MD-102T00 : Microsoft 365 Endpoint Administrator
Tổng quan về khóa học MD-102
Khóa học Microsoft 365 Endpoint Administrator trang bị cho học viên kiến thức và kỹ năng cần thiết để quản lý và bảo vệ các thiết bị đầu cuối (endpoints) trong môi trường doanh nghiệp hiện đại. Học viên sẽ học cách lập kế hoạch, triển khai và cập nhật chiến lược endpoint bằng các kỹ thuật tiên tiến, đồng thời tìm hiểu các phương pháp co-management và tích hợp Microsoft Intune.
Khóa học cũng bao gồm triển khai ứng dụng, quản lý ứng dụng trình duyệt, và các khái niệm bảo mật quan trọng như xác thực, định danh, quyền truy cập và chính sách tuân thủ. Học viên sẽ thực hành với các công nghệ như Azure Active Directory, Azure Information Protection và Microsoft Defender for Endpoint để bảo vệ dữ liệu và thiết bị hiệu quả.
Mục tiêu khóa học
-
Triển khai Windows
-
Quản lý thiết bị và dữ liệu
-
Cấu hình kết nối
-
Bảo trì Windows
-
Triển khai và cập nhật hệ điều hành
-
Quản lý chính sách và hồ sơ (policies & profiles)
-
Quản lý và bảo vệ thiết bị
-
Quản lý ứng dụng và dữ liệu
Khóa học này dành cho ai?
-
Chuyên gia IT/Quản trị viên hệ thống có kinh nghiệm quản lý thiết bị, ứng dụng và dữ liệu trong môi trường doanh nghiệp.
-
Những người chịu trách nhiệm triển khai, cấu hình, bảo mật, giám sát và duy trì thiết bị Windows và ứng dụng client.
-
Người có kiến thức cơ bản về Microsoft 365, Azure Active Directory, Intune, và các chính sách bảo mật doanh nghiệp.
-
Các chuyên gia muốn nâng cao kỹ năng quản lý endpoint, triển khai chiến lược thiết bị hiện đại, và chuẩn bị cho chứng chỉ Microsoft 365 Endpoint Administrator (MD-102).
Yêu cầu kiến thức trước khi tham gia
-
Hiểu biết về Microsoft 365 và quản lý người dùng, nhóm, quyền truy cập.
-
Kinh nghiệm triển khai, cấu hình và duy trì Windows 11 trở lên và các thiết bị không phải Windows.
-
Triển khai và quản lý Microsoft Intune, ứng dụng và trình duyệt.
-
Kiến thức về bảo mật, xác thực, định danh và chính sách tuân thủ.
-
Hiểu về Azure Active Directory và dịch vụ đám mây.
Nội dung khóa học MD-102
Module 1: Explore the Enterprise Desktop
This module covers modern endpoint management and enterprise desktop lifecycle concepts. It teaches the stages of the lifecycle (planning, deployment, maintenance) and provides a foundation for future learning.
Learning objectives
After completing this module, you’ll be able to:
- Describe the benefits of Modern Management.
- Explain the enterprise desktop life-cycle model.
- Describe considerations for planning hardware strategies.
- Describe considerations for post-deployment and retirement.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 11 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 2: Explore Windows Editions
This module covers Windows OS editions, features, and installation methods. Learners gain a deeper understanding of the available editions and corresponding installation processes.
Learning objectives
After completing this module, you’ll be able to:
- Explain the differences between the different editions of Windows.
- Select the most suitable Windows device for your needs.
- Describe the minimum recommended hardware requirements for installing Windows 11.
Prerequisites
- Students should have a basic understanding of computer networks and hardware concepts.
- Students should have a basic understanding of OS and Application concepts.
- Students should have experience with using Windows 11 or later.
Module 3: Manage Azure Active Directory identities
This module teaches how to use Azure AD effectively. You’ll learn about RBAC, user roles, creating and managing users and groups, using PowerShell cmdlets, and synchronizing objects from AD DS to Azure AD.
Learning objectives
After this module, you should be able to:
- Describe RBAC and user roles in Azure AD.
- Create and manage users in Azure AD.
- Create and manage groups in Azure AD.
- Use Windows PowerShell cmdlets to manage Azure AD.
- Describe how you can synchronize objects from AD DS to Azure AD.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 11 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 4: Manage device authentication
In this module, you learn about device authentication and management in Azure Active Directory
Learning objectives
After completing this module, you will be able to:
- Describe Azure AD join.
- Describe Azure AD join prerequisites, limitations and benefits.
- Join device to Azure AD.
- Manage devices joined to Azure AD.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 5: Enroll devices using Microsoft Configuration Manager
This module introduces students to client deployment options and some of the high-level management and monitoring options that are available using Configuration Manager.
Learning objectives
After completing this module, you will be able to:
- Describe Microsoft Endpoint Manager.
- Understand the advantages of managing a client with Configuration Manager.
- Deploy the Configuration Manager client.
- Monitor the Configuration Manager client.
- Manage Configuration Manager devices.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 6: Enroll devices using Microsoft Intune
Students will learn how to configure and setup Intune to more easily manage Windows, Android, and iOS devices.
Learning objectives
After completing this module, you will be able to:
- Prepare Microsoft Intune for device enrollment.
- Configure Microsoft Intune for automatic enrollment.
- Explain how to enroll Windows, Android and iOS devices in Intune.
- Explain when and how to use Intune Enrollment Manager.
- Understand how to monitor and perform remote actions on enrolled devices.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 7: Execute device profiles
Students learn about the various types of device profiles, and how to create and manage them.
Learning objectives
After completing this module, you will be able to:
- Describe the various types of device profiles in Intune.
- Explain the difference between built-in and custom profiles.
- Create and manage profiles.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 8: Oversee device profiles
This module introduces students to monitoring profiles to ensure correct assignments and resolving conflicts when multiple profiles are applied.
Learning objectives
After completing this module, you will be able to:
- Monitor the assignments of profiles.
- Understand how profiles are synchronized and how to manually force synchronization.
- Use PowerShell to execute and monitor scripts on devices.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 9: Maintain user profiles
Students learn about the benefits of various Windows user profiles, how to manage them, and how to facilitate profile data synchronization across multiple devices.
Learning objectives
After completing this module, you will be able to:
- Explain the various user profile types that exist in Windows.
- Describe how a user profile works.
- Configure user profiles to conserve space.
- Explain how to deploy and configure Folder Redirection.
- Explain Enterprise State Roaming.
- Configure Enterprise State Roaming for Azure AD devices.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 10: Execute mobile application management
This module introduces Mobile Application Management (MAM). Students will learn about considerations for implementing MAM and will be introduced to the management of MAM using Intune and Configuration Manager.
Learning objectives
After this module, you should be able to:
- Explain Mobile Application Management
- Understand application considerations in MAM
- Explain how to use Configuration Manager for MAM
- Use Intune for MAM
- Implement and manage MAM policies
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 11: Deploy and update applications
In this module, you’ll master deploying applications using Intune, Configuration Manager, Group Policy, and Microsoft Store Apps. These powerful tools and techniques will equip you to manage and maintain diverse applications across your organization effectively.
Learning objectives
After this module, you should be able to:
- Explain how to deploy applications using Intune and Configuration Manager
- Learn how to deploy applications using Group Policy
- Understand Microsoft Store Apps
- Learn how to deploy apps using Microsoft Store Apps
- Learn how to configure Microsoft Store Apps
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 11 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 12: Administer endpoint applications
In this module, you’re introduced to managing apps on Intune managed devices. The module will then conclude with an overview of how to use IE Mode with Microsoft Edge.
Learning objectives
After this module, you should be able to:
- Explain how to manage apps in Intune
- Understand how to manage apps on non-enrolled devices
- Understand how to deploy Microsoft 365 Apps using Intune
- Learn how to configure and manage IE mode in Microsoft Edge
- Learn about app inventory options in Intune
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 11 OS or later.
- Strong understanding of computer networking, client security, and application concepts.
- Experience using Active Directory Domain Services.
Module 13: Protect identities in Azure Active Directory
This module introduces students to the various authentication methods used to protect identities.
Learning objectives
After this module, you should be able to:
- Describe Windows Hello for Business
- Describe Windows Hello deployment and management
- Describe Azure AD Identity Protection
- Describe and manage self-service password reset in Azure AD
- Describe and manage multi-factor authentication
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 14: Enable organizational access
This module describes how clients can be configured to access organizational resources using a virtual private network (VPN).
Learning objectives
After this module, you should be able to:
- Describe how you can access corporate resources
- Describe VPN types and configuration
- Describe Always On VPN
- Describe how to configure Always On VPN
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 15: Implement device compliance
This module describes how to use compliance and conditional access policies to help protect access to organizational resources.
Learning objectives
After this module, you should be able to:
- Describe device compliance policy
- Deploy a device compliance policy
- Describe conditional access
- Create conditional access policies
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 16: Generate inventory and compliance reports
This module describes how to use Microsoft Endpoint Manager and Power BI to create compliance and custom reports.
Learning objectives
After this module, you should be able to:
- Generate inventory reports and Compliance reports using Microsoft Intune
- Report and monitor device compliance
- Create custom reports using the Intune Data Warehouse
- Use the Microsoft Graph API for building custom reports
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 17: Deploy device data protection
This module describes how you can use Intune to create and manage WIP policies that manage this protection. The module also covers implementing BitLocker and Encrypting File System.
Learning objectives
After this module, you should be able to:
- Describe Windows Information Protection
- Plan for Windows Information Protection usage
- Implement and use Windows Information Protection
- Describe the Encrypting File System (EFS)
- Describe BitLocker
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 18: Manage Microsoft Defender for Endpoint
This module explores using Microsoft Defender for Endpoint to provide additional protection and monitor devices against threats.
Learning objectives
After this module, you should be able to:
- Describe Microsoft Defender for Endpoint
- Describe key capabilities of Microsoft Defender for Endpoint
- Describe Microsoft Defender Application Guard
- Describe Microsoft Defender Exploit Guard
- Describe Windows Defender System Guard
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 19: Manage Microsoft Defender in Windows client
This module explains the built-in security features of Windows clients and how to implement them using policies.
Learning objectives
After this module, you should be able to:
- Describe Windows Security capabilities
- Describe Windows Defender Credential Guard
- Manage Microsoft Defender Antivirus
- Manage Windows Defender Firewall
- Manage Windows Defender Firewall with Advanced Security
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 20: Manage Microsoft Defender for Cloud Apps
This module covers Microsoft Defender for Cloud Apps, focusing on securing sensitive data, its relevance in dynamic work settings, and effective utilization for improved security posture.
Learning objectives
- Describe Microsoft Defender for Cloud Apps
- Plan for Microsoft Defender for Cloud Apps usage
- Implement and use Microsoft Defender for Cloud Apps
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 21: Assess deployment readiness
Discusses some of the tools that you can use to perform detailed assessments of existing deployments, and describes some of the challenges that you may face.
Learning objectives
After completing this module, you will be able to:
- Describe the guidelines for an effective enterprise desktop deployment.
- Explain how to assess the current environment.
- Describe the tools that you can use to assess your current environment.
- Describe the methods of identifying and mitigating application compatibility issues.
- Explain considerations for planning a phased rollout.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 22: Deploy using the Microsoft Deployment Toolkit
Discusses the shifts from traditional to modern management and where on-premises solutions best fit in today’s enterprise.
Learning objectives
After completing this module, you will be able to:
- Describe the fundamentals of using images in traditional deployment methods.
- Describe the key benefits, limitations, and decisions when planning a deployment of – Windows using Microsoft Deployment Toolkit (MDT).
- Describe how Configuration Manager builds upon MDT and how both can work in harmony.
- Explain the different options and considerations when choosing the user interaction experience during deployment, and which methods and tools support these experiences.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 23: Deploy using Microsoft Configuration Manager
This module explains the common day to day tasks that Administrators would use Configuration Manager to perform.
Learning objectives
After completing this module, you’ll be able to:
- Describe the capabilities of Configuration Manager.
- Describe the key components of Configuration Manager.
- Describe how to troubleshoot Configuration Manager deployments.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 24: Deploy Devices using Windows Autopilot
Use Autopilot to deploy new hardware or refreshing an existing hardware with the organization’s desired configuration, without using the traditional imaging process.
Learning objectives
After completing this module, you will be able to:
- Explain the benefits of modern deployment for new devices.
- Describe the process of preparing for an Autopilot deployment.
- Describe the process of registering devices in Autopilot.
- Describe the different methods and scenarios of Autopilot deployments.
- Describe how to troubleshoot common Autopilot issues.
- Describe the process of deployment using traditional methods.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 25: Implement dynamic deployment methods
Use dynamic provisioning methods such as Subscription Activation, Provisioning packages, and Azure AD join to reconfigure an existing operating system.
Learning objectives
After completing this module, you will be able to:
- Describe how Subscription Activation works.
- Describe the benefits of Provisioning Packages.
- Explain how Windows Configuration Designer creates Provisioning Packages.
- Describe the benefits of using MDM enrollment with Azure AD join.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 26: Plan a transition to modern endpoint management
Explore considerations and review the planning of transitioning to modern management, focusing on migration and newly provisioned devices.
Learning objectives
After completing this module, you should be able to:
- Identify usage scenarios for Azure AD join.
- Identify workloads that you can transition to Intune.
- Identify prerequisites for co-management.
- Identify considerations for transitioning to modern management.
- Plan a transition to modern management using existing technologies.
- Plan a transition to modern management using Microsoft Intune.
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 27: Manage Windows 365
This module teaches managing Microsoft’s cloud-based PC management solution, Windows 365, offering personalized, secure Windows 11 experience from any device. Learn features, setup, management, security, deployment options, and licensing to optimize your environment.
Learning objectives
After completing this module, you should be able to:
- Describe the key features of Windows 365
- Describe the Windows 365 management experience
- Describe the Windows 365 security model
- Describe the Windows 365 deployment options
- Describe the Windows 365 licensing model
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 11 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Module 28: Manage Azure Virtual Desktop
Learn to manage Azure Virtual Desktop, a cloud-based VDI solution providing personalized, secure Windows 11 experiences. Understand key features, management, security, and deployment options for optimizing your environment.
Learning objectives
After completing this module, you should be able to:
- Describe the key features of Azure Virtual Desktop
- Describe the Azure Virtual Desktop management experience
- Describe the Azure Virtual Desktop security model
- Describe the Azure Virtual Desktop deployment options
Prerequisites
- Strong technical skills installing, maintaining, and troubleshooting the Windows 10 OS or later
- Strong understanding of computer networking, client security, and application concepts
- Experience using Active Directory Domain Services
Lịch khai giảng
Form đăng ký
Các khóa đào tạo Microsoft khác
Đăng ký tư vấn
cùng đội ngũ chuyên gia Trainocate!!
Bản quyền thuộc về Trainocate Việt Nam
