Saturday, 26 July 2025

M365 Intune administration training syllabus

 


1. Introduction to Modern Management and Microsoft Intune

  • Overview of Microsoft Intune and Endpoint concepts

  • Architecture and licensing

  • Device lifecycle: enrollment, provisioning, management, retirement

2. Planning and Implementing Device Enrollment

  • Device enrollment methods (Windows, iOS, Android, macOS)

  • Windows Autopilot and zero-touch provisioning

  • Co-management with Configuration Manager

  • Enrollment restrictions and compliance

3. Managing Identities and Access

  • Microsoft Entra ID (Azure AD) integration

  • Device identity and user provisioning

  • Conditional Access and multi-factor authentication (MFA)

  • Role-based access control (RBAC)

4. Device and Application Management

  • Creating and applying configuration profiles and policies

  • Mobile device management (MDM) vs. mobile application management (MAM)

  • Application deployment, protection policies, and app configuration

  • Browser-based and mobile apps management

5. Security and Compliance

  • Device compliance policies and assessments

  • Endpoint security (Defender integration, Antivirus, Firewall, Disk Encryption)

  • Data Loss Prevention (DLP) and information protection

  • Monitoring device and application health

6. Update and Patch Management

  • Configuring Windows Update policies with Intune

  • Managing OS and app updates on various platforms

  • Monitoring and troubleshooting update deployments

7. Reporting, Monitoring, and Troubleshooting

  • Using Endpoint analytics and device health monitoring

  • Troubleshooting device and app issues (logs, remote actions)

  • Intune reporting and alerting features

8. Advanced Scenarios and Automation

  • Integration with other M365 and Azure services (Defender, Purview)

  • Scripting and automation with PowerShell and Graph API

  • Managing non-Windows endpoints (macOS, Linux, mobile)

  • Hybrid and on-premises integration (optional/advanced)

Practical Labs:

  • Enrolling and retiring devices

  • Deploying and managing applications

  • Creating compliance and security policies

  • Using remote actions (wipe, retire, locate)

  • Implementing update and reporting scenarios