Skip to main content

MFE-IT

Infrastructure IT

Intune Endpoint Security Training Course (MD-4011)

Intune Endpoint Security Training Course (MD-4011)
Guaranteed sessions from 1 enrollee  •  No postponement risk except force majeure  •  60% hands-on
Key information
Duration1 day(s) / 6 h
Price990 € excl. VAT
FormatDistance learning, On-site at your premises
LevelIntermediate
CertifyingNo
TailoredCustomizable programme

Upcoming sessions

4 janvier 2027
1 février 2027
1 mars 2027
5 avril 2027
10 mai 2027

Would you like to schedule this training on a specific date? Contact us by email or via the contact form.

Description of the training: Intune Endpoint Security Training Course (MD-4011)
About the Intune endpoint security training course

This intensive one-day course teaches you to strengthen endpoint security by combining Microsoft Intune, Microsoft Defender for Endpoint and Microsoft Security Copilot. Aligned with the official Microsoft MD-4011 course, it covers preparing Entra ID and Intune, device enrolment and configuration, compliance, Conditional Access, endpoint hardening and AI-accelerated remediation. It builds on the Microsoft Intune for IT support teams course and follows on naturally from the Microsoft 365 MS-102 course.

Built around a majority of hands-on labs, the day takes you from a tenant ready for device management to a monitored, defended security posture: configuration profiles, compliance policies, data protection, Defender baselines, ASR rules, then investigation and recommendations generated by Security Copilot. To broaden into overall Microsoft 365 troubleshooting, the Microsoft 365 Troubleshooting course is a useful complement. Sessions run in a small group of 1 to 3 participants.

Good to know
Good to Know

Our inter-company sessions are guaranteed from a single registration (no risk of postponement except in cases of force majeure). A 30-day follow-up support period comes with the course and a certificate of completion is issued. Explore our full catalogue in the Microsoft 365 training courses category.

Objectives of the training: Intune Endpoint Security Training Course (MD-4011)
Intune endpoint security training course objectives

By the end of the course, you will be able to:

  • Prepare Entra ID and Intune (identity, licensing, Autopilot, BYOD) for device management.
  • Enrol, validate and troubleshoot devices in Microsoft Intune.
  • Configure profiles, compliance policies and automatic remediation using dynamic groups.
  • Protect data and control access with app protection policies and Conditional Access.
  • Harden endpoints with security baselines and Microsoft Defender for Endpoint (ASR rules, posture).
  • Accelerate investigation and remediation with Microsoft Security Copilot.
Prerequisites of the training: Intune Endpoint Security Training Course (MD-4011)
Prerequisites

Because every participant is unique, a preliminary interview tailors the content. Proficiency in basic device management and security operations is recommended to get the most out of the day.

Detailed programme of the training: Intune Endpoint Security Training Course (MD-4011)

Download the programme (PDF)

Module 1 — Prepare Entra ID and Intune for device management
  • Configure identity, licensing and tenant settings for device enrolment.
  • Explore manual enrolment methods.
  • Implement Windows Autopilot.
  • Support BYOD (bring your own device) scenarios.
Module 2 — Enrol and validate devices with Intune
  • Perform device enrolment in Microsoft Intune.
  • Validate device join and management status.
  • Configure enrolment restrictions.
  • Troubleshoot common enrolment issues.
Module 3 — Configure and secure devices
  • Create and deploy configuration profiles.
  • Implement compliance policies.
  • Target deployments using dynamic groups.
  • Automate remediation for noncompliant devices.
Module 4 — Protect data and control access
  • Protect corporate data on managed and unmanaged devices (app protection policies).
  • Control access to organizational resources.
  • Enforce compliance and security requirements with Microsoft Entra Conditional Access.
Module 5 — Harden endpoints and monitor security
  • Deploy Microsoft security baselines.
  • Onboard devices to Microsoft Defender for Endpoint.
  • Configure attack surface reduction (ASR) rules.
  • Monitor security posture and respond to threats.
Module 6 — Accelerate remediation with Security Copilot
  • Leverage Security Copilot’s AI-powered investigation capabilities.
  • Analyse security incidents.
  • Troubleshoot device issues.
  • Generate remediation recommendations across Intune and Defender for Endpoint.
Module 7 — Course highlights
  • A case-driven approach on a Microsoft 365 environment.
  • The Intune + Defender + Security Copilot combination, at the heart of modern endpoint security.
  • A small group (1 to 3 participants) and 30 days of post-course support.
FAQ
What is the Intune endpoint security training (MD-4011)?

A one-day course following the official Microsoft MD-4011 course. It teaches you to manage and secure devices with Intune, apply Conditional Access and Defender for Endpoint, and accelerate remediation with Microsoft Security Copilot.

Who is this course for?

Endpoint administrators, security analysts (SecOps), Microsoft 365 administrators and security engineers.

What are the prerequisites?

Basic device management and security operations skills are recommended. A preliminary interview tailors the content.

How long is it and in what format?

1 day (6 hours), remotely, in a group of 1 to 3 participants, with around 60 % hands-on labs and 30 days of follow-up support.