Course Outline

Module 1: Introduction and Fundamentals

  • What is Microsoft Intune / Endpoint Manager?
  • Relationship with Configuration Manager (co-management, cloud attach)
  • Benefits of modern endpoint management
  • Key concepts: devices, applications, data, users
  • Intune architecture, roles, licensing

Module 2: Identity and Access

  • Microsoft Entra ID / Azure AD: main concepts
  • Synchronization from AD to Entra ID (Azure AD Connect)
  • Device join types: Azure AD Join, Hybrid AD Join
  • Roles, groups, and permissions in Intune
  • Conditional Access and its integration with Intune

Module 3: Device Enrollment

  • Enrollment methods (Windows, iOS, Android, macOS)
  • Windows Autopilot: concepts, profiles, processes
  • Automated enrollment with DEP (Apple), Zero-touch (Android)
  • Personal device (BYOD) vs corporate device management
  • MDM vs MAM (Mobile Device Management / Mobile Application Management)

Module 4: Configuration and Compliance Policies

  • Device compliance policies
  • Configuration policies (Configuration Profiles)
  • Device restrictions (restrictions, security controls)
  • App Protection Policies
  • Conditional access policies based on compliance

Module 5: Application Management

  • Types of applications in Intune: Line of Business (LOB), Win32, Microsoft Store, web apps
  • Deployment, installation, uninstallation, and updating of apps
  • Application data protection
  • Application policies vs corporate data
  • License and assignment management

Module 6: Updates and Patches

  • Windows Update for Business and Intune integration
  • Feature/quality update policies
  • Deployment ring models
  • Monitoring update status
  • Update strategies in corporate environments

Module 7: Security and Protection

  • Microsoft Defender for Endpoint + integration with Intune
  • Microsoft security baselines/templates
  • Threat protection (antimalware, firewall, etc.)
  • Device encryption (BitLocker) and encryption policies
  • Certificate management and secure VPN/Wi-Fi profiles

Module 8: Monitoring, Reporting, and Troubleshooting

  • Dashboards and default reports
  • Logs and diagnostics (e.g., enrollment errors, policy management)
  • Support and troubleshooting tools in Intune
  • Use of administration portals (device portal, company portal)
  • Alerts and notifications

Module 9: Advanced Scenarios / Integrations

  • Co-management with Configuration Manager
  • Device management without enrollment (“Autopilot for existing devices”)
  • Integrations with other Microsoft services (Defender, Azure, Copilot, etc.)
  • Automation with PowerShell, Graph API
  • Governance strategies, enterprise-scale structures
  • Best practices for design and implementation

Summary and Next Steps

Requirements

  • An understanding of Microsoft 365 and Azure environments
  • Experience with Windows or mobile device management
  • Familiarity with organizational IT security principles

Audience

  • System administrators
  • Endpoint management specialists
  • IT professionals managing enterprise devices and security policies
 21 Hours

Delivery Options

Private Group Training

Our identity is rooted in delivering exactly what our clients need.

  • Pre-course call with your trainer
  • Customisation of the learning experience to achieve your goals -
    • Bespoke outlines
    • Practical hands-on exercises containing data / scenarios recognisable to the learners
  • Training scheduled on a date of your choice
  • Delivered online, onsite/classroom or hybrid by experts sharing real world experience

Private Group Prices RRP from £5700 online delivery, based on a group of 2 delegates, £1800 per additional delegate (excludes any certification / exam costs). We recommend a maximum group size of 12 for most learning events.

Contact us for an exact quote and to hear our latest promotions


Public Training

Please see our public courses

Testimonials (5)

Provisional Upcoming Courses (Contact Us For More Information)

Related Categories