Craig Pringle & Derek Moir

Slides:



Advertisements
Similar presentations
Users expect to be able to work in any location and have access to all their work resources. The explosion of devices has eradicated the standards-
Advertisements

2 Agenda Introductions – Kathleen Wetherell Introduction of the Enterprise Mobility Suite– Kathleen Wetherell Overview of Microsoft’s Intune with Product.
Protect your data Enable your users Unify Your Environment DevicesAppsData Help organizations enable their users to be productive on the devices they.
SharePoint Server Exchange Server CORPORATE NETWORK Mobile devices PCs Browsers INTERNET DMZ Active Directory Policies Filter EAS Filter web access.
Federated sign-in WS-Federation WS-Trust SAML 2.0 Metadata Shibboleth Graph API Synchronize accounts Authentication.
Protect your data Enable your users Unify Your Environment DevicesAppsData Help organizations enable their users to be productive on the devices they.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
What is Azure Multi-Factor Authentication? An Azure Identity and Access management service that prevents unauthorized access to both on- premises.
Desktop virtualization Access & information protection Mobile device & application management Hybrid identity Simplified device enrollment and.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Empower Enterprise Mobility. of employees use personal devices for work purposes.* of employees that typically work on employer premises, also frequently.
Mobility is the new normal 52% of information workers across 17 countries report using three or more devices for work* 52% 90% of enterprises will have.
SAM for Mobile Device Management Presenter Name. of employees spend at least some portion of their time working outside their office. Mobility is the.
Windows Server 2012 R2 Capabilities for BYOD Scenario Yuri Diogenes Senior Knowledge Engineer Data Center, Devices & Enterprise Client – CSI Team’s Page:
User Microsoft Account Ex: User Organizational Account Ex: Microsoft Account Windows Azure Active Directory.
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Howard A. Carter III Senior Consultant Microsoft Consulting Services
Single Sign-On with Microsoft Azure
User Microsoft Account Ex: User Organizational Account Ex: Microsoft Account Microsoft Azure Active Directory.
Windows Azure Conference 2014 Windows Azure AD – All about WAAD & integration with on- premises AD.
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
The explosion of devices is eroding the standards-based approach to corporate IT. Devices Deploying and managing applications across platforms is.
Empowering people-centric IT Patrick Rogers May 29, 2014.
Access and Information Protection Product Overview Andrew McMurray Technical Evangelist – Windows
Get identities to the cloud Mix on-premises and cloud identity for improved PC, mobile, and web productivity Cloud identities help you run your business.
Lior Rubin PTS. What is it ? o The Microsoft Enterprise Mobility Suite (EMS) helps give users a more secure and integrated productivity experience with.
FND2851. Mobile First | Cloud First Sixty-one percent of workers mix personal and work tasks on their devices* >Seventy-five percent of network intrusions.
James Lewis and Simon Waight Office 365 security: everywhere you need it to be PRD33 1.
Configuration Manager and InTune Gemeinsam oder einsam?
Managing iOS Device Using ConfigMgr and Intune Hybrid MDM John Presenter #2 Twitter Handle Blog or address.
Jeff Alexander & Andrew McMurray Runtime Provisioning in Windows 10 WIN327.
Michael Niehaus Using the Windows Store for Business: New Capabilities for Managing Apps in the Enterprise WIN335.
User and Device Management
Pat Fetty – Principal PM Manager Securing your mobile assets with Microsoft Intune WIN33 1.
© 2008 Microsoft Corporation. All rights reserved. This presentation is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED,
Slavko Kukrika MVP Connect Windows 10 to the Cloud – Cloud Join.
Protect your data Enable your users Unify Your Environment DevicesAppsData Help organizations enable their users to be productive on the devices they.
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
2015 October 5 th - 6 th 3 Things You Need to Know to Capitalise on Enterprise Mobility Suite How to Unlock EMS.
Enterprise Mobility Suite: Simplify security, stay productive Protect data and empower workers Unsecured company data can cost millions in lost research,
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
Tomaž Čebul Principal Consultant Microsoft Bring Your Own Device, kaj pa je to?
Go mobile. Stay in control. Craig Morris EMPOWER ENTERPRISE MOBILITY.
EMS in action Hugh Simpson-Wells and Mark Riley 2016 Redmond Summit | Identity Without Boundaries
of employees use personal devices for work purposes.* of employees that typically work on employer premises, also frequently work away from their desks.***
Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
61% of workers mix personal and work tasks in their devices* * Forrester Research: “BT Futures Report: Info workers will erase boundary between enterprise.
Active Directory Modernization Technical competitive comparison
Implementing and Managing Azure Multi-factor Authentication
Deployment Planning Services
What's New in System Center Configuration Manager, Current Branch and Intune INF324a Steven Hosking.
Azure AD for the client management guy (or gal!)
Mobile Device Management options in Office 365 and beyond
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Microsoft Virtual Academy
Microsoft Intune MAM without Device Enrollment
Welcome! Microsoft Tech Talks - Charlotte, NC
Microsoft Virtual Academy
Office 365 Identity Management
Microsoft Ignite /20/2018 2:21 PM
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
System Center Marketing
Empower your users with Azure Active Directory Premium
Microsoft 365 Business Technical Fundamentals Series
Microsoft Virtual Academy
Presentation transcript:

Craig Pringle & Derek Moir Bring IT All Together with Enterprise Mobility Suite: A day in the life with EMS Craig Pringle & Derek Moir MOB223

Here’s the Plan Enterprise Mobility Suite Overview and Value Understanding Enterprise Mobility Suite Overview and Value The User View A day in the life of an EMS enabled user Administration How we set up the key elements of the demo

Understanding the Enterprise Mobility Suite Value Proposition

What is Enterprise Mobility Suite? Identity & Access Management Mobile device and app management Information protection Enterprise Mobility Suite Azure AD Premium Single sign-on for all cloud apps Advanced multifactor authentication for all workloads Self-service group management and password reset with write back to on- premises directory Advanced security reports FIM (now MIM), Server + CAL Intune Device settings management Selective wipe PC management Mobile app management (prevent cutting/copying/pasting/saving from corporate apps to personal apps) Secure content viewers Certificate provisioning System Center integration Azure RMS Protection for content stored in Office (on-premises or Office 365) Access to RMS SDK Bring Your Own Key Protection for on-premises Windows Server file shares Email notifications when sharing documents Email notifications when shared documents are forwarded

Mobility is the new normal 66% 25% 33% of employees use personal devices for work purposes.* of all software will be available on a SaaS delivery by 2020.** of employees that typically work on employer premises, also frequently work away from their desks.*** *CEB The Future of Corporate ITL: 203-2017. 2013. **Forrester Application Adoption Trends: The Rise Of SaaS ***CEB IT Impact Report: Five Key Findings on Driving Employee Productivity Q1 2014.

What's driving change? User Devices Apps Data IT

Empowering enterprise mobility Enable your users People-centric approach Protect your data User Devices Apps Data IT Unify your environment

Empowering enterprise mobility Desktop Virtualization Enable your users Protect your data User IT Access & information protection Hybrid identity Mobile device & application management

Change drives complexity ? Laptop Devices SaaS Apps Data Data and apps anywhere New Solution Microsoft Enterprise Mobility Solution Microsoft’s unified approach Change drives complexity ? Risk Cost Complexity New Solution Next big thing ? Risk Cost Data and apps anywhere VDI Solutions Risk Cost Data Data Security Solutions Risk Cost ID Solutions SaaS Apps Risk Cost Complexity Devices MDM Solutions Risk Complexity Cost Complexity System Center Laptop Complexity Complexity Complexity Progress

A day in the Life of an EMS User Craig Pringle & Derek Moir

So How’d We Do That? Craig Pringle & Derek Moir

Complete your session evaluation on My Ignite for your chance to win one of many daily prizes.

