Course Outline

Module 1: Introduction and Fundamentals

  • Overview of Microsoft Intune / Endpoint Manager
  • Relationship between Configuration Manager and Intune (co-management, cloud attach)
  • Advantages of modern endpoint management for government operations
  • Key concepts: devices, applications, data, users
  • Intune architecture, roles, and licensing requirements for government agencies

Module 2: Identity and Access Management

  • Fundamentals of Microsoft Entra ID / Azure AD
  • Synchronization processes from Active Directory to Entra ID (Azure AD Connect)
  • Device join options: Azure AD Join, Hybrid AD Join for government environments
  • Roles, groups, and permissions management in Intune
  • Conditional Access policies and their integration with Intune for enhanced security

Module 3: Device Enrollment Strategies

  • Enrollment methods for various devices (Windows, iOS, Android, macOS)
  • Concepts, profiles, and processes of Windows Autopilot for streamlined deployment
  • Automated enrollment with Apple's DEP (Device Enrollment Program) and Google's Zero-touch for government use
  • Differentiating between personal device (BYOD) and corporate device management for government agencies
  • Comparing MDM (Mobile Device Management) and MAM (Mobile Application Management)

Module 4: Configuration and Compliance Policies

  • Device compliance policies to ensure security standards in government operations
  • Configuration policies (Configuration Profiles) for consistent device settings
  • Implementing device restrictions and security controls for government endpoints
  • App Protection Policies to safeguard sensitive data on personal devices
  • Conditional access policies based on compliance status for enhanced security in government networks

Module 5: Application Management Practices

  • Types of applications supported by Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
  • Deployment, installation, uninstallation, and updating processes for applications in government settings
  • Strategies for application data protection to meet government security requirements
  • Differentiating between application policies and corporate data management for government agencies
  • Managing licenses and assignments of applications for efficient resource allocation

Module 6: Updates and Patches Management

  • Integration of Windows Update for Business with Intune for seamless updates in government environments
  • Feature and quality update policies to ensure timely security patches
  • Deployment ring models for controlled rollouts in government agencies
  • Monitoring the status of updates to maintain operational readiness
  • Update strategies tailored for corporate environments, including those in the public sector

Module 7: Security and Protection Measures

  • Microsoft Defender for Endpoint and its integration with Intune for enhanced security in government operations
  • Implementation of Microsoft security baselines and templates to meet government standards
  • Threat protection mechanisms, including antimalware and firewall configurations
  • Device encryption (BitLocker) and encryption policies to protect data at rest for government use
  • Certificate management and secure configuration of VPN/Wi-Fi profiles for government networks

Module 8: Monitoring, Reporting, and Troubleshooting Techniques

  • Utilization of dashboards and default reports to track performance and compliance in government operations
  • Reviewing logs and diagnostics for issues such as enrollment errors and policy management
  • Support and troubleshooting tools available within Intune for government IT teams
  • Use of administration portals (device portal, company portal) to assist end-users in government agencies
  • Setting up alerts and notifications for proactive issue resolution in government environments

Module 9: Advanced Scenarios and Integrations

  • Co-management strategies with Configuration Manager for hybrid environments in government settings
  • Device management without enrollment, including “Autopilot for existing devices” in government agencies
  • Integrations with other Microsoft services (Defender, Azure, Copilot) to enhance security and efficiency
  • Automation techniques using PowerShell and the Graph API for streamlined operations in government IT
  • Governance strategies and enterprise-scale structures to ensure compliance and scalability in government agencies
  • Best practices for designing and implementing Intune solutions in government environments

Summary and Next Steps

Requirements

  • An understanding of Microsoft 365 and Azure environments for government
  • Experience with Windows or mobile device management
  • Familiarity with organizational IT security principles

Audience

  • System administrators
  • Endpoint management specialists
  • IT professionals responsible for managing enterprise devices and security policies
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories