Description #
Microsoft Intune is a cloud service located on Microsoft servers in
Azure; it allows you to manage the devices that are used by your
employees to access corporate data.
Protect private company information, reducing the possibility of
unauthorized access to it, both by company employees and third parties.
Manage applications on employee devices. Monitor the compliance of
devices with the requirements for working with corporate services.
This service will allow you to design and plan your deployment and start using Microsoft Intune in your company.
IT Partner responsibilities #
- Identify goals and objectives for Microsoft Intune deployment
- Identify use-cases and system requirements
- Develop rollout and communication plan
- System architecture design
- Configure Intune domain, users, and groups
- License assignment
- Resource profiles, configuration policies, and compliance policies setup
- Conditional access policies setup
- Provide user reference material on self-setup of devices
- Force automatic enrollment for domain-joined workstations
- Post-implementation break-fix support for one (1) month
Client responsibilities #
- Coordinate Client resources and staff schedules
- Provide a dedicated point of contact responsible for working with IT Partner
- Coordinate any outside vendor resources and schedules
- Participate in the project discussion and provide all the information necessary to implement the solution
- Configure all network equipment, such as load balancers, routers, firewalls, and switches
- Users must self-enroll their corporate mobile devices
- Users can self-enroll their own Windows PCs and mobile devices
- Review and approve engagement deliverables in a timely manner
Additional cost items not provided by the project #
- Applications deployment through Microsoft Intune
- User training
- Device data protection configuration
- Thread protection configuration
- Device management after-service implementation
Prerequisites #
- Enterprise Mobility + Security (EMS) / Microsoft Intune subscription
- Microsoft 365 subscription (for Office apps and app protection policy managed apps)
- Apple APNs Certificate (to enable iOS device platform management)
- Entra ID Connect (for directory synchronization)
- Intune On-Premises Connector for Exchange (for conditional access for Exchange On-Premises, if needed)
- Intune Certificate Connector (for SCEP certificate deployment, if needed)
- Managed device must be compliant:
- Apple
- Apple iOS 10.0 or later
- Mac OS X 10.12 or later
- Google
- Android 4.4 or later
- Microsoft
- Windows 10 (Home, S, Pro, Education, or Enterprise versions)
Plan #
The plan may vary depending on your needs.
- Kickoff meeting
- Determination of deployment goals, objectives, and challenges
- Determination of use-case scenario requirements
- Rollout and communication plan development
- Design and configuration of the Microsoft Intune environment
- Test implementation
- Testing and validation
- Production implementation
- Verification and fixing of issues, if any
Success criteria #
- Microsoft Intune services are configured properly and provide the ability to manage desktop and mobile devices
- Devices that were planned to be connected to Microsoft Intune during the implementation stage were successfully connected
- The Microsoft Intune administrator can see and manage devices added during the implementation
- The Microsoft Intune users and administrator can add new devices to manage them in Microsoft Intune
Share
Related services
Password-less Authentication
The common practice for IT to attempt lessening password risk by employing stronger password complexity, including special characters and demanding more frequent password changes, makes employees' work vastly more complex and decreases their productivity. Most importantly, this approach isn’t enough for current cybersecurity threats and doesn’t deliver on organizational information security needs.
Devices monitoring
The service for monitoring the operation parameters of such devices as computers, servers, network equipment, etc. In addition to this service, at least five hours of on-demand engineer are required each month to respond to emerging issues.