Microsoft Private Public

Manage and secure Microsoft 365 endpoints by using Intune (MD-102T00)

Learn to deploy, manage, secure, and monitor enterprise endpoints with Microsoft Intune, Entra ID, Windows Autopilot, and Microsoft Defender tools.

Register or Request Training

Price per student
$2,935.10
Guaranteed to run
Select a date
Please select a class.
  • Private class for your team
  • Live expert instructor
  • Online or on‑location
  • Customizable agenda
  • Proposal responses same day as request

Course Overview

Learn to plan and execute an enterprise endpoint deployment strategy using modern deployment and update techniques. This course covers Microsoft Intune integration, application management, identity and access, device compliance, and endpoint security using technologies such as Microsoft Entra ID, Windows Autopilot, Microsoft Intune Suite, and Microsoft Defender for Endpoint.

This course is intended for Microsoft 365 Endpoint Administrators who deploy, configure, secure, manage, and monitor devices and client applications in corporate environments. It emphasizes cloud-based management of Windows 11 and later devices as well as non-Windows endpoints.

Course Benefits

  • Plan endpoint deployment, application deployment, update, upgrade, and retirement strategies.
  • Manage Microsoft Entra identities, roles, groups, device authentication, and synchronization with Active Directory Domain Services.
  • Enroll and remotely manage Windows, Android, and iOS devices with Microsoft Intune.
  • Create, deploy, monitor, and maintain device and user profiles.
  • Deploy, update, and manage applications with Intune, Configuration Manager, Group Policy, and Microsoft 365 deployment tools.
  • Protect identities and organizational resources with Windows Hello for Business, multifactor authentication, VPN technologies, and conditional access.
  • Implement device compliance policies and generate inventory and compliance reports.
  • Protect endpoints and data with BitLocker, Encrypting File System, Microsoft Defender for Endpoint, and related Windows security capabilities.
  • Assess deployment readiness and deploy devices with the Microsoft Deployment Toolkit, Configuration Manager, Windows Autopilot, and provisioning packages.
  • Plan a transition to modern endpoint management using co-management, workload migration, and modern deployment methods.
  • Configure and administer Windows 365 and Azure Virtual Desktop.
  • Use Microsoft Intune Suite capabilities, including Endpoint Privilege Management, Advanced Analytics, Remote Help, and Microsoft Tunnel.

Delivery Methods

Public Class
Live expert-led online training from anywhere. Guaranteed to run .
Private Class
Delivered for your team at your site or online.

Microsoft Certified Partner

Webucator is a Microsoft Certified Partner. This class uses official Microsoft courseware and will be delivered by a Microsoft Certified Trainer (MCT).

Microsoft Certified Partner

Course Outline

  1. Explore the Enterprise Desktop
    1. Examine the benefits of modern management
    2. Examine the enterprise desktop lifecycle model
    3. Examine planning and purchasing
    4. Examine desktop deployment
    5. Plan an application deployment
    6. Plan for upgrades and retirement
  2. Explore Windows Editions
    1. Examine Windows client editions and capabilities
    2. Select a client edition
    3. Examine hardware requirements
  3. Understand Microsoft Entra ID
    1. Examine Microsoft Entra ID
    2. Compare Microsoft Entra ID and Active Directory Domain Services
    3. Examine Microsoft Entra ID as a directory service for cloud apps
    4. Compare Microsoft Entra ID P1 and P2 plans
    5. Examine Microsoft Entra Domain Services
  4. Manage Microsoft Entra Identities
    1. Examine RBAC and user roles in Microsoft Entra ID
    2. Create and manage users in Microsoft Entra ID
    3. Create and manage groups in Microsoft Entra ID
    4. Manage Microsoft Entra objects with Microsoft Graph PowerShell
    5. Synchronize objects from AD DS to Microsoft Entra ID
  5. Manage Device Authentication
    1. Describe Microsoft Entra join
    2. Examine Microsoft Entra join prerequisites, limitations, and benefits
    3. Join devices to Microsoft Entra ID
    4. Manage devices joined to Microsoft Entra ID
  6. Enroll Devices Using Microsoft Configuration Manager
    1. Deploy the Microsoft Configuration Manager client
    2. Monitor the Microsoft Configuration Manager client
    3. Manage the Microsoft Configuration Manager client
  7. Enroll Devices Using Microsoft Intune
    1. Manage mobile devices with Intune
    2. Enable mobile device management
    3. Explain considerations for device enrollment
    4. Manage corporate enrollment policy
    5. Enroll Windows devices in Intune
    6. Enroll Android devices in Intune
    7. Enroll iOS devices in Intune
    8. Explore Device Enrollment Manager
    9. Monitor device enrollment
    10. Manage devices remotely
  8. Implement Device Profiles
    1. Explore Intune device profiles
    2. Create device profiles
    3. Create a custom device profile
  9. Manage Device Profiles
    1. Monitor device profiles in Intune
    2. Manage device synchronization in Intune
    3. Manage devices in Intune using scripts
  10. Maintain User Profiles
    1. Examine user profiles
    2. Explore user profile types
    3. Examine options for minimizing user profile size
    4. Deploy and configure folder redirection
    5. Synchronize user state with Enterprise State Roaming
    6. Configure Enterprise State Roaming in Azure
  11. Implement Mobile Application Management
    1. Examine mobile application management
    2. Examine considerations for mobile application management
    3. Prepare line-of-business apps for app protection policies
    4. Implement mobile application management policies in Intune
    5. Manage mobile application management policies in Intune
  12. Deploy and Update Applications
    1. Deploy applications with Intune
    2. Add apps to Intune
    3. Manage Win32 apps with Intune
    4. Deploy applications with Configuration Manager
    5. Deploy applications with Group Policy
    6. Assign and publish software
    7. Explore Microsoft Store for Business
    8. Implement Microsoft Store apps
    9. Update Microsoft Store apps with Intune
    10. Assign apps to company employees
  13. Administer Endpoint Applications
    1. Manage apps with Intune
    2. Manage apps on unenrolled devices
    3. Deploy Microsoft 365 Apps with Intune
    4. Explore additional Microsoft 365 Apps deployment tools
    5. Configure Microsoft Edge Internet Explorer mode
    6. Review app inventory
  14. Protect Identities in Microsoft Entra ID
    1. Explore Windows Hello for Business
    2. Deploy Windows Hello
    3. Manage Windows Hello for Business
    4. Explore Microsoft Entra ID Protection
    5. Manage self-service password reset in Microsoft Entra ID
    6. Implement multifactor authentication
  15. Enable Organizational Access
    1. Enable access to organizational resources
    2. Explore VPN types and configuration
    3. Explore Always On VPN
    4. Deploy Always On VPN
  16. Implement Device Compliance
    1. Protect access to resources using Intune
    2. Explore device compliance policies
    3. Deploy a device compliance policy
    4. Explore conditional access
    5. Create conditional access policies
  17. Generate Inventory and Compliance Reports
    1. Report enrolled-device inventory in Intune
    2. Monitor and report device compliance
    3. Build custom Intune inventory reports
    4. Access Intune using Microsoft Graph API
  18. Deploy Device Data Protection
    1. Explore Windows Information Protection
    2. Plan Windows Information Protection
    3. Implement and use Windows Information Protection
    4. Explore Encrypting File System in Windows client
    5. Explore BitLocker
  19. Manage Microsoft Defender for Endpoint
    1. Explore Microsoft Defender for Endpoint
    2. Examine key capabilities of Microsoft Defender for Endpoint
    3. Explore Windows Defender Application Control and Device Guard
    4. Explore Microsoft Defender Application Guard
    5. Examine Windows Defender Exploit Guard
    6. Explore Windows Defender System Guard
  20. Manage Microsoft Defender in Windows Client
    1. Explore Windows Security Center
    2. Explore Windows Defender Credential Guard
    3. Manage Microsoft Defender Antivirus
    4. Manage Windows Defender Firewall
    5. Explore Windows Defender Firewall with Advanced Security
  21. Manage Microsoft Defender for Cloud Apps
    1. Explore Microsoft Defender for Cloud Apps
    2. Plan for Microsoft Defender for Cloud Apps
    3. Implement Microsoft Defender for Cloud Apps
  22. Assess Deployment Readiness
    1. Examine deployment guidelines
    2. Explore readiness tools
    3. Assess application compatibility
    4. Explore tools for application compatibility mitigation
    5. Prepare the network and directory for deployment
    6. Plan a pilot
  23. Deploy Using the Microsoft Deployment Toolkit
    1. Evaluate traditional deployment methods
    2. Set up the Microsoft Deployment Toolkit for client deployment
    3. Manage and deploy images using the Microsoft Deployment Toolkit
  24. Deploy Using Microsoft Configuration Manager
    1. Explore client deployment using Configuration Manager
    2. Examine Configuration Manager deployment components
    3. Manage client deployment using Configuration Manager
    4. Plan in-place upgrades using Configuration Manager
  25. Deploy Devices Using Windows Autopilot
    1. Use Autopilot for modern deployment
    2. Examine requirements for Windows Autopilot
    3. Prepare device IDs for Autopilot
    4. Implement device registration and out-of-box customization
    5. Examine Autopilot scenarios
    6. Troubleshoot Windows Autopilot
  26. Implement Dynamic Deployment Methods
    1. Examine subscription activation
    2. Deploy using provisioning packages
    3. Use Windows Configuration Designer
    4. Use Microsoft Entra join with automatic MDM enrollment
  27. Plan a Transition to Modern Endpoint Management
    1. Explore co-management as a transition to modern endpoint management
    2. Examine prerequisites for co-management
    3. Evaluate modern management considerations
    4. Evaluate upgrades and migrations during the transition
    5. Migrate data during the transition
    6. Migrate workloads during the transition
  28. Manage Windows 365
    1. Explore Windows 365
    2. Configure Windows 365
    3. Administer Windows 365
  29. Manage Azure Virtual Desktop
    1. Examine Azure Virtual Desktop
    2. Explore Azure Virtual Desktop
    3. Configure Azure Virtual Desktop
    4. Administer Azure Virtual Desktop
  30. Explore Microsoft Intune Suite
    1. Discover the essentials of Microsoft Intune Suite
    2. Apply Zero Trust security using Microsoft Intune Suite
    3. Implement Endpoint Privilege Management
    4. Understand enterprise app management
    5. Explore Advanced Analytics
    6. Provide Remote Help
    7. Deploy Microsoft Tunnel for mobile applications

Class Materials

Each student receives a comprehensive set of materials, including course notes and all class examples.

Class Prerequisites

Experience in the following is required for this Microsoft 365 Administration class:

  • Familiarity with Microsoft 365 workloads.
  • Strong skills and experience deploying, configuring, and maintaining Windows 11 and later devices.
  • Strong skills and experience deploying, configuring, and maintaining non-Windows devices.

Experience in the following would be useful for this Microsoft 365 Administration class:

  • Experience with Windows 10 or Windows 11 deployment and management.
  • Prior exposure to Microsoft Azure services.
  • Knowledge of mobile device management (MDM) principles.
  • Understanding of cloud-based identity and authentication services.

Have questions about this course?

We can help with curriculum details, delivery options, pricing, or anything else. Reach out and we’ll point you in the right direction.