8781  Reviews star_rate star_rate star_rate star_rate star_half
$2,995USD
Duration 5 days
Course Code MD-102T00
Available Formats Classroom, Virtual
Next Class: Jul 27, 2026

Overview

Course Description

In this course, students learn to plan and execute an endpoint deployment, configuration, and management strategy using Microsoft Intune as the unified endpoint management platform. The course covers preparing identity and device infrastructure with Microsoft Entra ID, enrolling and configuring devices, managing applications, and protecting endpoints and data. Students also explore automation with PowerShell and Microsoft Graph, AI-assisted management with Microsoft Security Copilot, the extended capabilities of the Microsoft Intune Suite, and the delivery of cloud-hosted desktops with Windows 365 and Azure Virtual Desktop. Technologies explored include Microsoft Intune, Microsoft Entra ID, Windows Autopilot, Microsoft Defender for Endpoint, Microsoft Tunnel, Microsoft Cloud PKI, the Microsoft Intune Suite, Windows 365, and Azure Virtual Desktop.

Audience Profile

As a candidate for this course and the associated exam, you have subject matter expertise managing devices and client applications in a Microsoft 365 tenant by using Microsoft Intune.  As an endpoint administrator, you collaborate with architects, Microsoft 365 administrators, security administrators, and other workload administrators to plan and implement a modern workplace strategy that meets the business needs of an organization. You are responsible for:

  • Implementing solutions for efficient deployment and management of endpoints on various operating systems, platforms, and device types.
  • Implementing and managing endpoints at scale by using Microsoft Intune, Microsoft Intune Suite, Windows Autopilot, Microsoft Security Copilot, Microsoft Defender for Endpoint, Microsoft Entra ID, Azure Virtual Desktop, and Windows 365.
  • Implementing identity, security, access, policies, updates, and apps for endpoints.
|
View Full Schedule

