Module 1: Modern Management
This module explains the concepts of supporting the
desktop through it's entire lifecycle. Students will be introduced to the tools
and strategies used for desktop deployment. Students will be introduced to the
concept of directory in the cloud with Azure AD. Students will learn the
similarities and differences between Azure AD and Active Directory DS and how
to synchronize between the two. Students will explore identity management in
Azure AD and learn about identity protection using Windows Hello for Business,
as well as Azure AD Identity Protection and multi-factor authentication.
Lessons
Lab : Managing identities in Azure AD
Lab : Using Azure AD Connect to connect Active Directories
After completing this module, students will be able to:
Describe the enterprise desktop lifecycle.
Describe the capabilities of Azure AD.
Manage users using Azure AD with Active
Directory DS.
Implement Windows Hello for Business.
Join devices to Azure AD.
Module 2: Device Enrollment
This module will also cover Azure AD join and will be
introduced to Microsoft Endpoint Manager, as well as learn how to configure
policies for enrolling devices to Endpoint Manager and Intune.
Lessons
Manage Device Authentication
Device Enrollment using Microsoft Endpoint
Configuration Manager
Device Enrollment using Microsoft Intune
Lab : Manage Device Enrollment into Intune
Lab : Configuring and managing Azure AD Join
Lab : Enrolling devices into Microsoft Intune
After completing this module, students will be able to:
Configure and join devices to Azure AD
Configure device enrollment in Microsoft
Endpoint Manager
Enroll devices in Endpoint Configuration Manager
and Intune
Module 3: Configuring Profiles
This module dives deeper into Intune device profiles
including the types of device profiles and the difference between built-in and
custom profiles. The student will learn about assigning profiles to Azure AD
groups and monitoring devices and profiles in Intune. You will be introduced to
the various user profile types that exist in Windows for on-premises devices.
You will learn about the benefits of various profiles and how to switch between
types of profiles. You will examine how Folder Redirection works and how to set
it up. The lesson will then conclude with an overview of Enterprise State
roaming and how to configure it for Azure AD devices.
Lessons
Lab : Configuring Enterprise State Roaming
Lab : Creating and Deploying Configuration Profiles
Lab : Monitor device and user activity in Intune
After completing this module, students will be able to:
Describe the various types of device profiles in
Intune
Create, manage and monitor profiles
Manage PowerShell scripts in Intune
Explain the various user profile types that
exist in Windows.
Explain how to deploy and configure Folder
Redirection.
Configure Enterprise State Roaming for Azure AD
devices.
Module 4: Application Management
In this module, students learn about application
management using on-premise and cloud-based solutions. This module will cover
how to manage Office 365 ProPlus deployments in Endpoint Manager as well as how
to manage apps on non-enrolled devices. The module will also include managing
Win32 apps and deployment using the Microsoft Store for Business. This module
will conclude with an overview of Microsoft Edge and Enterprise Mode.
Lessons
Implement Mobile Application Management (MAM)
Deploying and updating applications
Administering applications
Lab : Configure App Protection Policies for Mobile Device
Lab : Deploying cloud apps using Intune
Lab : Deploy Apps using Endpoint Configuration Manager
Lab : Deploy Apps using Microsoft Store for Business
After completing this module, students will be able to:
Describe the methods for application management.
Deploy applications using Endpoint Manager and
Group Policy.
Configure Microsoft Store for Business.
Deploy Office365 ProPlus using Intune.
Manage and report application inventory and
licenses.
Module 5: Managing Authentication in Azure AD
This module covers the various solutions for managing
authentication. The student will also learn about the different types of VPNs.
This module also covers compliance policies and how to create conditional
access policies.
Lessons
Protecting Identities in Azure AD
Enabling Organization Access
Implement Device Compliance Policies
Using Reporting
Lab : Creating device inventory reports
Lab : Configuring and validating device compliance
Lab : Configuring Multi-factor Authentication
Lab : Configuring Self-service password reset for user
accounts in Azure AD
After completing this module, students will be able to:
Describe Windows Hello for Business
Describe Azure AD Identity Protection
Describe and manage multi-factor authentication
Describe VPN types and configuration
Deploy device compliance and conditional access
policies
Generate inventory reports and Compliance reports
using Endpoint Manager