Masterclass Description

Don't miss the chance to join a training presented by a Microsoft Intune dream team. Kent Agerlund, Jörgen Nilsson, Jan Ketil Skanke, Sandy Zeng, Maurice Daly, Mattias Melkersen, Andrew Johnson, Richard Hicks, and Johan Arwidmark are presenting more than 20 sessions, with many live demos, tips and tricks, and a lot of deep technical content.

In this 5-day LIVE Online Training, you will participate in a detailed walk-through to configure and administer Microsoft Intune.  If you want to master Microsoft Intune, this LIVE Training is for You!

This LIVE Online Training is unique in important ways. It has been developed by many of the best Intune experts in the world.  It is based on real-life systems management and is always performed on the latest versions of Windows clients, Windows servers, and Windows systems management components.

In this Masterclass, you  also find time dedicated to hands-on labs and exercises, all of which are based on actual real-life scenarios and realistic methods tested and verified to work in real-world production environments. 

Added Bonus
The best part of this LIVE Online Training is that you get access to all the sample files and sample scripts used during training. We will even provide you with a proven solution to build a complete lab environment upon completing the training.

This LIVE Online Training runs for five days and includes:

  • Daily live webinars (with plenty of time for Q&A)
  • Access to hands-on labs
  • A community of individuals with the same goals
  • A private Facebook group with other participants for sharing reflections, progress, etc.
  • The chance to ask the presenters questions directly in a live training environment

This LIVE Online Training is for YOU if you want to:

  • Master Microsoft Intune
  • Effectively implement lab environment solutions
  • Establish maintenance and operations management of your clients and mobile devices
  • Achieve application lifecycle management and software updates management for your organization

...and so much more!

Basic understanding of networking fundamentals such as TCPIP and DNS. Knowledge of Azure Active Directory and Windows operating systems. Scripting experience (PowerShell) and having worked with Microsoft Intune are helpful but not required.

Masterclass Schedule

Date and start time for the next Masterclass:

This Masterclass is very popular and sells out quickly; we recommend registering today!

  • May 20-24, 9:00 AM-4:30 PM Central Time (US and Canada)

This session of the Masterclass will be recorded and made available for participants to view.

Masterclass Outline

Module 1: Introduction to Microsoft Intune

  • Primer for Windows 10 and Windows 11 Management Using Microsoft Intune
  • Integration with ConfigMgr (Co-management and Tenant Attach)
  • Setting Up Azure Active Directory, DNS, and Custom Domains
  • Creating Users and Groups and Assigning Licenses
  • Enrolling Windows 10 and Windows 11 Devices to Intune and Creating Device Groups
  • Azure AD vs. Azure Registration vs. Hybrid Join
  • Understanding Azure and Intune Security
  • Common Workloads #1: Deploying Updates, Applications, and Scripts
  • Common Workloads #2: Configuring Profiles and Conditional Access

Module 2: Deploying Applications and PowerShell Scripts in Intune

  • Understanding the Intune Application Options
  • Creating and Deploying Win32 Applications
  • Using the Microsoft Win32 Content Prep Tool
  • Configuring Delivery Optimization Settings for Application Deployments
  • Troubleshooting Application Installs
  • Creating and Deploying PowerShell Scripts for Windows 10 and Windows 11 Devices
  • Troubleshooting PowerShell Scripts

Module 3: Configuring Windows 10 and Windows 11 Devices and Delegating Access

  • Introduction to Endpoint Security Features in Intune
  • Configuring BitLocker
  • Configuring Antivirus and Firewall Policies
  • Working with Device Configuration Profiles, Templates, and the Settings Catalog
  • ADMX-backed Policy Considerations
  • Managing Local Administrators with Azure AD and Intune
  • Always On VPN Deployment for Windows 10 and Windows 11
  • Configuring Microsoft Edge
  • Setting Up Role-based Administration for Access Delegation
  • Creating and Assigning Custom Roles
  • Integrating with Azure AD Privileged Identity Management

Module 4: Always on VPN: Infrastructure Requirements and Deployment Options in Depth

  • Always On VPN Infrastructure Requirements
  • Deployment Options (On-premises and Cloud-based)
  • Implementation and Security Best Practices
  • How to Avoid Common Mistakes when Deploying Always On VPN
  • Provisioning and Managing Always On VPN Profiles Using Microsoft Configuration Manager/Intune
  • Understanding Current Limitations and Workarounds

Module 5: Securing Your Mobile Devices with Microsoft Intune - Introduction and Overview

  • Securing Access to Your Environment Using Azure AD Conditional Access and Intune
  • What Are Microsoft Intune Mobile Device Management (MDM) and Mobile Application Management (MAM)
  • Planning for Mobile Device Management: Determining Management Type (Enrollment Type) and Understanding the Platform Nuances of Personal Devices vs. Organization-owned Devices
  • Tenant Configuration (Branding, Licenses, and Device enrollment Restrictions)
  • Prerequisites for Each Platform (Apple Enrollment, Google Play for Work)

Module 6: Managing Android Devices

  • Configuring Deployment Type Profiles: Android Work Profile, Fully Managed, and Kiosk/Dedicated
  • App Deployment Prerequisites
  • App Deployment Best Practices
  • Filters and User or Device Group-based Targeting: When and Where to Use What
  • Static or Dynamic Groups: The Differences, Highlights, and Pitfalls
  • Deploying Android Apps through Google Managed Play
  • Configuration Profiles: Android Work Profile, Fully Managed, and Kiosk/Dedicated
  • Android and the Power of OEM Config

Module 7: Managing Apple Devices

  • Configuring Deployment Type Profiles: User Enrollment, Device Enrollment, and Apple Automated Enrollment
  • IOS Supervised Mode - What Is It, and Do You Need It?
  • App Deployment Prerequisites
  • App Deployment Best Practices
  • Apple Store or VPP - Which Is Right for You?
  • Filters and User or Device Group-based Targeting: When and Where to Use What
  • Static or Dynamic Groups: The Differences, Highlights, and Pitfalls

Module 8: Implementing Windows Autopilot

  • Configuring Windows Autopilot Prerequisites
  • Bringing Windows 10 and Windows 11 Devices under Management
  • Windows Autopilot Deployment Scenarios
  • OEM Vendor Support
  • Understanding Autopilot Deployment Profiles
  • Configuring Enrollment Status Pages
  • Autopilot Housekeeping and Other Operations Tasks
  • Automating via Microsoft Graph
  • Integrating Intune and Autopilot with OS Deployment
  • Rapid Hyper-V Provisioning for Autopilot Testing
  • Troubleshooting Windows Autopilot

Module 9: Managing Software Updates and Windows 10/Windows 11 Servicing Using Intune

  • Managing Software Updates for Windows 10 and Windows 11 Devices
  • Creating Windows Update Policies
  • Configuring User Experience Settings
  • Managing Windows 10 and Windows 11 Feature Updates
  • Creating Windows 10 and Windows 11 Update Rings
  • Working with Software Update Compliance
  • Integrating Third-Party Patch Management via PatchMyPC in Microsoft Intune

Module 10: Introducing Microsoft Graph and Intune

  • Introduction to Microsoft Graph API
  • Connecting to Intune Using Graph API with PowerShell
  • Creating Intune Configuration Policies with PowerShell
  • Creating Intune Applications using PowerShell
  • Device Management with Graph API

Module 11: Microsoft Intune, Reporting, and Update Compliance

  • Introduction to Reporting in Microsoft Intune
  • Setting Up Log Analytics
  • Adding Proactive Remediation Scripts for Additional Data
  • Creating and Customizing Workbooks in Microsoft Intune
  • Implementing the Windows Update Compliance Dashboard Community Solution

Module 12: Troubleshooting Microsoft Intune

  • Using the Intune Tenant Status Page and Service Health Dashboard
  • Using Reports to Monitor Health and Activity of Windows 10 and Windows 11 Devices
  • Using Audit Logs to Monitor Events in Intune
  • Understanding Intune Logging
  • Troubleshooting Device Enrollment and Policies
  • Troubleshooting Device Actions in Intune
  • Collecting Logs from Windows 10 and Windows 11 Devices
  • Troubleshooting BitLocker Issues Using the Intune Encryption Report
  • Using the Intune Troubleshooting Portal

Module 13: Cloud Imaging and Microsoft Intune

  • OS Deployment over HTTPS via Cloud Management Gateway
  • OS Deployment over HTTPS via MDT and PSD
  • Setting Up Deployment Servers in Azure or AWS
  • Implementing iPXE for Boot over the Internet (Third Party)
  • Configuring Vendor BIOS/EUFI for Cloud Imaging
  • Extending MDT with PSD for HTTPS and P2P Support
  • Running Task Sequences via Microsoft Intune

Module 14: Managing BIOS and Drivers via Intune

  • Solutions Available for BIOS and Driver Management
  • Extending Hardware Inventory
  • Proactive Remediations
  • Reporting

Module 15: Microsoft Intune Community Jewels

  • Introduction to Commonly Used Community Solutions for Microsoft Intune


Johan Arwidmark is a consultant, author, speaker, and all-around geek specializing in Enterprise Windows Deployment Solutions and Systems Management. Johan speaks at several conferences each year, including MMS and Ignite around the world. He is also actively involved in the community, and he has been awarded Microsoft Most Valuable Professional (MVP) since 2005. Johan is known for his energetic and humorous style, tackling complex concepts using simple "Real World" scenarios and lots of live demos. His areas of expertise include Enterprise Windows Deployment Tools and Management Systems: Intune, MDT, WinPE, WDS, and ConfigMgr (SCCM).

Johan Arwidmark

Technical Fellow


Andrew has served in various technical and leadership roles in IT for over 15 years, spending most of his time in higher education. He's always looking for new ways to perform tasks more efficiently and share knowledge with others. His three favorite technology areas are Endpoint Management, Automation, and Monitoring. When he's not working with tech - professionally or in his home lab - you'll likely find him building the latest Star Wars LEGO set with his family. If you'd like to chat ConfigMgr, Intune, Azure AD, Office 365, Disney World or Star Wars, you can always find him on Twitter, @AndrewJNet.

Andrew Johnson

Solutions Architect, ADM Solutions


Kent Agerlund works as a Principal Consultant, author, trainer, and event speaker specializing in Enterprise Client Management solutions at CTGlobal. Kent frequently speaks at conferences like Ignite, MMS, NIC, IT/Dev Connections, and he is the main author of the Mastering Configuration Manager training and the books Mastering Configuration Manager, System Center Configuration Manager: Mastering the Fundamentals, and Mastering Microsoft Enterprise Mobility. He is also actively involved in communities like TechNet forums, local user groups, and is awarded Microsoft Most Valuable Professional (MVP) and Microsoft Regional Director for his work with Microsoft Enterprise Client Management. On stage, Kent is known for mixing “Real World” scenarios into his presentation with lots of demos.

Kent Agerlund

Principal Consultant, CTGlobal


Jörgen currently works as a Principal Consultant at Onevinn in Sweden. He is a Microsoft Certified Trainer and MVP in Enterprise Mobility, and often speaks at events such as Microsoft Ignite, Microsoft Techdays, Microsoft Management Summit (MMS), TechED, Techorama MMS, and others. Jörgen has been working as a consultant since 1993 with a focus on Enterprise Client Management and System Management.

Jörgen Nilsson

Principal Consultant, Onevinn


Jan Ketil Skanke is Partner and Principal Cloud Architect at CloudWay and a Microsoft MVP in Enterprise Mobility. Jan Ketil is also an international speaker and has presented on many large and smaller industry conferences like Microsoft Ignite, Microsoft Ignite The Tour, Microsoft Inspire, MMS MOA, Techmentor, Experts Live Europe and Experts Live Norway. He currently blogs at, is a board member for Modern Management User Group in Norway and is also the conference lead and organizer for Experts Live Norway. He is very passionate about Mobility and Security and has a long experience in this area. The last years, Jan Ketil has been focusing on helping partners and customers succeed with Secure Productivity and Mobility solutions in the cloud through technical implementations, workshops, trainings and business development. His motto is: Don’t let security get in way of your productivity

Jan Ketil Skanke

Partner and Principal Cloud Architect


Sandy Zeng is Cloud Architect at CloudWay, and a Microsoft MVP in the area of Enterprise Mobility. She likes to share her knowledge with the community as a contributor to, and as a public speaker at user groups and international conferences such as MMS. Sandy is an experienced information technology expert with over ten years of experience in various organizations. She uses her expertise to help customers achieve and exceed their goals and finding solutions. Sandy has lived in Finland for 20 years. She speaks fluent English, Finnish.

Sandy Zeng

Cloud Architect


Maurice Daly is a Principal Cloud Architect at CloudWay. He is a Microsoft MVP in the area of Enterprise Mobility. He is an international speaker, speaking at numerous Microsoft-focused user group events and sessions at Microsoft Ignite. He runs the blog along with fellow MVP Nickolaj Andersen, an enterprise mobility focused blog with close to 1.5M visits annually. He is also the author of the Driver Automation Tool, a PowerShell developed GUI for Configuration Manager with over 40k downloads, used in thousands of companies globally. With a background of over 20 years in the IT industry in both in-house and consultancy roles, he prides himself on being able to analyze the entire solution from both sides of the fence.

Maurice Daly

Principal Cloud Architect


Richard Hicks is the founder and principal consultant at Richard M. Hicks Consulting, Inc. He is a widely recognized enterprise mobility expert with more than 25 years of experience implementing secure remote access and public key infrastructure (PKI) solutions for organizations worldwide. He understands that providing visibility, control, and assurance for field-based devices is vital to ensuring the highest level of security and productivity for today’s highly mobile workforce.

Richard Hicks

President and Principal Consultant


Mattias has worked in consulting for 16+ years solving complex issues and making complicated IT processes simpler through modern principles. When not at work, Mattias enjoys spending time with his wife, three children, and friends. He really enjoys helping other understand the full picture of complex technology.

Mattias Melkersen

Modern Workplace Consultant, Mindcore