Topics
Skill: Prepare Infrastructure for Devices
Part 1: Add Devices to Microsoft Entra ID
Session 1: Choosing Device Join Types
- Evaluate and choose an appropriate device join type
Session 2: Joining and Registering Devices
- Join devices to Microsoft Entra ID
- Register devices to Microsoft Entra ID
Session 3: Group Management for Devices
- Plan and implement groups for devices in Microsoft Entra ID
Part 2: Enroll Devices to Microsoft Intune
Session 4: Enrollment Settings
- Configure enrollment settings
- Configure automatic enrollment for Windows and bulk enrollment for iOS and Android
Session 5: Android Enrollment Profiles
- Configure enrollment profiles for Android devices, including fully managed, dedicated, corporate-owned, and work profile
Part 3: Implement Identity and Compliance
Session 6: Role Management in Intune
- Manage roles in Intune
Session 7: Compliance and Conditional Access Policies
- Implement compliance policies for all supported device platforms by using Intune
- Implement Conditional Access policies requiring compliance status
Session 8: Advanced Identity Solutions
- Configure Windows Hello for Business
- Implement and manage Local Administrative Passwords Solution (LAPS) for Microsoft Entra ID
- Manage local group memberships on Windows devices by using Intune
Skill: Manage and Maintain Devices
Part 1: Deploy and Upgrade Windows Clients
Session 9: Deployment Tools and Methods
- Choose between Windows Autopilot and provisioning packages
- Choose a Windows Autopilot deployment mode
Session 10: Deployment Implementation
- Apply a device name template
- Implement Windows client deployment by using Windows Autopilot
- Create an Enrollment Status Page (ESP)
- Plan and implement provisioning packages
- Plan and implement device upgrades for Windows 11
Session 11: Windows 365 Cloud PC
- Implement a Windows 365 cloud PC deployment
Part 2: Plan and Implement Device Configuration Profiles
Session 12: Creating Configuration Profiles
- Create device configuration profiles for Windows, Android, iOS, Mac OS, and enterprise multi-session devices
- Import ADMX files for configuration profiles
Session 13: Targeting Profiles
Target a profile by using filters
Part 3: Implement Intune Suite Add-On Capabilities
Session 14: Advanced Capabilities
- Configure Endpoint Privilege Management
- Manage applications by using the Enterprise App Catalog
- Implement Microsoft Intune Advanced Analytics
- Configure Microsoft Intune Remote Help
Session 15: Specialized Use Cases
- Identify use cases for Cloud PKI
- Implement Microsoft Tunnel for MAM
Part 4: Perform Remote Actions on Devices
Session 16: Remote Device Management
- Sync, restart, retire, or wipe devices
- Perform bulk remote actions
- Update Windows Defender security intelligence
- Rotate BitLocker recovery keys
- Run a device query by using KQL
Skill: Manage Applications
Part 1: Deploy and Update Apps
Session 17: Application Deployment
- Prepare applications for deployment by using Intune
- Deploy apps and Microsoft 365 Apps by using Intune
- Configure policies for Office apps
Session 18: Deployment with Autopilot
- Deploy Microsoft 365 Apps as part of a Windows Autopilot deployment using ODT or OCT
- Manage Microsoft 365 Apps by using the Microsoft 365 Apps admin center
Session 19: Platform-Specific App Deployment
- Deploy apps from platform-specific app stores by using Intune
Part 2: App Protection and Configuration Policies
Session 20: Protection Policies
- Plan and implement app protection policies
- Implement Conditional Access policies for app protection policies
Session 21: Configuration Policies
- Plan and implement app configuration policies for managed apps and managed devices
Skill: Protect Devices
Part 1: Configure Endpoint Security
Session 22: Security Policies
- Create antivirus, disk encryption, and firewall policies
- Configure Attack Surface Reduction (ASR) policies
- Plan and implement security baselines
Session 23: Integration with Defender for Endpoint
- Integrate Intune with Microsoft Defender for Endpoint
- Onboard devices into Microsoft Defender for Endpoint
Part 2: Manage Device Updates
Session 24: Update Management
- Plan for device updates
- Create and manage update rings by using Intune
- Create and manage update policies for iOS and Mac OS
Session 25: Advanced Update Scenarios
- Manage Android updates using configuration profiles or firmware-over-the-air (FOTA) deployments
- Configure Windows client delivery optimization by using Intune
- Monitor updates