Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Fundamentals
- Overview of Microsoft Intune / Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach)
- Advantages of modern endpoint management
- Core concepts: devices, applications, data, and users
- Intune architecture, roles, and licensing
Module 2: Identity and Access
- Microsoft Entra ID / Azure AD: key concepts
- Synchronising AD to Entra ID (Azure AD Connect)
- Device join types: Azure AD Join, Hybrid AD Join
- Roles, groups, and permissions within Intune
- Conditional Access and its integration with Intune
Module 3: Device Enrollment
- Enrollment methods for Windows, iOS, Android, and macOS
- Windows Autopilot: concepts, profiles, and processes
- Automated enrollment using DEP (Apple) and Zero-touch (Android)
- Distinguishing personal device (BYOD) from corporate device management
- Comparing MDM and MAM (Mobile Device Management / Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Establishing device compliance policies
- Setting configuration policies (Configuration Profiles)
- Implementing device restrictions and security controls
- Defining App Protection Policies
- Conditional access policies driven by compliance status
Module 5: Application Management
- Application types in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Managing app deployment, installation, removal, and updates
- Protecting application data
- Separating application policies from corporate data
- Managing licenses and assignments
Module 6: Updates and Patches
- Integrating Windows Update for Business with Intune
- Managing feature and quality update policies
- Applying deployment ring models
- Monitoring update status
- Defining update strategies for corporate environments
Module 7: Security and Protection
- Integrating Microsoft Defender for Endpoint with Intune
- Applying Microsoft security baselines and templates
- Threat protection measures (antimalware, firewall, etc.)
- Device encryption (BitLocker) and encryption policies
- Managing certificates and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilising dashboards and default reports
- Analysing logs and diagnostics (e.g., enrollment errors, policy management)
- Using support and troubleshooting tools within Intune
- Leveraging administration portals (device portal, company portal)
- Setting up alerts and notifications
Module 9: Advanced Scenarios and Integrations
- Co-management with Configuration Manager
- Managing devices without traditional enrollment (e.g., Autopilot for existing devices)
- Integrating with other Microsoft services (Defender, Azure, Copilot, etc.)
- Automation using PowerShell and Graph API
- Implementing governance strategies and enterprise-scale structures
- Best practices for design and implementation
Summary and Next Steps
Requirements
- A solid grasp of Microsoft 365 and Azure environments
- Practical experience with Windows or mobile device management
- Knowledge of organisational IT security principles
Target Audience
- System administrators
- Endpoint management specialists
- IT professionals responsible for managing enterprise devices and security policies
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues