Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Foundations and Core Concepts
- Overview of Microsoft Intune and Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management strategies
- Core entities: devices, applications, data, and users
- Intune architecture, administrative roles, and licensing models
Module 2: Identity and Access Management
- Key concepts in Microsoft Entra ID (formerly Azure AD)
- Directory synchronization via Azure AD Connect
- Device registration types: Azure AD Join and Hybrid AD Join
- Managing roles, groups, and permissions within Intune
- Implementation of Conditional Access and its synergy with Intune
Module 3: Device Registration and Onboarding
- Registration methods for Windows, iOS, Android, and macOS
- Windows Autopilot: core concepts, profiles, and workflows
- Automated registration using Apple DEP and Android Zero-touch
- Distinguishing between BYOD and corporate-owned device management
- Comparing MDM and MAM approaches
Module 4: Configuration and Compliance Strategies
- Establishing device compliance policies
- Defining configuration profiles
- Implementing device restrictions and security controls
- Creating App Protection Policies
- Linking conditional access decisions to compliance status
Module 5: Application Lifecycle Management
- Categorizing apps in Intune: LOB, Win32, Store, and web applications
- Managing app deployment, installation, removal, and updates
- Safeguarding application data
- Separating application policies from corporate data access
- Handling license and assignment administration
Module 6: Update and Patch Management
- Leveraging Windows Update for Business alongside Intune
- Defining policies for feature and quality updates
- Utilizing deployment ring models
- Tracking update compliance and status
- Designing update strategies for enterprise environments
Module 7: Security Posture and Threat Protection
- Integrating Microsoft Defender for Endpoint with Intune
- Applying Microsoft security baselines and templates
- Configuring threat protection features (antimalware, firewall)
- Implementing BitLocker encryption and related policies
- Managing certificates and secure VPN/Wi-Fi configurations
Module 8: Observability, Reporting, and Diagnostics
- Utilizing standard dashboards and reports
- Analyzing logs for diagnostics (e.g., enrollment issues, policy failures)
- Using built-in support and troubleshooting tools
- Navigating the device and company portals
- Configuring alerts and notification workflows
Module 9: Advanced Integrations and Scenarios
- Co-management scenarios with Configuration Manager
- Managing existing devices without re-enrollment (Autopilot)
- Extending capabilities via integrations with Defender, Azure, and Copilot
- Automating tasks using PowerShell and Graph API
- Structuring governance for enterprise-scale implementations
- Adopting best practices for design and rollout
Conclusion and Future Roadmap
Requirements
- Proficiency with Microsoft 365 and Azure environments
- Practical experience in managing Windows or mobile devices
- Knowledge of fundamental organizational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for enterprise device and security policy management
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues