Login / Register

This course retired 31 July 2018

Course 20398B: Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) and On-Premises Tools

This course teaches IT professionals how to use the Enterprise Mobility Suite to manage devices, users, and data. In addition, this course teaches students how to use other technologies, such as Group Policy and other Wi... Show More
Course Prerequisites:
This course is intended for IT professionals and consultants who plan, deploy, and manage devices and applicat... Show More

Instructor-Led Training (ILT)

Attend training in a classroom environment at a campus near you. Instructor-led training is still the number one delivery method of choice because it allows you to interact and discuss the training material, either individually or in a group setting, and you gain access to expert knowledge from certified instructors. This form of guided learning is impactful and produces positive learning outcomes. Day, evening and Saturday classes are offered.


5 Days or 8 Evenings

Course Content

Module 1: Using devices in the enterprise environment
This is an overview module that introduces changes and challenges in today’s typical workplace, and the solutions to address them. The intention of this module is to set the stage for later modules, and to introduce the Enterprise Mobility Suite.


  • Overview of devices in an enterprise
  • Device management features
  • Overview of the EMS

Lab : Planning for device management

  • Selecting the appropriate products and technologies for device management
  • Working with mobile devices

Module 2: Implementing and administering Azure AD
In this module students will learn how to manage devices in an on-premises Active Directory environment. They will learn about cloud identity, and the features that Azure AD provides. They also will learn about Azure AD offerings, how to create and manage an Azure AD tenant, and how claims-based authentication works.


  • Overview of AD DS
  • Overview of Azure AD
  • Creating and managing Azure AD
  • Managing authentication in Azure AD

Lab : Working with Azure AD and providing access to claims-aware applications

  • Managing Azure AD users and groups
  • Joining a Windows 10 device to Azure AD
  • Accessing cloud applications with SSO

Module 3: Connecting AD DS with Azure AD
In this module students will learn how to connect their on-premises AD DS with Azure AD. They will learn about Azure AD Connect, and how either to synchronize entire identities to Azure AD, including password hashes, or to establish federation with Azure AD.


  • Preparing AD DS for directory synchronization
  • Implementing Azure AD Connect
  • Planning and implementing federation

Lab : Synchronizing on-premises AD DS with Azure AD

  • Implementing Azure AD Connect
  • Verifying synchronization of new objects
  • Implementing and using Azure AD Premium features

Module 4: Managing devices in Office 365
In this module students will learn about Office 365 and its main features. The focus of this module is on device management by using mobile device management for Office 365.


  • Overview of Office 365
  • MDM for Office 365

Lab : Managing devices in Office 365 (Part 1)

  • Obtaining an Office 365 subscription
  • Enabling MDM

Lab : Managing devices in Office 365 (Part 2)

  • Configuring and testing mobile device management in Office 365

Module 5: Planning and implementing Microsoft Intune
In this module students will learn how to plan for Microsoft Intune, how to deploy an Intune client, and how to perform basic Intune administration.


  • Planning for Intune
  • Deploying Intune clients
  • Basic Intune administration

Lab : Planning and implementing Intune

  • Deploying Intune clients and linking computers to users
  • Create Intune users
  • Delegating Intune permissions
  • Creating Intune groups

Module 6: Managing devices by using Intune
In this module students will learn how to enroll and manage mobile devices with Intune, create, manage and deploy different types of Intune policies, and manage updates and Windows Defender by using Microsoft Intune.


  • Working with Microsoft Intune policies
  • Mobile device management
  • Managing updates and Windows Defender

Lab : Using Microsoft Intune policies to manage devices

  • Configuring Azure AD with automatic mobile device management enrollment
  • Working with Microsoft Intune policies

Lab : Managing updates and Windows Defender

  • Managing updates by using Intune
  • Managing Windows Defender by using Intune

Module 7: Using Microsoft Intune to manage applications and resource access
In this module students will learn how to manage application deployments by using Microsoft Intune. They will also learn how to deploy settings, such as VPN profiles, Wi-Fi profiles and certificates to Intune clients.


  • Application lifecycle management
  • Application deployment process
  • Managing access to company resources

Lab : Using Intune to deploy and monitor applications

  • Using Intune to deploy and monitor applications

Lab : Using Intune to manage resource access

  • Configuring certificate deployment in Intune
  • Configuring conditional access policies

Module 8: Planning and implementing Azure RMS
In this module students will learn how to plan and implement Azure Rights Management to protect digital content. They also will learn which applications can integrate with Azure Rights Management, and how to use Azure Rights Management with Office 365 in an on-premises infrastructure.


  • Overview of Azure RMS.
  • Implementing Azure RMS.

Lab : Using Azure RMS to protect documents and data

  • Protecting documents with Azure RMS
  • Using FCI with Azure RMS

Module 9: Planning and implementing app support
In this module students will learn how they can mitigate compatibility issues between applications on the same device, and between the application and the operating system. They also will learn about RemoteApp and Azure RemoteApp programs, which enable you to run Windows apps on any device with the Remote Desktop Protocol (RDP) client.


  • Planning and implementing application compatibility options
  • Publishing and using RemoteApp programs
  • Publishing and using Azure RemoteApp

Lab : Publishing and using RemoteApp and Azure RemoteApp

  • Publishing and accessing RemoteApp programs
  • Publishing and accessing Azure RemoteApp programs

Module 10: Planning and implementing remote access
In this module students will learn how to provide remote access from devices to a company network. They also will learn how to provide access to company infrastructure servers, data in work folders, and data that is stored in the cloud.


  • Overview of remote access solutions
  • Implementing remote infrastructure access
  • Planning and implementing Work Folders
  • Implementing cloud data access
  • Planning and implementing mobility options

Lab : Configuring and using VPN and Work Folders

  • Configuring a VPN server and a VPN client
  • Configuring and using Work Folders

Lab : Using Offline Files and OneDrive

  • Configuring and using Offline Files
  • Synchronize settings between Windows 10 devices
  • Configuring and using OneDrive
  • Plan and implement mobility options.

Module 11: Planning and implementing Dynamic Access Control and auditing
In this module students will learn how to implement Dynamic Access Control, and how to configure and use advanced auditing. Lessons

  • Planning and implementing Dynamic Access Control
  • Planning and deploying advanced audit policies

Lab : Implementing secure data access

  • Preparing for Dynamic Access Control deployment
  • Implementing Dynamic Access Control
  • Validating and remediating Dynamic Access Control
  • Using advanced audit policies

Module 12: Planning and protecting data
In this module students will learn how to protect data on a device by using encryption or BitLocker. They will also learn about Enterprise Data Protection and how data can be remotely wiped if a device is lost or stolen.


  • Planning and implementing encryption
  • Planning and implementing BitLocker
  • Protecting data on devices

Lab : Protecting data by using encryption and BitLocker

  • Encrypting and recovering access to encrypted files
  • Using BitLocker to protect data

Module 13: Recovering data and operating systems
In this module students will learn how to plan and implement file recovery and device recovery of Windows 10 devices. They also will learn how to update a Windows 10 device, and learn about Windows Branch.


  • Planning and implementing file recovery
  • Planning and implementing device recovery
  • Planning and implementing updates

Lab : Implementing file recovery and device recovery

  • Using File History to recover files
  • Using Previous Versions to recover files
  • Recovering a device with a restore point
  • Using the advanced startup options to recover a device
CTU Training Solutions , Updated: January 12th, 2018

Share with friends

Request a Quote

Your Name

Your Surname

Contact Number

Your Email


Which campus would you like to study at?

Your job title

Will your training be sponsored?


The course information above is subject to change without notification due to market trends in the industry, legislation and/or programme version updates. Terms and Conditions

Join the CTU community

Join the CTU Community Portal and gain access to superior resources.

Join for Free

Thank you for printing this page.
0861 100 395
[email protected]


Call me Back

Leave your details and we'll contact you back!

Your Name:

Your Email:

Contact Number:

Choose a campus