Microsoft Intune

Get in Touch

Home » Cloud Security » Microsoft 365 » Microsoft Intune

Productive and Protective

Microsoft Intune is a cloud-based service that focuses on mobile device management (MDM) and mobile application management (MAM). Intune is included in Microsoft’s Enterprise Mobility + Security (EMS) suite, and enables users to be productive while keeping your organization data protected. It integrates with other services, including Microsoft 365 and Azure Active Directory (Azure AD) to control who has access, and what they have access to, and Azure Information Protection for data protection.

When you use it with Microsoft 365, you can enable your workforce to be productive on all their devices, while keeping your organization’s information protected.

Custom Approach

In Intune, you manage devices using an approach that’s right for you. For organization-owned devices, you may want full control on the devices, including settings, features, and security. In this approach, devices and users of these devices “enrol” in Intune. Once enrolled, they receive your rules and settings through policies configured in Intune. For example, you can set password and PIN requirements, create a VPN connection, set up threat protection, and more.

Bring Your Own Device

For personal devices, or bring-your-own devices (BYOD), users may not want their organization administrators to have full control. In this approach, give users options. For example, users enroll their devices if they want full access to your organization resources. Or, if these users only want access to email or Microsoft Teams, then use app protection policies that require multi-factor authentication (MFA) to use these apps.

When devices are enrolled and managed in Intune, administrators can

See the devices enrolled, and get an inventory of devices accessing organization resources.
Configure devices so they meet your security and health standards. For example, you probably want to block jailbroken devices.
Push certificates to devices so users can easily access your Wi-Fi network, or use a VPN to connect to your network.
See reports on users and devices that are compliant, and not compliant.
Remove organization data if a device is lost, stolen, or not used anymore.

Mobile application management (MAM) in Intune is designed to protect organization data at the application level, including custom apps and store apps. App management can be used on organization-owned devices, and personal devices.

When apps are managed in Intune administrators can

Add and assign mobile apps to user groups and devices, including users in specific groups, devices in specific groups, and more.
Configure apps to start or run with specific settings enabled, and update existing apps already on the device.
See reports on which apps are used, and track their usage.
Do a selective wipe by removing only organization data from apps.