Course Outline
Module 1: Introduction and Fundamentals
- What is Microsoft Intune / Endpoint Manager?
- Relationship with Configuration Manager (co-management, cloud attach)
- Benefits of modern endpoint management
- Key concepts: devices, applications, data, users
- Intune architecture, roles, licensing
Module 2: Identity and Access
- Microsoft Entra ID / Azure AD: main concepts
- Synchronization from AD to Entra ID (Azure AD Connect)
- Device join types: Azure AD Join, Hybrid AD Join
- Roles, groups, and permissions in Intune
- Conditional Access and its integration with Intune
Module 3: Device Enrollment
- Enrollment methods (Windows, iOS, Android, macOS)
- Windows Autopilot: concepts, profiles, processes
- Automated enrollment with DEP (Apple), Zero-touch (Android)
- Personal device (BYOD) vs corporate device management
- MDM vs MAM (Mobile Device Management / Mobile Application Management)
Module 4: Configuration and Compliance Policies
- Device compliance policies
- Configuration policies (Configuration Profiles)
- Device restrictions (restrictions, security controls)
- App Protection Policies
- Conditional access policies based on compliance
Module 5: Application Management
- Types of applications in Intune: Line of Business (LOB), Win32, Microsoft Store, web apps
- Deployment, installation, uninstallation, and updating of apps
- Application data protection
- Application policies vs corporate data
- License and assignment management
Module 6: Updates and Patches
- Windows Update for Business and Intune integration
- Feature/quality update policies
- Deployment ring models
- Monitoring update status
- Update strategies in corporate environments
Module 7: Security and Protection
- Microsoft Defender for Endpoint + integration with Intune
- Microsoft security baselines/templates
- Threat protection (antimalware, firewall, etc.)
- Device encryption (BitLocker) and encryption policies
- Certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Dashboards and default reports
- Logs and diagnostics (e.g., enrollment errors, policy management)
- Support and troubleshooting tools in Intune
- Use of administration portals (device portal, company portal)
- Alerts and notifications
Module 9: Advanced Scenarios / Integrations
- Co-management with Configuration Manager
- Device management without enrollment (“Autopilot for existing devices”)
- Integrations with other Microsoft services (Defender, Azure, Copilot, etc.)
- Automation with PowerShell, Graph API
- Governance strategies, enterprise-scale structures
- Best practices for design and implementation
Summary and Next Steps
Requirements
- An understanding of Microsoft 365 and Azure environments
- Experience with Windows or mobile device management
- Familiarity with organizational IT security principles
Audience
- System administrators
- Endpoint management specialists
- IT professionals managing enterprise devices and security policies
Testimonials (5)
scope of material
Marcin - Instytut Energetyki- Panstwowy Instytut Badawczy
Course - Word dla zaawansowanych
scope of material
Marcin - Instytut Energetyki- Panstwowy Instytut Badawczy
Course - MS Word - poziom podstawowy
Assimilable form of classes
Marek - Uniwersytet Szczecinski
Course - AZ-104T00-A: Microsoft Azure Administrator
Adam was very knowledgeable and had a great layout.
Corey Reis - Lockheed Martin
Course - Advanced Slide Design in PowerPoint
some small tricks regarding image formating and templates - very useful :)