Get in Touch
 Duration 21 hours

Course Outline

Module 1: Introduction and Fundamentals

  • Overview of Microsoft Intune and Endpoint Manager
  • Integration with Configuration Manager (co-management, cloud attach)
  • Advantages of modern endpoint management
  • Core concepts: devices, applications, data, users
  • Intune architecture, roles, and licensing

Module 2: Identity and Access

  • Key concepts in Microsoft Entra ID and Azure AD
  • Synchronizing AD to Entra ID (Azure AD Connect)
  • Device join types: Azure AD Join, Hybrid AD Join
  • Managing roles, groups, and permissions in Intune
  • Conditional Access and its synergy with Intune

Module 3: Device Enrollment

  • Enrollment methods for Windows, iOS, Android, and macOS
  • Windows Autopilot: concepts, profiles, and processes
  • Automated enrollment via DEP (Apple) and Zero-touch (Android)
  • Differences between BYOD and corporate device management
  • Contrasting MDM and MAM (Mobile Device Management vs Mobile Application Management)

Module 4: Configuration and Compliance Policies

  • Establishing device compliance policies
  • Setting up configuration policies (Configuration Profiles)
  • Implementing device restrictions and security controls
  • Creating App Protection Policies
  • Conditional access policies driven by compliance status

Module 5: Application Management

  • Application types in Intune: LOB, Win32, Microsoft Store, web apps
  • Managing app deployment, installation, removal, and updates
  • Safeguarding application data
  • Distinguishing application policies from corporate data
  • Managing licenses and assignments

Module 6: Updates and Patches

  • Integrating Windows Update for Business with Intune
  • Defining feature and quality update policies
  • Using deployment ring models
  • Tracking update status
  • Strategies for updates in corporate settings

Module 7: Security and Protection

  • Integrating Microsoft Defender for Endpoint with Intune
  • Applying Microsoft security baselines and templates
  • Threat protection measures (antimalware, firewall, etc.)
  • Device encryption (BitLocker) and encryption policies
  • Certificate management and secure VPN/Wi-Fi profiles

Module 8: Monitoring, Reporting, and Troubleshooting

  • Utilizing dashboards and standard reports
  • Analyzing logs and diagnostics (e.g., enrollment errors, policy management)
  • Leveraging Intune support and troubleshooting tools
  • Using administration portals (device portal, company portal)
  • Configuring alerts and notifications

Module 9: Advanced Scenarios and Integrations

  • Co-management with Configuration Manager
  • Managing devices without traditional enrollment (“Autopilot for existing devices”)
  • Integrating with other Microsoft services (Defender, Azure, Copilot, etc.)
  • Automation via PowerShell and Graph API
  • Governance strategies and enterprise-scale structures
  • Best practices for design and implementation

Summary and Next Steps

Requirements

  • Basic understanding of Microsoft 365 and Azure environments
  • Practical experience in Windows or mobile device management
  • Knowledge of organizational IT security principles

Target Audience

  • System administrators
  • Endpoint management specialists
  • IT professionals responsible for enterprise device and security policy management

Number of participants


Price per participant

Testimonials (1)

Provisional Upcoming Courses (Require 5+ participants)

Related Categories