MD-102T00 : Microsoft 365 Endpoint Administrator


E-Learning
Description
In this course, students will learn to plan and execute an endpoint deployment strategy using contemporary deployment techniques and implementing update strategies. The course introduces essential elements of modern management, co-management approaches, and Microsoft Intune integration. It covers app deployment, management of browser-based applications, and key security concepts such as authentication, identities, access, and compliance policies. Technologies like Azure Active Directory, Azure Information Protection, and Microsoft Defender for Endpoint are explored to protect devices and data.
In this course, students will learn to plan and execute an endpoint deployment strategy using contemporary deployment techniques and implementing update strategies. The course introduces essential elements of modern management, co-management approaches, and Microsoft Intune integration. It covers app deployment, management of browser-based applications, and key security concepts such as authentication, identities, access, and compliance policies. Technologies like Azure Active Directory, Azure Information Protection, and Microsoft Defender for Endpoint are explored to protect devices and data.
After completing this module, you'll be able to:
Describe the benefits of Modern Management.
Explain the enterprise desktop life-cycle model.
Describe considerations for planning hardware strategies.
Describe considerations for post-deployment and retirement.
Explain the differences between the different editions of Windows.
Select the most suitable Windows device for your needs.
Describe the minimum recommended hardware requirements for installing Windows 11.
Describe RBAC and user roles in Azure AD.
Create and manage users in Azure AD.
Create and manage groups in Azure AD.
Use Windows PowerShell cmdlets to manage Azure AD.
Describe how you can synchronize objects from AD DS to Azure AD.
Describe Azure AD join.
Describe Azure AD join prerequisites, limitations and benefits.
Join device to Azure AD.
Manage devices joined to Azure AD.
Describe Microsoft Endpoint Manager.
Understand the advantages of managing a client with Configuration Manager.
Deploy the Configuration Manager client.
Monitor the Configuration Manager client.
Manage Configuration Manager devices.
Describe the benefits of Modern Management.
Explain the enterprise desktop life-cycle model.
Describe considerations for planning hardware strategies.
Describe considerations for post-deployment and retirement.
Explain the differences between the different editions of Windows.
Select the most suitable Windows device for your needs.
Describe the minimum recommended hardware requirements for installing Windows 11.
Describe RBAC and user roles in Azure AD.
Create and manage users in Azure AD.
Create and manage groups in Azure AD.
Use Windows PowerShell cmdlets to manage Azure AD.
Describe how you can synchronize objects from AD DS to Azure AD.
Describe Azure AD join.
Describe Azure AD join prerequisites, limitations and benefits.
Join device to Azure AD.
Manage devices joined to Azure AD.
Describe Microsoft Endpoint Manager.
Understand the advantages of managing a client with Configuration Manager.
Deploy the Configuration Manager client.
Monitor the Configuration Manager client.
Manage Configuration Manager devices.
The Microsoft 365 Endpoint Administrator is responsible for deploying, configuring, securing, managing, and monitoring devices and client applications in a corporate setting. Their duties include managing identity, access, policies, updates, and apps. They work alongside the M365 Enterprise Administrator to develop and execute a device strategy that aligns with the requirements of a modern organization. Microsoft 365 Endpoint Administrators should be well-versed in M365 workloads and possess extensive skills and experience in deploying, configuring, and maintaining Windows 11 and later, as well as non-Windows devices. Their role emphasizes cloud services over on-premises management technologies.
| Lesson Id | Title | Description |
|---|---|---|
| 1 | Explore the Enterprise Desktop |
Introduction Examine benefits of modern management Examine the enterprise desktop life-cycle model Examine planning and purchasing Examine desktop deployment Plan an application deployment Plan for upgrades and retirement Knowledge check Summary |
| 2 | Explore Windows Editions |
Introduction Examine Windows client editions and capabilities Select client edition Examine hardware requirements Knowledge check Summary |
| 3 | Manage Azure Active Directory identities |
Introduction Examine RBAC and user roles in Azure AD Create and manage users in Azure AD Create and manage groups in Azure AD Manage Azure AD objects with PowerShell Synchronize objects from AD DS to Azure AD Knowledge check Summary |
| 4 | Manage device authentication |
Introduction Describe Azure AD join Examine Azure AD join prerequisites limitations and benefits Join devices to Azure AD Manage devices joined to Azure AD Knowledge check Summary |
| 5 | Enroll devices using Microsoft Configuration Manager |
Introduction Deploy the Microsoft Configuration Manager client Monitor the Microsoft Configuration Manager client Manage the Microsoft Configuration Manager client Knowledge check Summary |
| 6 | Enroll devices using Microsoft Intune |
Introduction Manage mobile devices with Intune Enable mobile device management Explain considerations for device enrollment Manage corporate enrollment policy Enroll Windows devices in Intune Enroll Android devices in Intune Enroll iOS devices in Intune Explore device enrollment manager Monitor device enrollment Manage devices remotely Knowledge check Summary |
| 7 | Execute device profiles |
Introduction Explore Intune device profiles Create device profiles Create a custom device profile Knowledge check Summary |
