Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Concepts
- Overview of Microsoft Intune and Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management strategies
- Fundamental concepts: devices, applications, data, and users
- Intune architecture, role definitions, and licensing models
Module 2: Identity and Access Control
- Core concepts of Microsoft Entra ID and Azure AD
- Synchronizing from AD to Entra ID using Azure AD Connect
- Device join methods: Azure AD Join and Hybrid AD Join
- Managing roles, groups, and permissions within Intune
- Implementing Conditional Access and its synergy with Intune
Module 3: Device Enrollment
- Enrollment techniques for Windows, iOS, Android, and macOS
- Windows Autopilot: key concepts, profiles, and workflows
- Automated enrollment via DEP (Apple) and Zero-touch (Android)
- Distinguishing between BYOD (Personal) and corporate device management
- Comparing MDM and MAM (Mobile Device Management vs. Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Establishing device compliance standards
- Defining configuration policies (Configuration Profiles)
- Setting device restrictions and security controls
- Implementing App Protection Policies
- Linking compliance status to conditional access policies
Module 5: Application Management
- Categorizing Intune applications: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Managing app deployment, installation, removal, and updates
- Safeguarding application data
- Differentiating application policies from corporate data protection
- Handling license and assignment administration
Module 6: Updates and Patching
- Integrating Windows Update for Business with Intune
- Defining feature and quality update policies
- Implementing deployment ring models
- Tracking update status and compliance
- Formulating update strategies for corporate environments
Module 7: Security and Protection
- Leveraging Microsoft Defender for Endpoint alongside Intune
- Applying Microsoft security baselines and templates
- Threat protection measures (antimalware, firewall, etc.)
- Managing device encryption (BitLocker) and encryption policies
- Overseeing certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilizing dashboards and standard reports
- Analyzing logs and diagnostics (e.g., enrollment issues, policy application)
- Employing Intune support and troubleshooting utilities
- Navigating administration portals (device portal, company portal)
- Configuring alerts and notifications
Module 9: Advanced Scenarios and Integrations
- Co-management workflows with Configuration Manager
- Managing devices without traditional enrollment (“Autopilot for existing devices”)
- Integrating with broader Microsoft services (Defender, Azure, Copilot, etc.)
- Automation using PowerShell and Graph API
- Developing governance strategies and enterprise-scale structures
- Applying best practices for design and implementation
Summary and Future Directions
Requirements
- A solid grasp of Microsoft 365 and Azure environments
- Practical experience in managing Windows or mobile devices
- Knowledge of organizational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for enterprise device and security policy management
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues