Get in Touch
 Duration 21 hours

Course Outline

Module 1: Introduction and Core Principles

  • Overview of Microsoft Intune / Endpoint Manager
  • Integration with Configuration Manager (co-management, cloud attach)
  • Advantages of modern endpoint management strategies
  • Fundamental concepts: devices, applications, data, and users
  • Intune architecture, role definitions, and licensing models

Module 2: Identity and Access Management

  • Microsoft Entra ID / Azure AD: foundational concepts
  • Synchronizing from AD to Entra ID (via Azure AD Connect)
  • Device join mechanisms: Azure AD Join and Hybrid AD Join
  • Managing roles, groups, and permissions within Intune
  • Conditional Access and its synergy with Intune

Module 3: Device Enrollment Strategies

  • Enrollment methods for Windows, iOS, Android, and macOS
  • Windows Autopilot: key concepts, profiles, and workflows
  • Automated enrollment using DEP (Apple) and Zero-touch (Android)
  • Distinguishing between personal (BYOD) and corporate device management
  • MDM versus MAM (Mobile Device Management / Mobile Application Management)

Module 4: Configuration and Compliance Policies

  • Defining device compliance policies
  • Setting up configuration policies (Configuration Profiles)
  • Implementing device restrictions and security controls
  • Establishing App Protection Policies
  • Conditional access rules driven by compliance status

Module 5: Application Governance

  • Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
  • Processes for deployment, installation, removal, and updates
  • Securing application data
  • Application policies and corporate data separation
  • Managing licenses and assignments

Module 6: Updates and Patch Management

  • Windows Update for Business and its Intune integration
  • Feature and quality update policies
  • Utilizing deployment ring models
  • Tracking update statuses
  • Strategic update approaches for corporate environments

Module 7: Security and Defense

  • Microsoft Defender for Endpoint and its Intune integration
  • Applying Microsoft security baselines and templates
  • Threat mitigation (antimalware, firewall, and more)
  • Device encryption (BitLocker) and encryption policy enforcement
  • Certificate management and secure VPN/Wi-Fi profiles

Module 8: Monitoring, Reporting, and Diagnostics

  • Reviewing dashboards and standard reports
  • Analyzing logs and diagnostics (e.g., enrollment issues, policy enforcement)
  • Leveraging support and troubleshooting tools within Intune
  • Utilizing administrative portals (device portal, company portal)
  • Configuring alerts and notifications

Module 9: Advanced Scenarios and Integrations

  • Co-management strategies with Configuration Manager
  • Managing devices without traditional enrollment (“Autopilot for existing devices”)
  • Integrations with other Microsoft services (Defender, Azure, Copilot, etc.)
  • Automation via PowerShell and Graph API
  • Governance frameworks and enterprise-scale structures
  • Best practices for architectural design and implementation

Summary and Future Directions

Requirements

  • Proficiency with Microsoft 365 and Azure ecosystems
  • Practical experience in Windows or mobile device administration
  • Knowledge of organizational IT security frameworks

Target Audience

  • System Administrators
  • Endpoint Management Specialists
  • IT professionals responsible for enterprise device and security policy oversight

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories