20398 Planning and Managing Devices in the Enterprise Enterprise Management EMS and On-Premises

5 days


This course teaches IT professionals how to use the Enterprise Mobility Suite to manage devices, users, and data. In addition, this course teaches students how to use other technologies, such as Group Policy and other Windows Server–based technologies, to manage devices and secure data.


Each participant will leave with a recognised certificate

Course Outline

  • Students will learn how to design and implement cloud-based and on-premises solutions for managing Windows-based, iOS, and Android devices, and they will learn how to provide secure and efficient access to data and applications.

Module 1: Using devices in the enterprise

  • Overview of devices in an enterprise
  • Devices management features
  • Overview of the Enterprise Mobility Suite
  • Lab : Planning for device management
  • Selecting the appropriate products and technologies for device management
  • Working with devices

Module 2: Active Directory Domain Services features for device management

  • Overview of AD DS
  • Overview of Group Policy
  • Planning and implementing Dynamic Access Control
  • Planning and deploying advanced audit policies
  • Lab : Using Group Policy to manage users and devices
  • Creating and configuring GPOs
  • Modifying Group Policy processing
  • Creating and applying Group Policy preferences
  • Lab : Implementing secure data access
  • Preparing for a dynamic access control (DAC) deployment
  • Implementing Dynamic Access Control
  • Validating and remediating Dynamic Access Control
  • Using advanced audit policies

Module 3: Implementing and administering Azure AD

  • Overview of Azure AD.
  • Creating and managing Azure AD.
  • Managing authentication in Azure AD
  • Lab : Working with Azure AD and providing access to claims-aware applications
  • Managing Azure AD users and groups
  • Joining a Windows 10 device to Azure AD
  • Accessing a cloud application with SSO

Module 4: Connecting AD DS with Azure AD

  • Preparing AD DS for directory synchronization
  • Implementing Azure AD Connect
  • Planning and implementing federation
  • Lab : Synchronizing on-premises AD DS with Azure AD
  • Verifying synchronization of new objects
  • Implement and use Azure AD Premium features

Module 5: Planning and implementing app support

  • Planning and implementing application compatibility options
  • Publishing and using RemoteApp programs
  • Publishing and using Azure RemoteApp
  • Lab : Publishing and using RemoteApp and Azure RemoteApp
  • Publishing and accessing RemoteApp programs

Module 6: Managing devices in Office 365

  • Overview of Office 365
  • MDM for Office 365
  • Lab : Managing devices in Office 365
  • Obtaining and Office 365 subscription
  • Configuring and testing mobile device management in Office 365

Module 7: Planning and implementing Microsoft Intune

  • Planning for Intune
  • Deploying Intune clients
  • Basic Intune administration
  • Lab : Planning and implementing Intune
  • Deploying Intune clients and linking computers to users
  • Create Intune users
  • Delegating Intune permissions
  • Creating Intune groups

Module 8: Managing devices by using Intune

  • Working with Intune policies
  • Mobile device management
  • Managing updates and Windows Defender
  • Lab : Using Intune policies to manage devices
  • Configuring Azure AD with automatic mobile device management enrollment
  • Lab : Managing updates and Windows Defender

Module 9: Using Microsoft Intune to manage applications and resource access

  • Application life-cycle management
  • Application deployment process
  • Managing access to company resources
  • Lab : Using Microsoft Intune to deploy and monitor applications
  • Using Microsoft Intune to deploy and monitor applications
  • Lab : Using Intune to manage resource access
  • Configuring certificate deployment in Intune
  • Configuring conditional access policies

Module 10: Planning and implementing Azure RMS

  • Overview of ARM
  • Implementing ARM
  • Lab : Using Azure RMS to protect documents and data
  • Protecting documents by using Azure RMS
  • Using FCI with Azure RMS

Module 11: Planning and implementing remote access

  • Overview of remote access solutions
  • Implementing remote infrastructure access
  • Planning and implementing Work Folders
  • Implementing cloud data access
  • Planning and implementing mobility options
  • Lab : Configuring and using VPN and Work Folders
  • Configuring a VPN server and a VPN client
  • Configuring and using Work Folders
  • Lab : Using Offline Files and OneDrive
  • Configuring and using Offline files
  • Synchronize settings between Windows 10 devices
  • Configuring and using OneDrive

Module 12: Planning and protecting data

  • Planning and implementing encryption
  • Planning and implementing BitLocker
  • Protecting d

Related Courses


Thinking about Onsite?

If you need training for 3 or more people, you should ask us about onsite training. Putting aside the obvious location benefit, content can be customised to better meet your business objectives and more can be covered than in a public classroom. It's a cost effective option.

Submit an enquiry from any page on this site, and let us know you are interested in the requirements box, or simply mention it when we contact you.

ITILv3, RESILIA, PRINCE2, PRINCE2 Agile, AgileSHIFT, MSP, M_o_R, P3M3, P3O, MoP, MoV courses on this page are offered by QA Affiliate of AXELOS Limited. ITIL, RESILIA, PRINCE2, PRINCE2 Agile, AgileSHIFT, MSP, M_o_R, P3M3, P3O,MoP, MoV are registered trademarks of AXELOS Limited. All rights reserved.