Course Details

Course Details

Outline

  • Understand endpoint management strategies and Microsoft Intune
    • What is Microsoft Intune and how does it work?
    • Compare Configuration Manager, Intune, and co-management
    • Understand the role of Microsoft Entra ID in Intune
    • Evaluate device management models
    • Explore MDM capabilities in Intune
    • Knowledge check
  • Configure Microsoft Entra ID for device and policy management
    • Understand the role of Microsoft Entra ID in endpoint management
    • Create and manage users and groups in Microsoft Entra ID
    • Assign Microsoft Entra ID roles for device management
    • Configure Microsoft Entra ID device registration settings
    • Use dynamic group membership and filters in Microsoft Entra ID
    • Knowledge check
  • Administer device identity and authentication using Microsoft Entra ID
    • Understand device identities in Microsoft Entra ID
    • Compare device registration, Microsoft Entra join, and hybrid join
    • Understand authentication methods?key trust, certificate trust, and TPM
    • Configure device trust and join settings
    • Validate and troubleshoot device identity and trust issues
    • Knowledge check
  • Plan and implement device enrollment using Microsoft Intune
    • Choose an enrollment strategy
    • Enroll Windows devices using Microsoft Intune
    • Enroll iOS and iPadOS devices
    • Enroll macOS devices
    • Enroll Android devices
    • Configure enrollment restrictions
    • Troubleshoot device enrollment
    • Knowledge check
  • Deploy Windows devices using Windows Autopilot
    • Understand Windows Autopilot scenarios and benefits
    • Register and import devices into Autopilot
    • Configure Autopilot profiles and deployment modes
    • Pre-provision devices using Autopilot
    • Assign profiles and monitor Autopilot deployments
    • Troubleshoot Autopilot deployment issues
    • Knowledge check
  • Configure device profiles and policy management using Microsoft Intune
    • Understand device configuration profiles and their role in policy enforcement
    • Create configuration profiles
    • Assign configuration profiles using groups and filters
    • Create compliance policies
    • Assign compliance policies using groups and filters
    • Analyze and migrate Group Policy using Group Policy analytics
    • Troubleshoot device configuration and policy application issues
    • Knowledge check
  • Monitor and maintain devices using Microsoft Intune
    • Understand the role of monitoring in endpoint management
    • Use Endpoint Analytics to monitor device health and performance
    • Use Remediations to fix common device issues
    • Monitor Windows Update rings and feature update deployments
    • View device and policy health in the Intune admin center
    • Generate and interpret device and compliance reports
    • Automate management tasks using PowerShell
    • Knowledge check
  • Manage Windows updates and lifecycle using Microsoft Intune
    • Understand the Windows servicing model and update types
    • Implement update rings and feature update policies in Intune
    • Configure and manage Hotpatch with Microsoft Intune
    • Manage Windows servicing channels for enterprise devices
    • Implement Windows Autopatch for automated update management
    • Troubleshoot update deployment and compliance issues
    • Retire and reset devices using Microsoft Intune
    • Knowledge check
  • Troubleshoot device and policy issues using Microsoft Intune
    • Understand the troubleshooting workflow in Microsoft Intune
    • Troubleshoot device enrollment and compliance failures
    • Troubleshoot configuration profile and policy conflicts
    • Use logs and diagnostics to investigate device issues
    • Use the Intune Troubleshooting blade for user-based diagnostics
    • Automate issue resolution using remediation scripts
    • Knowledge check
  • Deploy and manage applications using Microsoft Intune
    • Example scenario
    • Understand application deployment options in Microsoft Intune
    • Plan application deployment for your organization
    • Deploy Microsoft Store apps using Microsoft Intune
    • Deploy Microsoft 365 apps using Microsoft Intune
    • Deploy Win32 apps using Microsoft Intune
    • Deploy line-of-business (LOB) apps using Microsoft Intune
    • Configure app availability, targeting, and install behavior
    • Configure app update and assignment settings
    • Monitor app deployment and troubleshoot failures
    • Manage app deployment failures using logs and troubleshooting tools
    • Knowledge check
    • Key takeaways
  • Implement application protection and security using Microsoft Intune
    • Understand Mobile Application Management (MAM) and App Protection Policies
    • Plan application protection strategies for BYOD and corporate devices
    • Configure App Protection Policies for unenrolled BYOD devices
    • Configure App Protection Policies for enrolled corporate devices
    • Define data protection, encryption, and app restriction settings
    • Define access requirements and conditional launch behaviors
    • Configure Conditional Access policies for application access control
    • Assign and monitor App Protection Policies
    • Troubleshoot application protection policy issues
    • Knowledge check
  • Manage application lifecycle and user experience using Microsoft Intune
    • Understand application lifecycle management in Microsoft Intune
    • Update and retire applications in Microsoft Intune
    • Assign applications using groups, filters, and targeting
    • Manage user and device groups for application delivery
    • Configure default application settings and user experience
    • Enforce compliance requirements for applications
    • Monitor app lifecycle and usage analytics
    • Knowledge check
  • Monitor and optimize application performance using Microsoft Intune
    • Understand app health and performance in modern environments
    • Monitor app deployment and compliance using Intune
    • Track installation success and failure reports
    • Use Endpoint Analytics to measure app performance and startup times
    • Use Intune reporting tools to identify and resolve performance issues
    • Optimize user experience with actionable insights
    • Knowledge check
  • Manage Enterprise App Catalog applications
    • Discover and deploy apps from the catalog
    • Configure default install and detection settings
    • Monitor updates and supersedence
    • Use the Managed Apps report for insights
    • Knowledge check
  • Implement endpoint security with Microsoft Defender and Microsoft Intune
    • Understand how Microsoft Defender protects endpoints
    • Onboard devices to Microsoft Defender using Intune
    • Configure Microsoft Defender endpoint security settings and baselines
    • Configure Endpoint Detection and Response policies
    • Investigate and respond to endpoint threats using Microsoft Defender
    • Monitor and triage incidents in the Microsoft Defender portal
    • Knowledge check
  • Implement device encryption and security policies using Microsoft Intune
    • Understand the importance of device encryption for compliance and security
    • Configure BitLocker policies using Microsoft Intune
    • Manage BitLocker recovery keys and user self-service options
    • Monitor BitLocker compliance and encryption status in Microsoft Intune
    • Audit device encryption with Microsoft Defender
    • Knowledge check
  • Implement advanced threat protection using Microsoft Intune and Microsoft Defender
    • Understand advanced threat protection strategies for endpoint environments
    • Discover and monitor cloud apps with Microsoft Defender
    • Configure Attack Surface Reduction rules using Microsoft Intune
    • Apply Zero Trust principles for endpoint protection
    • Knowledge check
  • Enforce compliance and remediate security issues by using Microsoft Intune
    • Understand compliance policies and risk-based enforcement
    • Create compliance policies for supported platforms
    • Assign and scope compliance policies using groups and filters
    • Configure actions for noncompliant devices
    • Remediate device issues using compliance and configuration policies
    • Monitor and report on compliance results
    • Knowledge check
  • Secure mobile access using Microsoft Tunnel
    • Configure Tunnel gateway
    • Extend support to MAM devices
    • Monitor and troubleshoot Tunnel connections
    • Knowledge check
  • Implement Microsoft Cloud PKI
    • Set up cloud-based PKI
    • Automate certificate issuance and renewal
    • Monitor certificate health and compliance
    • Knowledge check
  • Automate endpoint management using PowerShell and Microsoft Graph
    • Understand automation options for managing Microsoft Intune
    • Register and secure Microsoft Graph API access for Intune
    • Authenticate and use the Microsoft Graph API for Intune
    • Use PowerShell to run scripts against Microsoft Intune
    • Automate device and policy tasks using Microsoft Graph
    • Knowledge check
    • 08 - Summary
  • Optimize device management using AI and Copilot tools
    • Understand the role of AI in modern endpoint management
    • Use Microsoft Security Copilot to investigate threats
    • Use AI-powered recommendations in Microsoft Intune
    • Use Microsoft Defender insights to support endpoint decisions
    • Knowledge check
  • Monitor and optimize endpoint performance using Microsoft Intune
    • Understand performance optimization in cloud-managed environments
    • Use Endpoint Analytics to optimize device performance
    • Configure remediation scripts using Microsoft Intune
    • Monitor endpoint reliability and user experience with Endpoint Analytics
    • Knowledge check
  • Implement reporting and data visibility using Microsoft Intune
    • Understand built-in reporting options in Microsoft Intune
    • Customize Intune reports and filters for actionable insights
    • Use Microsoft Intune workbooks and dashboards
    • Export, schedule, and share reporting data securely
    • Knowledge check
  • Apply RBAC and admin delegation in Microsoft Intune
    • Understand RBAC and scope tags in Microsoft Intune
    • Assign roles and permissions for multi-admin environments
    • Configure scoped administration for regional or business unit separation
    • Audit admin actions and monitor configuration changes
    • Knowledge check
  • Maintain tenant health and support readiness
    • Monitor tenant health and Intune service communications
    • Configure alerts and notifications in Microsoft Intune
    • Use support tools and troubleshoot service-related issues
    • Document tenant changes and establish operational baselines
    • Knowledge check
  • Explore Microsoft Intune Suite capabilities
    • Understand the purpose and value of the Microsoft Intune Suite
    • Identify key components of the Microsoft Intune Suite
    • Compare Microsoft Intune Suite features to core Intune capabilities
    • Plan licensing and deployment strategies for the Microsoft Intune Suite
    • Knowledge check
  • Implement Remote Help scenarios using Microsoft Intune
    • Understand Remote Help and its role in end-user support
    • Configure and deploy Remote Help with Microsoft Intune
    • Support and monitor Remote Help sessions
    • Evaluate privacy, permission, and compliance considerations
    • Knowledge check
  • Analyze advanced device signals with Microsoft Intune Suite
    • Explore advanced reporting with Intune Suite analytics
    • Identify and respond to anomaly detection insights
    • Integrate Intune with Microsoft Defender for proactive threat signals
    • Use advanced insights to support risk-based policy decisions
    • Knowledge check
  • Evaluate Endpoint Privilege Management with Microsoft Intune
    • Understand just-in-time elevation in Endpoint Privilege Management
    • Configure elevation policies and rules
    • Monitor elevated actions and review reports
    • Troubleshoot and refine an EPM deployment
    • Knowledge check
  • Explore Windows 365 for cloud PC deployment
    • Understand the role of Windows 365
    • Compare Windows 365 to traditional VDI
    • Identify Windows 365 licensing, service plans, and prerequisites
    • Identify Windows 365 use cases
    • Explore the Windows 365 endpoint experience
    • Knowledge check
  • Configure and manage Windows 365 with Microsoft Intune
    • Set up Windows 365 provisioning policies
    • Assign and manage Cloud PCs
    • Apply configuration profiles and policies to Cloud PCs
    • Monitor Cloud PC usage, performance, and health
    • Knowledge check
  • Explore Azure Virtual Desktop
    • Understand Azure Virtual Desktop architecture
    • Compare Azure Virtual Desktop with Windows 365
    • Examine host pools, session hosts, and scaling
    • Knowledge check
  • Integrate Azure Virtual Desktop with Microsoft Intune
    • Enroll Azure Virtual Desktop session hosts in Microsoft Intune
    • Apply compliance and configuration policies to session hosts
    • Monitor and troubleshoot Azure Virtual Desktop with Microsoft Intune
    • Address governance, licensing, and hybrid scenarios
    • Knowledge check

Schedule

4 options available

FAQ

How do I get a Microsoft exam voucher?

Pearson Vue Exam vouchers can be requested and ordered with your course purchase.

  • Vouchers are non-refundable and non-returnable. Vouchers expire 12 months from the date they are issued unless otherwise specified in the terms and conditions.
  • Voucher expiration dates cannot be extended. The exam must be taken by the expiration date printed on the voucher.

Do Microsoft courses come with post lab access?

Most Microsoft official courses will include post-lab access ranging from 30 to 180 calendar days after instructor led course delivery. A lab training key in class will be provided that can be leveraged to continue connecting to a remote lab environment for the individual course attendee.

Does the course schedule include a Lunchbreak?

Lunch is normally an hour-long after 3-3.5 hours of the class day.

What languages are used to deliver training?

Microsoft courses are conducted in English unless otherwise specified.

Reviews

This was a good program to get prepared for the solutions architect associate exam.

Easy to work with. Learning material pdfs were able to be printed out in color which was very nice to write on.

I like their training. A lot of material covered. The labs are very good. l learned a lot.

Sean is the very good instructor. I would like to take his class again in the future.

Provided good amount of material and a great instructor to teach the material.