Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Principles
- Overview of Microsoft Intune / Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management strategies
- Fundamental concepts: devices, applications, data, and users
- Intune architecture, role definitions, and licensing models
Module 2: Identity and Access Management
- Microsoft Entra ID / Azure AD: foundational concepts
- Synchronizing from AD to Entra ID (via Azure AD Connect)
- Device join mechanisms: Azure AD Join and Hybrid AD Join
- Managing roles, groups, and permissions within Intune
- Conditional Access and its synergy with Intune
Module 3: Device Enrollment Strategies
- Enrollment methods for Windows, iOS, Android, and macOS
- Windows Autopilot: key concepts, profiles, and workflows
- Automated enrollment using DEP (Apple) and Zero-touch (Android)
- Distinguishing between personal (BYOD) and corporate device management
- MDM versus MAM (Mobile Device Management / Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Defining device compliance policies
- Setting up configuration policies (Configuration Profiles)
- Implementing device restrictions and security controls
- Establishing App Protection Policies
- Conditional access rules driven by compliance status
Module 5: Application Governance
- Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Processes for deployment, installation, removal, and updates
- Securing application data
- Application policies and corporate data separation
- Managing licenses and assignments
Module 6: Updates and Patch Management
- Windows Update for Business and its Intune integration
- Feature and quality update policies
- Utilizing deployment ring models
- Tracking update statuses
- Strategic update approaches for corporate environments
Module 7: Security and Defense
- Microsoft Defender for Endpoint and its Intune integration
- Applying Microsoft security baselines and templates
- Threat mitigation (antimalware, firewall, and more)
- Device encryption (BitLocker) and encryption policy enforcement
- Certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Diagnostics
- Reviewing dashboards and standard reports
- Analyzing logs and diagnostics (e.g., enrollment issues, policy enforcement)
- Leveraging support and troubleshooting tools within Intune
- Utilizing administrative portals (device portal, company portal)
- Configuring alerts and notifications
Module 9: Advanced Scenarios and Integrations
- Co-management strategies with Configuration Manager
- Managing devices without traditional enrollment (“Autopilot for existing devices”)
- Integrations with other Microsoft services (Defender, Azure, Copilot, etc.)
- Automation via PowerShell and Graph API
- Governance frameworks and enterprise-scale structures
- Best practices for architectural design and implementation
Summary and Future Directions
Requirements
- Proficiency with Microsoft 365 and Azure ecosystems
- Practical experience in Windows or mobile device administration
- Knowledge of organizational IT security frameworks
Target Audience
- System Administrators
- Endpoint Management Specialists
- IT professionals responsible for enterprise device and security policy oversight
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues