Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Principles
- Defining Microsoft Intune / Endpoint Manager.
- Interaction with Configuration Manager (co-management, cloud attach).
- Advantages of modern endpoint management.
- Core concepts: devices, applications, data, and users.
- Intune architecture, roles, and licensing models.
Module 2: Identity and Access Control
- Microsoft Entra ID / Azure AD: key concepts.
- Synchronising from AD to Entra ID (via Azure AD Connect).
- Device join types: Azure AD Join and Hybrid AD Join.
- Roles, groups, and permissions within Intune.
- Conditional Access and its synergy with Intune.
Module 3: Device Enrolment
- Enrolment methods for Windows, iOS, Android, and macOS.
- Windows Autopilot: concepts, profiles, and workflows.
- Automated enrolment using DEP (Apple) and Zero-touch (Android).
- Distinguishing between BYOD and corporate device management.
- MDM vs MAM (Mobile Device Management / Mobile Application Management).
Module 4: Configuration and Compliance Policies
- Device compliance standards.
- Configuration policies (Configuration Profiles).
- Device restrictions and security controls.
- App Protection Policies.
- Conditional access policies driven by compliance status.
Module 5: Application Management
- Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps.
- Application deployment, installation, removal, and updates.
- Safeguarding application data.
- Distinguishing application policies from corporate data protection.
- Managing licenses and assignments.
Module 6: Updates and Patching
- Windows Update for Business and its integration with Intune.
- Feature and quality update policies.
- Deployment ring models.
- Tracking update status.
- Update strategies for corporate environments.
Module 7: Security and Protection
- Microsoft Defender for Endpoint and its Intune integration.
- Microsoft security baselines and templates.
- Threat protection measures (antimalware, firewall, etc.).
- Device encryption (BitLocker) and associated policies.
- Managing certificates and secure VPN/Wi-Fi profiles.
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilising dashboards and standard reports.
- Analyzing logs and diagnostics (e.g., enrolment errors, policy issues).
- Employing Intune support and troubleshooting utilities.
- Navigating administration portals (device and company portals).
- Configuring alerts and notifications.
Module 9: Advanced Scenarios / Integrations
- Co-management with Configuration Manager.
- Managing devices without traditional enrolment (e.g., "Autopilot for existing devices").
- Integrating with other Microsoft services (Defender, Azure, Copilot, etc.).
- Automation using PowerShell and Graph API.
- Governance strategies and enterprise-scale structures.
- Best practices for design and implementation.
Summary and Future Directions
Requirements
- Proficiency with Microsoft 365 and Azure environments.
- Practical experience in Windows or mobile device management.
- Knowledge of organisational IT security principles.
Target Audience
- System administrators.
- Endpoint management specialists.
- IT professionals responsible for enterprise device and security policy management.
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues