Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Module 1: Introduction and Fundamentals
- What is Microsoft Intune / Endpoint Manager?
- Relationship with Configuration Manager (co-management, cloud attach).
- Benefits of modern endpoint management.
- Key concepts: devices, applications, data, and users.
- Intune architecture, roles, and licensing.
Module 2: Identity and Access
- Microsoft Entra ID / Azure AD: core concepts.
- Synchronisation from AD to Entra ID (Azure AD Connect).
- Device join types: Azure AD Join, Hybrid AD Join.
- Roles, groups, and permissions within Intune.
- Conditional Access and its integration with Intune.
Module 3: Device Enrollment
- Enrollment methods for Windows, iOS, Android, and macOS.
- Windows Autopilot: concepts, profiles, and processes.
- Automated enrollment with DEP (Apple) and Zero-touch (Android).
- Personal device (BYOD) versus corporate device management.
- MDM versus MAM (Mobile Device Management / Mobile Application Management).
Module 4: Configuration and Compliance Policies
- Device compliance policies.
- Configuration policies (Configuration Profiles).
- Device restrictions (restrictions, security controls).
- App Protection Policies.
- Conditional access policies based on compliance.
Module 5: Application Management
- Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, web apps.
- Deployment, installation, uninstallation, and updating of apps.
- Application data protection.
- Application policies versus corporate data.
- License and assignment management.
Module 6: Updates and Patches
- Windows Update for Business and Intune integration.
- Feature and quality update policies.
- Deployment ring models.
- Monitoring update status.
- Update strategies in corporate environments.
Module 7: Security and Protection
- Microsoft Defender for Endpoint plus integration with Intune.
- Microsoft security baselines / templates.
- Threat protection (antimalware, firewall, etc.).
- Device encryption (BitLocker) and encryption policies.
- Certificate management and secure VPN / Wi-Fi profiles.
Module 8: Monitoring, Reporting, and Troubleshooting
- Dashboards and default reports.
- Logs and diagnostics (e.g., enrollment errors, policy management).
- Support and troubleshooting tools in Intune.
- Use of administration portals (device portal, company portal).
- Alerts and notifications.
Module 9: Advanced Scenarios / Integrations
- Co-management with Configuration Manager.
- Device management without enrollment (“Autopilot for existing devices”).
- Integrations with other Microsoft services (Defender, Azure, Copilot, etc.).
- Automation with PowerShell, Graph API.
- Governance strategies and enterprise-scale structures.
- Best practices for design and implementation.
Summary and Next Steps
Requirements
- A working understanding of Microsoft 365 and Azure environments.
- Experience with Windows or mobile device management.
- Familiarity with organisational IT security principles.
Target Audience
- System administrators.
- Endpoint management specialists.
- IT professionals responsible for managing enterprise devices and security policies.
21 Hours
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues