Get in Touch
 Duration 21 hours

Course Outline

Module 1: Introduction and Core Principles

  • Defining Microsoft Intune / Endpoint Manager.
  • Interaction with Configuration Manager (co-management, cloud attach).
  • Advantages of modern endpoint management.
  • Core concepts: devices, applications, data, and users.
  • Intune architecture, roles, and licensing models.

Module 2: Identity and Access Control

  • Microsoft Entra ID / Azure AD: key concepts.
  • Synchronising from AD to Entra ID (via Azure AD Connect).
  • Device join types: Azure AD Join and Hybrid AD Join.
  • Roles, groups, and permissions within Intune.
  • Conditional Access and its synergy with Intune.

Module 3: Device Enrolment

  • Enrolment methods for Windows, iOS, Android, and macOS.
  • Windows Autopilot: concepts, profiles, and workflows.
  • Automated enrolment using DEP (Apple) and Zero-touch (Android).
  • Distinguishing between BYOD and corporate device management.
  • MDM vs MAM (Mobile Device Management / Mobile Application Management).

Module 4: Configuration and Compliance Policies

  • Device compliance standards.
  • Configuration policies (Configuration Profiles).
  • Device restrictions and security controls.
  • App Protection Policies.
  • Conditional access policies driven by compliance status.

Module 5: Application Management

  • Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps.
  • Application deployment, installation, removal, and updates.
  • Safeguarding application data.
  • Distinguishing application policies from corporate data protection.
  • Managing licenses and assignments.

Module 6: Updates and Patching

  • Windows Update for Business and its integration with Intune.
  • Feature and quality update policies.
  • Deployment ring models.
  • Tracking update status.
  • Update strategies for corporate environments.

Module 7: Security and Protection

  • Microsoft Defender for Endpoint and its Intune integration.
  • Microsoft security baselines and templates.
  • Threat protection measures (antimalware, firewall, etc.).
  • Device encryption (BitLocker) and associated policies.
  • Managing certificates and secure VPN/Wi-Fi profiles.

Module 8: Monitoring, Reporting, and Troubleshooting

  • Utilising dashboards and standard reports.
  • Analyzing logs and diagnostics (e.g., enrolment errors, policy issues).
  • Employing Intune support and troubleshooting utilities.
  • Navigating administration portals (device and company portals).
  • Configuring alerts and notifications.

Module 9: Advanced Scenarios / Integrations

  • Co-management with Configuration Manager.
  • Managing devices without traditional enrolment (e.g., "Autopilot for existing devices").
  • Integrating with other Microsoft services (Defender, Azure, Copilot, etc.).
  • Automation using PowerShell and Graph API.
  • Governance strategies and enterprise-scale structures.
  • Best practices for design and implementation.

Summary and Future Directions

Requirements

  • Proficiency with Microsoft 365 and Azure environments.
  • Practical experience in Windows or mobile device management.
  • Knowledge of organisational IT security principles.

Target Audience

  • System administrators.
  • Endpoint management specialists.
  • IT professionals responsible for enterprise device and security policy management.

Number of participants


Price per participant

Testimonials (1)

Provisional Upcoming Courses (Require 5+ participants)

Related Categories