<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="36350" language="fr" source="https://portal.flane.ch/swisscom/fr/xml-course/masterclass-imdm1" lastchanged="2026-03-04T18:05:24+01:00" parent="https://portal.flane.ch/swisscom/fr/xml-courses"><title>Master Class: Intune Modern Device Management Intensive for Windows and macOS</title><productcode>IMDM1</productcode><vendorcode>MT</vendorcode><vendorname>Master Class</vendorname><fullproductcode>MT-IMDM1</fullproductcode><version>1.0</version><objective>&lt;p&gt;After completing this workshop, participants will have knowledge in the following areas:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Setup and operation of hybrid Microsoft Entra ID environments for the Windows and macOS platforms&lt;/li&gt;&lt;li&gt;Implementation of various enrollment strategies for Windows and macOS&lt;/li&gt;&lt;li&gt;Automated device management with Windows Autopilot and Apple Business Manager&lt;/li&gt;&lt;li&gt;Extended compliance and conditional access strategies, cross-platform&lt;/li&gt;&lt;li&gt;PowerShell-based automation and community tools&lt;/li&gt;&lt;/ul&gt;</objective><essentials>&lt;h5&gt;Required:&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Sound Windows 10/11 Administration&lt;/li&gt;&lt;li&gt;Active Directory Domain Services experience&lt;/li&gt;&lt;li&gt;PowerShell basic knowledge&lt;/li&gt;&lt;li&gt;Basic understanding of network and PKI&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Recommended:&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Microsoft 365/Microsoft Entra ID experience&lt;/li&gt;&lt;li&gt;Group Policy Management knowledge&lt;/li&gt;&lt;li&gt;SCCM/Configuration Manager Background&lt;/li&gt;&lt;/ul&gt;</essentials><audience>&lt;ul&gt;
&lt;li&gt;IT professionals who want to manage end devices centrally with Intune&lt;/li&gt;&lt;li&gt;System Engineers with a focus on Modern Device Management&lt;/li&gt;&lt;li&gt;People migrating from traditional MDM solutions to Microsoft Intune&lt;/li&gt;&lt;li&gt;IT consultants who carry out Intune implementations in the desktop area&lt;/li&gt;&lt;li&gt;Mobile device managers who want to expand their desktop skills&lt;/li&gt;&lt;li&gt;This workshop is aimed at experienced IT professionals who want to master the desktop focus of modern device management.&lt;/li&gt;&lt;/ul&gt;</audience><contents>&lt;ul&gt;
&lt;li&gt;Microsoft 365 Tenant Setup for Desktop Management&lt;/li&gt;&lt;li&gt;Hybrid Identity with Entra Connect&lt;/li&gt;&lt;li&gt;Device Identity Strategien&lt;/li&gt;&lt;li&gt;Windows Autopilot Deployment&lt;/li&gt;&lt;li&gt;Windows Configuration Management&lt;/li&gt;&lt;li&gt;Application Deployment for Windows&lt;/li&gt;&lt;li&gt;Apple Business Manager Integration&lt;/li&gt;&lt;li&gt;macOS Enrollment and Management&lt;/li&gt;&lt;li&gt;Cross-Platform Compliance and Security&lt;/li&gt;&lt;/ul&gt;</contents><outline>&lt;h4&gt;Tag 1: Foundation &amp;amp; Hybrid Identity&lt;/h4&gt;&lt;h5&gt;Microsoft 365 Tenant Setup for Desktop Management&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Microsoft Entra ID Tenant configuration and licensing&lt;/li&gt;&lt;li&gt;Intune Service Setup and DNS-Integration&lt;/li&gt;&lt;li&gt;Integration with existing AD DS environments&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Hybrid Identity mit Entra Connect&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Password Hash Sync vs. Passthrough Authentication&lt;/li&gt;&lt;li&gt;Microsoft Entra Connect Health Monitoring&lt;/li&gt;&lt;li&gt;Seamless SSO configuration for Windows and macOS&lt;/li&gt;&lt;li&gt;Troubleshooting synchronization problems&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Device Identity Strategies&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Microsoft Entra ID Registration vs. Entra ID Domain Join&lt;/li&gt;&lt;li&gt;Hybrid Entra ID Join implementation&lt;/li&gt;&lt;li&gt;Device-based Conditional Access Policies&lt;/li&gt;&lt;li&gt;Kerberos authentication in hybrid scenarios&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Day 2: Windows Management Basics&lt;/h4&gt;&lt;h5&gt;Windows Autopilot Deployment&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Hardware Hash Import and Device Registration&lt;/li&gt;&lt;li&gt;Self-Deploying Mode and User-Driven Deployment&lt;/li&gt;&lt;li&gt;Autopilot Reset and Reprovisioning&lt;/li&gt;&lt;li&gt;Windows Autopilot device preparation (Autopilot V2)&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Windows Configuration Management&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Settings Catalog for Windows 11 specific settings&lt;/li&gt;&lt;li&gt;Security Baselines Implementation&lt;/li&gt;&lt;li&gt;Windows Update for Business Integration&lt;/li&gt;&lt;li&gt;Custom Configuration Service Provider (CSP) Policies&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Application Deployment for Windows&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;MSI, Store and Win32 App Deployment&lt;/li&gt;&lt;li&gt;PowerShell Script Deployment with Intune Management Extension&lt;/li&gt;&lt;li&gt;Microsoft Store App Management&lt;/li&gt;&lt;li&gt;App Installation Monitoring and Reporting&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Day 3: macOS Management &amp;amp; Cross-Platform Security Features&lt;/h4&gt;&lt;h5&gt;Apple Business Manager Integration&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Apple Business Manager Account Setup&lt;/li&gt;&lt;li&gt;Apple Push Certificates Management&lt;/li&gt;&lt;li&gt;Device Enrollment Program (DEP) Konfiguration&lt;/li&gt;&lt;li&gt;Volume Purchase Program (VPP) for app licenses&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;macOS Enrollment and Management&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Automated Device Enrollment (ADE) for macOS&lt;/li&gt;&lt;li&gt;User Enrollment vs. Device Enrollment Strategies&lt;/li&gt;&lt;li&gt;macOS Configuration Profiles&lt;/li&gt;&lt;li&gt;Shell Script Deployment for macOS&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Cross-Platform Compliance and Security&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Unified Compliance Policies for Windows and macOS&lt;/li&gt;&lt;li&gt;Conditional access for both platforms&lt;/li&gt;&lt;li&gt;BitLocker and FileVault Management&lt;/li&gt;&lt;li&gt;Certificate-based Authentication (SCEP/PKCS)&lt;/li&gt;&lt;li&gt;Microsoft Defender for Windows and macOS&lt;/li&gt;&lt;/ul&gt;</outline><objective_plain>After completing this workshop, participants will have knowledge in the following areas:


