Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Concepts
- Understanding Microsoft Intune and Endpoint Manager
- Interaction with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management
- Foundational concepts: devices, applications, data, and users
- Intune architecture, roles, and licensing models
Module 2: Identity and Access
- Key concepts in Microsoft Entra ID / Azure AD
- Synchronizing data from AD to Entra ID (Azure AD Connect)
- Types of device joins: Azure AD Join and Hybrid AD Join
- Managing roles, groups, and permissions within Intune
- Conditional Access and its synergy with Intune
Module 3: Device Enrollment
- Enrollment techniques for Windows, iOS, Android, and macOS
- Windows Autopilot: core ideas, profiles, and workflows
- Automated enrollment via DEP (Apple) and Zero-touch (Android)
- Distinguishing personal (BYOD) from corporate device management
- Comparing MDM and MAM (Mobile Device Management vs. Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Establishing device compliance standards
- Setting configuration policies (Configuration Profiles)
- Applying device restrictions and security controls
- Implementing App Protection Policies
- Conditional access rules driven by compliance status
Module 5: Application Management
- Application categories in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- App lifecycle management: deployment, installation, removal, and updates
- Safeguarding application data
- Differentiating application policies from corporate data policies
- Managing licenses and assignments
Module 6: Updates and Patches
- Integrating Windows Update for Business with Intune
- Policies for feature and quality updates
- Deployment ring strategies
- Tracking update status
- Update methodologies in corporate settings
Module 7: Security and Protection
- Microsoft Defender for Endpoint and its integration with Intune
- Utilizing Microsoft security baselines and templates
- Threat mitigation (antimalware, firewall, and more)
- Device encryption (BitLocker) and related encryption policies
- Certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Reviewing dashboards and standard reports
- Analyzing logs and diagnostics (e.g., enrollment issues, policy handling)
- Leveraging Intune support and troubleshooting utilities
- Utilizing administration portals (device portal, company portal)
- Configuring alerts and notifications
Module 9: Advanced Scenarios and Integrations
- Co-management workflows with Configuration Manager
- Managing devices without traditional enrollment (“Autopilot for existing devices”)
- Integrations with broader Microsoft services (Defender, Azure, Copilot, etc.)
- Automation using PowerShell and Graph API
- Developing governance strategies and enterprise-scale structures
- Best practices for system design and deployment
Summary and Recommended Next Steps
Requirements
- A solid grasp of Microsoft 365 and Azure environments
- Practical experience with Windows or mobile device management
- Knowledge of organizational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for enterprise device and security policy oversight
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues