Advantages of adopting modern endpoint management.
- Core concepts: devices, applications, data, and users.
- Intune architecture, roles, and licensing models.
Module 2: Identity and Access
- Fundamental concepts of Microsoft Entra ID / Azure AD.
- Synchronizing data from AD to Entra ID (Azure AD Connect).
- Device join options: Azure AD Join and Hybrid AD Join.
- Managing roles, groups, and permissions within Intune.
- Conditional Access and its synergy with Intune.
Module 3: Device Enrollment
- Enrollment methods for Windows, iOS, Android, and macOS.
- Windows Autopilot: key concepts, profiles, and workflows.
- Automated enrollment via DEP (Apple) and Zero-touch (Android).
- Distinguishing between personal (BYOD) and corporate device management.
- Comparing MDM and MAM (Mobile Device Management / Mobile Application Management).
Module 4: Configuration and Compliance Policies
- Defining device compliance policies.
- Setting up configuration policies (Configuration Profiles).
- Applying device restrictions and security controls.
- Configuring App Protection Policies.
- Implementing conditional access policies based on compliance status.
Module 5: Application Management
- Managing application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps.
- Handling deployment, installation, removal, and updates of applications.
- Safeguarding application data.
- Balancing application policies with corporate data protection.
- Managing licenses and assignments.
Module 6: Updates and Patches
- Integrating Windows Update for Business with Intune.
- Defining feature and quality update policies.
- Utilizing deployment ring models.
- Tracking and monitoring update status.
- Strategies for update management in corporate settings.
Module 7: Security and Protection
- Integrating Microsoft Defender for Endpoint with Intune.
- Applying Microsoft security baselines and templates.
- Implementing threat protection (antimalware, firewall, and more).
- Managing device encryption (BitLocker) and related policies.
- Handling certificate management and secure VPN/Wi-Fi profiles.
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilizing dashboards and standard reports.
- Analyzing logs and diagnostics (e.g., enrollment errors, policy issues).
- Employing support and troubleshooting tools within Intune.
- Navigating administration portals (device portal, company portal).
- Configuring alerts and notifications.
Module 9: Advanced Scenarios / Integrations
- Implementing co-management with Configuration Manager.
- Managing devices without traditional enrollment (“Autopilot for existing devices”).
- Integrating with other Microsoft services (Defender, Azure, Copilot, etc.).
- Automating tasks using PowerShell and Graph API.
- Establishing governance strategies and enterprise-scale structures.
- Best practices for design and implementation.
Summary and Next Steps
Requirements
- A solid grasp of Microsoft 365 and Azure ecosystems.
- Practical experience in managing Windows or mobile devices.
- Knowledge of core organizational IT security principles.
Target Audience
- System administrators.
- Specialists in endpoint management.
- IT professionals responsible for enterprise device and security policy management.
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues