ITIL® (Version 5) available now! Learn more

MD-102T00-A Microsoft 365 Endpoint Administrator Live Online 09:30 - 17:00 (UK Time) Nov 9, 2026

Exam Not Included
5 Days
£2475 Excl. VAT

Location

  • Live Online 09:30 - 17:00 (UK Time)

Make an Enquiry

To enquire about this course date please use the form below. Once we have received your enquiry, one of our dedicated account managers will be in touch. Thanks.

Personal Details

Message

Find Out More

Overview

This course provides IT professionals with the skills needed to manage and secure endpoints in a Microsoft 365 environment. It focuses on device deployment, application management, security policies, compliance, and endpoint protection using Microsoft Intune and related Microsoft 365 services. The course prepares learners for real-world endpoint administration and the MD-102 certification exam.

Course Syllabus

1 - Explore the Enterprise Desktop

  • Examine benefits of modern management
  • Examine the enterprise desktop life-cycle model
  • Examine planning and purchasing
  • Examine desktop deployment
  • Plan an application deployment
  • Plan for upgrades and retirement

2 - Explore Windows Editions

  • Examine Windows client editions and capabilities
  • Select client edition
  • Examine hardware requirements

3 - Understand Microsoft Entra ID

  • Examine Microsoft Entra ID
  • Compare Microsoft Entra ID and Active Directory Domain Services
  • Examine Microsoft Entra ID as a directory service for cloud apps
  • Compare Microsoft Entra ID P1 and P2 plans
  • Examine Microsoft Entra Domain Services

4 - Manage Microsoft Entra identities

  • Examine RBAC and user roles in Microsoft Entra ID
  • Create and manage users in Microsoft Entra ID
  • Create and manage groups in Microsoft Entra ID
  • Manage Microsoft Entra objects with PowerShell
  • Synchronize objects from AD DS to Microsoft Entra ID

5 - Manage device authentication

  • Describe Microsoft Entra join
  • Examine Microsoft Entra join prerequisites limitations and benefits
  • Join devices to Microsoft Entra ID
  • Manage devices joined to Microsoft Entra ID

6 - Enroll devices using Microsoft Configuration Manager

  • Deploy the Microsoft Configuration Manager client
  • Monitor the Microsoft Configuration Manager client
  • Manage the Microsoft Configuration Manager client

7 - Enroll devices using Microsoft Intune

  • Manage mobile devices with Intune
  • Enable mobile device management
  • Explain considerations for device enrollment
  • Manage corporate enrollment policy
  • Enroll Windows devices in Intune
  • Enroll Android devices in Intune
  • Enroll iOS devices in Intune
  • Explore device enrollment manager
  • Monitor device enrollment
  • Manage devices remotely

8 - Execute device profiles

  • Explore Intune device profiles
  • Create device profiles
  • Create a custom device profile

9 - Oversee device profiles

  • Monitor device profiles in Intune
  • Manage device sync in Intune
  • Manage devices in Intune using scripts

10 - Maintain user profiles

  • Examine user profile
  • Explore user profile types
  • Examine options for minimizing user profile size
  • Deploy and configure folder redirection
  • Sync user state with Enterprise State Roaming
  • Configure Enterprise State Roaming in Azure

11 - Execute mobile application management

  • Examine mobile application management
  • Examine considerations for mobile application management
  • Prepare line-of-business apps for app protection policies
  • Implement mobile application management policies in Intune
  • Manage mobile application management policies in Intune

12 - Deploy and update applications

  • Deploy applications with Intune
  • Add apps to Intune
  • Manage Win32 apps with Intune
  • Deploy applications with Configuration Manager
  • Deploying applications with Group Policy
  • Assign and publish software
  • Explore Microsoft Store for Business
  • Implement Microsoft Store Apps
  • Update Microsoft Store Apps with Intune
  • Assign apps to company employees

13 - Administer endpoint applications

  • Manage apps with Intune
  • Manage Apps on non-enrolled devices
  • Deploy Microsoft 365 Apps with Intune
  • Additional Microsoft 365 Apps Deployment Tools
  • Configure Microsoft Edge Internet Explorer mode
  • App Inventory Review

14 - Protect identities in Microsoft Entra ID

  • Explore Windows Hello for Business
  • Deploy Windows Hello
  • Manage Windows Hello for Business
  • Explore Microsoft Entra ID Protection
  • Manage self-service password reset in Microsoft Entra ID
  • Implement multi-factor authentication

15 - Enable organizational access

  • Enable access to organization resources
  • Explore VPN types and configuration
  • Explore Always On VPN
  • Deploy Always On VPN

16 - Implement device compliance

  • Protect access to resources using Intune
  • Explore device compliance policy
  • Deploy a device compliance policy
  • Explore conditional access
  • Create conditional access policies

17 - Generate inventory and compliance reports

  • Report enrolled devices inventory in Intune
  • Monitor and report device compliance
  • Build custom Intune inventory reports
  • Access Intune using Microsoft Graph API

18 - Deploy device data protection

  • Explore Windows Information Protection
  • Plan Windows Information Protection
  • Implement and use Windows Information Protection
  • Explore Encrypting File System in Windows client
  • Explore BitLocker

19 - Manage Microsoft Defender for Endpoint

  • Explore Microsoft Defender for Endpoint
  • Examine key capabilities of Microsoft Defender for Endpoint
  • Explore Windows Defender Application Control and Device Guard
  • Explore Microsoft Defender Application Guard
  • Examine Windows Defender Exploit Guard
  • Explore Windows Defender System Guard

20 - Manage Microsoft Defender in Windows client

  • Explore Windows Security Center
  • Explore Windows Defender Credential Guard
  • Manage Microsoft Defender Antivirus
  • Manage Windows Defender Firewall
  • Explore Windows Defender Firewall with Advanced Security

21 - Manage Microsoft Defender for Cloud Apps

  • Explore Microsoft Defender for Cloud Apps
  • Planning Microsoft Defender for Cloud Apps
  • Implement Microsoft Defender for Cloud Apps

22 - Assess deployment readiness

  • Examine deployment guidelines
  • Explore readiness tools
  • Assess application compatibility
  • Explore tools for application compatibility mitigation
  • Prepare network and directory for deployment
  • Plan a pilot

23 - Deploy using the Microsoft Deployment Toolkit

  • Evaluate traditional deployment methods
  • Set up the Microsoft Deployment Toolkit for client deployment
  • Manage and deploy images using the Microsoft Deployment Toolkit

24 - Deploy using Microsoft Configuration Manager

  • Explore client deployment using Configuration Manager
  • Examine deployment components of Configuration Manager
  • Manage client deployment using Configuration Manager
  • Plan in-place upgrades using Configuration Manager

25 - Deploy Devices using Windows Autopilot

  • Use Autopilot for modern deployment
  • Examine requirements for Windows Autopilot
  • Prepare device IDs for Autopilot
  • Implement device registration and out-of-the-box customization
  • Examine Autopilot scenarios
  • Troubleshoot Windows Autopilot

26 - Implement dynamic deployment methods

  • Examine subscription activation
  • Deploy using provisioning packages
  • Use Windows Configuration Designer
  • Use Microsoft Entra join with automatic MDM enrollment

27 - Plan a transition to modern endpoint management

  • Explore using co-management to transition to modern endpoint management
  • Examine prerequisites for co-management
  • Evaluate modern management considerations
  • Evaluate upgrades and migrations in modern transitioning
  • Migrate data when modern transitioning
  • Migrate workloads when modern transitioning

28 - Manage Windows 365

  • Explore Windows 365
  • Configure Windows 365
  • Administer Windows 365

29 - Manage Azure Virtual Desktop

  • Examine Azure Virtual Desktop
  • Explore Azure Virtual Desktop
  • Configure Azure Virtual Desktop
  • Administer Azure Virtual Desktop

Learning Outcomes

By the end of this course, learners will be able to plan and implement endpoint management strategies, deploy and manage Windows, iOS, Android, and macOS devices using Microsoft Intune, configure application deployment and updates, implement security and compliance policies, manage endpoint protection and conditional access, and monitor and troubleshoot devices within a Microsoft 365 environment.

Who Should Attend

Endpoint administrators, desktop support engineers, IT administrators, systems engineers, and professionals responsible for device and application management

What's Included

Instructor-led training, hands-on labs, course materials, exam preparation guide

Entry-Level Requirements

Experience with Microsoft 365 or Windows administration recommended; understanding of identity, networking, and security fundamentals beneficial

Recommended Reading

Microsoft Learn MD-102 learning path, Microsoft Intune documentation, Exam Ref MD-102 Microsoft 365 Endpoint Administrator

Exam Information

This course prepares learners for the MD-102: Microsoft 365 Endpoint Administrator certification exam. The exam measures the ability to deploy, manage, secure, and monitor endpoints using Microsoft Intune and related services. It includes multiple-choice, scenario-based, and case-study questions aligned with real-world endpoint administration tasks. Successful candidates earn the Microsoft Certified: Endpoint Administrator Associate credential.

Exam Type

Proctored Exam

Qualifications

Microsoft Certified: Endpoint Administrator Associate

What's Next

After completing MD-102, learners can advance to MS-102 (Microsoft 365 Administrator), SC-300 (Identity and Access Administrator), or AZ-500 (Azure Security Engineer) certifications.

Additional Information

Prerequisites

The Modern Desktop Administrator must be familiar with M365 workloads and must have strong skills and experience of deploying, configuring, and maintaining Windows 11 and later, and non-Windows devices.