- Setup and operation of hybrid Microsoft Entra ID environments for the Windows and macOS platforms
- Implementation of various enrollment strategies for Windows and macOS
- Automated device management with Windows Autopilot and Apple Business Manager
- Extended compliance and conditional access strategies, cross-platform
- PowerShell-based automation and community tools</objective_plain><essentials_plain>Required:


- Sound Windows 10/11 Administration
- Active Directory Domain Services experience
- PowerShell basic knowledge
- Basic understanding of network and PKI
Recommended:


- Microsoft 365/Microsoft Entra ID experience
- Group Policy Management knowledge
- SCCM/Configuration Manager Background</essentials_plain><audience_plain>- IT professionals who want to manage end devices centrally with Intune
- System Engineers with a focus on Modern Device Management
- People migrating from traditional MDM solutions to Microsoft Intune
- IT consultants who carry out Intune implementations in the desktop area
- Mobile device managers who want to expand their desktop skills
- This workshop is aimed at experienced IT professionals who want to master the desktop focus of modern device management.</audience_plain><contents_plain>- Microsoft 365 Tenant Setup for Desktop Management
- Hybrid Identity with Entra Connect
- Device Identity Strategien
- Windows Autopilot Deployment
- Windows Configuration Management
- Application Deployment for Windows
- Apple Business Manager Integration
- macOS Enrollment and Management
- Cross-Platform Compliance and Security</contents_plain><outline_plain>Tag 1: Foundation &amp; Hybrid Identity

Microsoft 365 Tenant Setup for Desktop Management


- Microsoft Entra ID Tenant configuration and licensing
- Intune Service Setup and DNS-Integration
- Integration with existing AD DS environments
Hybrid Identity mit Entra Connect


- Password Hash Sync vs. Passthrough Authentication
- Microsoft Entra Connect Health Monitoring
- Seamless SSO configuration for Windows and macOS
- Troubleshooting synchronization problems
Device Identity Strategies


- Microsoft Entra ID Registration vs. Entra ID Domain Join
- Hybrid Entra ID Join implementation
- Device-based Conditional Access Policies
- Kerberos authentication in hybrid scenarios
Day 2: Windows Management Basics

Windows Autopilot Deployment


- Hardware Hash Import and Device Registration
- Self-Deploying Mode and User-Driven Deployment
- Autopilot Reset and Reprovisioning
- Windows Autopilot device preparation (Autopilot V2)
Windows Configuration Management


- Settings Catalog for Windows 11 specific settings
- Security Baselines Implementation
- Windows Update for Business Integration
- Custom Configuration Service Provider (CSP) Policies
Application Deployment for Windows


- MSI, Store and Win32 App Deployment
- PowerShell Script Deployment with Intune Management Extension
- Microsoft Store App Management
- App Installation Monitoring and Reporting
Day 3: macOS Management &amp; Cross-Platform Security Features

Apple Business Manager Integration


- Apple Business Manager Account Setup
- Apple Push Certificates Management
- Device Enrollment Program (DEP) Konfiguration
- Volume Purchase Program (VPP) for app licenses
macOS Enrollment and Management


- Automated Device Enrollment (ADE) for macOS
- User Enrollment vs. Device Enrollment Strategies
- macOS Configuration Profiles
- Shell Script Deployment for macOS
Cross-Platform Compliance and Security


- Unified Compliance Policies for Windows and macOS
- Conditional access for both platforms
- BitLocker and FileVault Management
- Certificate-based Authentication (SCEP/PKCS)
- Microsoft Defender for Windows and macOS</outline_plain><duration unit="d" days="3">3 jours</duration><pricelist><price country="DE" currency="EUR">3290.00</price><price country="AT" currency="EUR">3290.00</price><price country="SI" currency="EUR">3290.00</price><price country="CH" currency="CHF">3290.00</price></pricelist><miles/></course>