| 8 | Oversee device profiles |
Introduction Monitor device profiles in Intune Manage device sync in Intune Manage devices in Intune using scripts Knowledge check Summary |
| 9 | Maintain user profiles |
Introduction Examine user profile Explore user profile types Examine options for minimizing user profile size Deploy and configure folder redirection Sync user state with Enterprise State Roaming Configure Enterprise State Roaming in Azure Knowledge check Summary |
| 10 | Execute mobile application management |
Introduction Examine mobile application management Examine considerations for mobile application management Prepare line-of-business apps for app protection policies Implement mobile application management policies in Intune Manage mobile application management policies in Intune Knowledge check Summary |
| 11 | Deploy and update applications |
Introduction Deploy applications with Intune Add apps to Intune Manage Win32 apps with Intune Deploy applications with Configuration Manager Deploying applications with Group Policy Assign and publish software Explore Microsoft Store for Business Implement Microsoft Store Apps Update Microsoft Store Apps with Intune Assign apps to company employees Knowledge check Summary |
| 12 | Administer endpoint applications |
Introduction Manage apps with Intune Manage Apps on non-enrolled devices Deploy Microsoft 365 Apps with Intune Additional Microsoft 365 Apps Deployment Tools Configure Microsoft Edge Internet Explorer mode App Inventory Review Knowledge check Summary |
| 13 | Protect identities in Azure Active Directory |
Introduction Explore Windows Hello for Business Deploy Windows Hello Manage Windows Hello for Business Explore Azure AD identity protection Manage self-service password reset in Azure AD Implement multi-factor authentication Knowledge check Summary |
| 14 | Enable organizational access |
Introduction Enable access to organization resources Explore VPN types and configuration Explore Always On VPN Deploy Always On VPN Knowledge check Summary |
| 15 | Implement device compliance |
Introduction Protect access to resources using Intune Explore device compliance policy Deploy a device compliance policy Explore conditional access Create conditional access policies Knowledge check Summary |
| 16 | Generate inventory and compliance reports |
Introduction Report enrolled devices inventory in Intune Monitor and report device compliance Build custom Intune inventory reports Access Intune using Microsoft Graph API Knowledge check Summary |
| 17 | Deploy device data protection |
Introduction Explore Windows Information Protection Plan Windows Information Protection Implement and use Windows Information Protection Explore Encrypting File System in Windows client Explore BitLocker Knowledge check Summary |
| 18 | Manage Microsoft Defender for Endpoint |
Introduction Explore Microsoft Defender for Endpoint Examine key capabilities of Microsoft Defender for Endpoint Explore Windows Defender Application Control and Device Guard Explore Microsoft Defender Application Guard Examine Windows Defender Exploit Guard Explore Windows Defender System Guard Knowledge check Summary |
| 19 | Manage Microsoft Defender in Windows client |
Introduction Explore Windows Security Center Explore Windows Defender Credential Guard Manage Microsoft Defender Antivirus Manage Windows Defender Firewall Explore Windows Defender Firewall with Advanced Security Knowledge check Summary |
| 20 | Manage Microsoft Defender for Cloud Apps |
Introduction Explore Microsoft Defender for Cloud Apps Planning Microsoft Defender for Cloud Apps Implement Microsoft Defender for Cloud Apps Knowledge check Summary |
| 21 | Assess deployment readiness |
Introduction Examine deployment guidelines Explore readiness tools Assess application compatibility Explore tools for application compatibility mitigation Prepare network and directory for deployment Plan a pilot Knowledge check Summary |
| 22 | Deploy using the Microsoft Deployment Toolkit |
Introduction Evaluate traditional deployment methods Set up the Microsoft Deployment Toolkit for client deployment Manage and deploy images using the Microsoft Deployment Toolkit Knowledge check Summary |
| 23 | Deploy using Microsoft Configuration Manager |
Introduction Explore client deployment using Configuration Manager Examine deployment components of Configuration Manager Manage client deployment using Configuration Manager Plan in-place upgrades using Configuration Manager Knowledge check Summary |
| 24 | Deploy Devices using Windows Autopilot |
Introduction Use Autopilot for modern deployment Examine requirements for Windows Autopilot Prepare device IDs for Autopilot Implement device registration and out-of-the-box customization Examine Autopilot scenarios Troubleshoot Windows Autopilot Knowledge check Summary |
| 25 | Implement dynamic deployment methods |
Introduction Examine subscription activation Deploy using provisioning packages Use Windows Configuration Designer Use Azure AD join with automatic MDM enrollment Knowledge check Summary |
| 26 | Plan a transition to modern endpoint management |
Introduction Explore using co-management to transition to modern endpoint management Examine prerequisites for co-management Evaluate modern management considerations Evaluate upgrades and migrations in modern transitioning Migrate data when modern transitioning Migrate workloads when modern transitioning Knowledge check Summary |
| 27 | Manage Windows 365 |
Introduction Explore Windows 365 Configure Windows 365 Administer Windows 365 Knowledge check Summary |
| 28 | Manage Azure Virtual Desktop |
Introduction Examine Azure Virtual Desktop Explore Azure Virtual Desktop Configure Azure Virtual Desktop Administer Azure Virtual Desktop Knowledge check Summary |