Get in Touch

Course Outline

Module 1: Introduction and Fundamentals

  • What is Microsoft Intune / Endpoint Manager?
  • Relationship with Configuration Manager (co-management, cloud attach).
  • Benefits of modern endpoint management.
  • Key concepts: devices, applications, data, users.
  • Intune architecture, roles, licensing.

Module 2: Identity and Access

  • Microsoft Entra ID / Azure AD: main concepts.
  • Synchronization from AD to Entra ID (Azure AD Connect).
  • Device join types: Azure AD Join, Hybrid AD Join.
  • Roles, groups, and permissions in Intune.
  • Conditional Access and its integration with Intune.

Module 3: Device Enrollment

  • Enrollment methods (Windows, iOS, Android, macOS).
  • Windows Autopilot: concepts, profiles, processes.
  • Automated enrollment with DEP (Apple), Zero-touch (Android).
  • Personal device (BYOD) vs corporate device management.
  • MDM vs MAM (Mobile Device Management / Mobile Application Management).

Module 4: Configuration and Compliance Policies

  • Device compliance policies.
  • Configuration policies (Configuration Profiles).
  • Device restrictions (restrictions, security controls).
  • App Protection Policies.
  • Conditional access policies based on compliance.

Module 5: Application Management

  • Types of applications in Intune: Line of Business (LOB), Win32, Microsoft Store, web apps.
  • Deployment, installation, uninstallation, and updating of apps.
  • Application data protection.
  • Application policies vs corporate data.
  • License and assignment management.

Module 6: Updates and Patches

  • Windows Update for Business and Intune integration.
  • Feature/quality update policies.
  • Deployment ring models.
  • Monitoring update status.
  • Update strategies in corporate environments.

Module 7: Security and Protection

  • Microsoft Defender for Endpoint + integration with Intune.
  • Microsoft security baselines/templates.
  • Threat protection (antimalware, firewall, etc.).
  • Device encryption (BitLocker) and encryption policies.
  • Certificate management and secure VPN/Wi-Fi profiles.

Module 8: Monitoring, Reporting, and Troubleshooting

  • Dashboards and default reports.
  • Logs and diagnostics (e.g., enrollment errors, policy management).
  • Support and troubleshooting tools in Intune.
  • Use of administration portals (device portal, company portal).
  • Alerts and notifications.

Module 9: Advanced Scenarios / Integrations

  • Co-management with Configuration Manager.
  • Device management without enrollment (“Autopilot for existing devices”).
  • Integrations with other Microsoft services (Defender, Azure, Copilot, etc.).
  • Automation with PowerShell, Graph API.
  • Governance strategies, enterprise-scale structures.
  • Best practices for design and implementation.

Summary and Next Steps

Requirements

  • A solid understanding of Microsoft 365 and Azure environments.
  • Experience with Windows or mobile device management.
  • Familiarity with organizational IT security principles.

Audience

  • System administrators.
  • Endpoint management specialists.
  • IT professionals responsible for managing enterprise devices and security policies.
 21 Hours

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories