Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.

Slides:



Advertisements
Similar presentations
Mobile Device Management Intune-Configmanager CHANDAN BHARTI PREMIER FIELD ENGINEER-MICROSOFT.
Advertisements

Windows 8.1 Device Management With Windows Intune Mark O’Shea MVP Windows Expert – IT Pro 30 June 2014.
Managing and Securing Devices using Exchange, System Center, and Intune LAWRENCE NOVAK MICHAEL INDENCE DMVMUG Reston, VA
Enterprise Mobility Platform Microsoft Differentiation Managed Mobile Productivity Layered Protection Hybrid Solutions Office 365DynamicsWorkday.
Plan Build Custom Image (Drivers, Apps, Updates) New Hardware In-Place (Refresh) WipeReimage New Windows Version or Major Image Revision.
SharePoint Server Exchange Server CORPORATE NETWORK Mobile devices PCs Browsers INTERNET DMZ Active Directory Policies Filter EAS Filter web access.
Data Devices People 6.5B Wireless connections today >42% of global population owns smartphone by end of 2015 >50% User will go to tablet or smartphone.
Protect your data Enable your users Unify Your Environment DevicesAppsData Help organizations enable their users to be productive on the devices they.
Desktop virtualization Access & information protection Mobile device & application management Hybrid identity Simplified device enrollment and.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Empower Enterprise Mobility. of employees use personal devices for work purposes.* of employees that typically work on employer premises, also frequently.
Windows Server 2012 R2 Capabilities for BYOD Scenario Yuri Diogenes Senior Knowledge Engineer Data Center, Devices & Enterprise Client – CSI Team’s Page:
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Exchange Exchange Connecter with Configuration Manager Configuration Manager with Intune Protect and Manage Devices and Infrastructure.
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
The explosion of devices is eroding the standards-based approach to corporate IT. Devices Deploying and managing applications across platforms is.
Empowering people-centric IT Patrick Rogers May 29, 2014.
Access and Information Protection Product Overview Andrew McMurray Technical Evangelist – Windows
Get identities to the cloud Mix on-premises and cloud identity for improved PC, mobile, and web productivity Cloud identities help you run your business.
Lior Rubin PTS. What is it ? o The Microsoft Enterprise Mobility Suite (EMS) helps give users a more secure and integrated productivity experience with.
FND2851. Mobile First | Cloud First Sixty-one percent of workers mix personal and work tasks on their devices* >Seventy-five percent of network intrusions.
James Lewis and Simon Waight Office 365 security: everywhere you need it to be PRD33 1.
Configuration Manager and InTune Gemeinsam oder einsam?
Microsoft Virtual Academy Preparing for the Windows 8.1 MCSA Module 5: Managing Devices & Resource Access.
User and Device Management
Pat Fetty – Principal PM Manager Securing your mobile assets with Microsoft Intune WIN33 1.
Craig Pringle & Derek Moir
Slavko Kukrika MVP Connect Windows 10 to the Cloud – Cloud Join.
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
2015 October 5 th - 6 th 3 Things You Need to Know to Capitalise on Enterprise Mobility Suite How to Unlock EMS.
Enterprise Mobility Suite: Simplify security, stay productive Protect data and empower workers Unsecured company data can cost millions in lost research,
Tomaž Čebul Principal Consultant Microsoft Bring Your Own Device, kaj pa je to?
Go mobile. Stay in control. Craig Morris EMPOWER ENTERPRISE MOBILITY.
Enabling the Modern Workstyle with Windows 10 & Azure Active Directory Venkatesh Gopalakrishnan 2016 Redmond Summit | Identity Without Boundaries May 25,
Azure Active Directory Uday Hegde 2016 Redmond Summit | Identity Without Boundaries May 26, 2016 Group Program Manager, Azure AD
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
Selecting the Management Platform Cloud-based Management Standalone Windows Intune No existing Configuration Manager deployment Simplified policy.
The time to address enterprise mobility is now
LOCAL CLOUDINESS Dino Buljubašić Rijad Smajlović
Conduct a successful pilot deployment of Microsoft Intune
Microsoft Virtual Academy
Deployment Planning Services
Manage Windows devices in the complex hybrid cloud world of today
Conduct a successful pilot deployment of Microsoft Intune
Exam Prep : Section 2: Design for Device Access and Protection
Azure AD for the client management guy (or gal!)
Mobile Device Management options in Office 365 and beyond
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Microsoft Virtual Academy
The power of common identity across any cloud
Power BI Security Best Practices
Windows 10 & Intune: A Modern Desktop Management Story Joe Crandall.
Everything Windows User Group Meeting, May 2016
9/13/2018 4:54 PM BRK How to get Office 365 to the next level with Azure Active Directory Premium Brjann Brekkan Program Manager Lead – Customer.
Microsoft Intune MAM without Device Enrollment
Welcome! Microsoft Tech Talks - Charlotte, NC
Application Delivery & MAM Policy
Protect your OneDrive and SharePoint files on mobile devices
Microsoft Ignite /20/2018 2:21 PM
Access and Information Protection Product Overview October 2013
Getting Started.
Encryption in Office 365 Shobhit Sahay Technical Product Manager
Microsoft Ignite NZ October 2016 SKYCITY, Auckland
Getting Started.
TechEd /7/ :16 AM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
System Center Marketing
TechEd /18/ :51 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
Microsoft 365 Business Technical Fundamentals Series
Microsoft Virtual Academy
Presentation transcript:

Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr

#ITProceed Managing Keduco Services City, Country Ken Goossens Copenhagen, Denmark Ghent Services Enterprise Client Management Solution Engineer Consultant and a Certified Trainer 10 years IT Pro Crew Member of System Center User Group Belgium Administrator of

#ITProceed Managing Keduco Services City, Country Herman Arnedo Mahr Copenhagen, Denmark Ghent Proud MCT Since 2003 Secure Infrastructure Consultant WECP – Client Solutions System Management consultant since 2001 MCT Regional Lead –

Special thanks to our sponsors

Session Objectives Understand Microsoft EMS Setup your EMS demo infrastructure – Azure Active Directory Premium – Microsoft Intune – Azure RMS BE a hero in 60 minutes and then a Super Hero…

Enterprise Mobility Suite Easily manage identities across on-premises and cloud. Single sign-on and self-service for corporate resources. Azure Active Directory Premium Unify identity Manage apps and devices Protect data Microsoft Intune Azure Rights Management Manage and protect corporate apps and data on almost any device with MDM and MAM. Encryption, identity, and authorization policies to secure corporate files and across phones, tablets, and PCs.

Security reports, audit reports, multi-factor authentication Self-service password reset and group management Single sign-on to over 2,400 popular SaaS applications Information protection Document trackingBring your own key Mobile device settings management Mobile application management with Office mobile apps Conditional access and selective wipe Enterprise Mobility Suite Active Directory Premium Rights Management

Self-service Single sign on Itproceedx.com Username On-premises Simple connection Azure Active Directory ITProceedx.onmicrosoft.com Public Cloud Office 365 Intune RMS Azure ITProceedx.local Windows Server Active Directory

Demo Pre-requisites Azure Subscription Legacy AD Buy a new Public Domain Next Steps Create Azure Active Directory Premium Add a Custom Domain to improve SSO Experience Integration with Local Active Directory Customize Branding Assign EMS Licenses

Phone callMobile appSingle-use codes SMS “ ” cloudOn-premises

Mobile application management PC managementMobile device management IT User Microsoft Intune Intune helps organizations provide their employees with access to corporate applications, data, and resources from virtually anywhere on almost any device, while helping to keep corporate information secure.

Enroll Provide a self-service Company Portal for users to enroll devices Deliver custom terms and conditions at enrollment Bulk enroll devices using Apple Configurator or service account Restrict access to Exchange if a device is not enrolled Retire Revoke access to corporate resources Perform selective wipe Audit lost and stolen devices Provision Deploy certificates, , VPN, and WiFi profiles Deploy device security policy settings Install mandatory apps Deploy app restriction policies Deploy data protection policies Manage and Protect Restrict access to corporate resources if policies are violated (e.g., jailbroken device) Protect corporate data by restricting actions such as copy, cut, paste, and save as between Intune-managed apps and personal apps Report on device and app compliance User IT

ConfigMgr integrated with Intune (hybrid)Intune standalone (cloud only) Mobile devices and PCs Intune web console System Center Configuration Manager Mobile devicesDomain joined PCs Configuration Manager console IoT/Kiosk devices

Demo Enable Workplace Join & auto Enrolment with Microsoft Intune Set Mobile Management Authority – Intune Cloud Only Available Mobile Platforms Setup iOS Devices - Apple Push Notification Certificate

SharePoint Online Exchange Online User Microsoft Intune IT SharePoint Online Exchange Online User Microsoft Intune IT

Demo Configure a Compliance Policy Enable Conditional Access Enroll a device with conditional Access – (optional)

MANAGED MOBILE PRODUCTIVITY Managed apps Personal apps Managed apps Corporate data Personal data Multi-identity policy Personal apps Managed apps Copy Paste Save Save to personal storage Paste to personal app attachment

Personal apps Managed apps Perform selective wipe via self- service company portal or admin console Remove managed apps and data Keep personal apps and data intact IT

Demo Selective Wipe (Optional)

Data protection at the file layer Document tracking Access control Data encryption Share internallyShare externally z On any device Authentication and collaboration

Vendor 2 Azure Rights Management ! Sender Vendor Username Password Username Password

Sharing documents securely Use Microsoft Azure RMS to securely share documents with colleagues and business partners

Getting notifications for document use opened RMS blog post – Aug2014.docx.pdf was denied access to BudgetWithCharts.xlsx.pdf was denied access to BudgetwithCharts.xlsx.pdf

Demo Prerequisites RMS1 Computer with Office RMS2 Computer with Office Next Steps Data Encription Access Control Tracking Print Screen

Belgiums’ biggest IT PRO Conference