Continue your Ignite learning path Microsoft Ignite 2015 4/27/2017 10:46 AM Continue your Ignite learning path Visit Microsoft Virtual Academy for free online training visit https://www.microsoftvirtualacademy.com Visit Channel 9 to access a wide range of Microsoft training and event recordings https://channel9.msdn.com/ Head to the TechNet Eval Centre to download trials of the latest Microsoft products http://Microsoft.com/en-us/evalcenter/ © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Azure Active Directory Offering Comparison EMS Overview 4/27/2017 Azure Active Directory Offering Comparison Azure AD Free (O365) Azure AD Premium Directory as a service Up to 500,000 objects No limit User and group management Single sign-on for pre-integrated SaaS and custom applications 10 apps per user Microsoft Directory Synchronization Tool (Windows Server Active Directory extension) User-based access management and provisioning Group-based access management and provisioning Self-service group management for cloud users Self-service password change for cloud users Self-service password reset for cloud users Security reports Advanced security reporting (based on machine learning) Usage reporting Company branding (logon pages and Access Panel customization) Multi-factor authentication (all available features on Windows Azure and on-premises environments) Service-level agreement (SLA) Forefront Identity Manager CAL + Forefront Identity Manager Server © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, Surface and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Azure MFA Offering Comparison Build 2012 4/27/2017 Azure MFA Offering Comparison MFA for O365/Azure Administrators Windows Azure Multi-Factor Authentication / EMS Administrators can Enable/Enforce MFA to end-users Use Mobile app (online and OTP) as second authentication factor Use Phone call as second authentication factor Use SMS as second authentication factor Application passwords for non-browser clients (e.g. Outlook, Lync) Default Microsoft greetings during authentication phone calls Custom greetings during authentication phone calls Fraud alert MFA SDK Security Reports MFA for on-premises applications/ MFA Server. One-Time Bypass Block/Unblock Users Customizable caller ID for authentication phone calls Event Confirmation © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Azure RMS Offering Comparison Build 2012 4/27/2017 Azure RMS Offering Comparison RMS for O365 Azure RMS (EMS) Consume & Create RMS content with company ID Protection for content stored in O365 Protection for content stored in on prem Office (Exchange, Sharepoint via RMS Connector) Bring your own Key (Hybrid protection) RMS protection for non office files RMS SDK RMS On Prem Connector for on-premises Windows Server file shares* (via RMS FCI Connector) * As of July 1, 2014 © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Device management feature comparison EMS Overview 4/27/2017 Device management feature comparison Category Feature Exchange ActiveSync MDM for Office 365 Intune Device configuration Inventory mobile devices that access corporate applications ● Remote factory reset (full device wipe) Mobile device configuration settings (PIN length, PIN required, lock time, etc.) Self-service password reset (Office 365 cloud only users) Office 365 Provides reporting on devices that do not meet IT policy   Group-based policies and reporting (ability to use groups for targeted device configuration) Root cert and jailbreak detection Remove Office 365 app data from mobile devices while leaving personal data and apps intact (Selective wipe) Prevent access to corporate email and documents based upon device enrollment and compliance policies Premium mobile device & app management Self-service Company Portal for users to enroll their own devices and install corporate apps  Deploy certificates, VPN profiles (including app-specific profiles), and Wi-Fi profiles Prevent cut/copy/paste/save as of data from corporate apps to personal apps (Mobile application management) Secure content viewing via Managed browser, PDF viewer, Imager viewer, and AV player apps for Intune Remote device lock via self-service Company Portal and via admin console management PC PC management (e.g. inventory, antimalware, patch, policies, etc.) OS deployment (via System Center ConfigMgr) PC software management Single management console for PCs and mobile devices (through integration with System Center ConfigMgr) © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, Surface and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.