Presentation is loading. Please wait.

Presentation is loading. Please wait.

Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.

Similar presentations


Presentation on theme: "Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr."— Presentation transcript:

1 Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr

2 #ITProceed Managing Consultant @ Keduco Services City, Country Ken Goossens Copenhagen, Denmark Ghent Founder @Keduco Services Enterprise Client Management Solution Engineer Consultant and a Certified Trainer 10 years IT Pro Crew Member of System Center User Group Belgium www.scug.be/ken Administrator of www.mssystemcenter.eu

3 #ITProceed Managing Consultant @ Keduco Services City, Country Herman Arnedo Mahr Copenhagen, Denmark Ghent Proud MCT Since 2003 Secure Infrastructure Consultant WECP – Client Solutions System Management consultant since 2001 MCT Regional Lead – Spain @hermanarnedo www.hermanarnedo.com

4 Special thanks to our sponsors

5 Session Objectives Understand Microsoft EMS Setup your EMS demo infrastructure – Azure Active Directory Premium – Microsoft Intune – Azure RMS BE a hero in 60 minutes and then a Super Hero…

6 Enterprise Mobility Suite Easily manage identities across on-premises and cloud. Single sign-on and self-service for corporate resources. Azure Active Directory Premium Unify identity Manage apps and devices Protect data Microsoft Intune Azure Rights Management Manage and protect corporate apps and data on almost any device with MDM and MAM. Encryption, identity, and authorization policies to secure corporate files and email across phones, tablets, and PCs.

7 Security reports, audit reports, multi-factor authentication Self-service password reset and group management Single sign-on to over 2,400 popular SaaS applications Information protection Document trackingBring your own key Mobile device settings management Mobile application management with Office mobile apps Conditional access and selective wipe Enterprise Mobility Suite Active Directory Premium Rights Management

8 Self-service Single sign on Itproceedx.com Username On-premises Simple connection Azure Active Directory ITProceedx.onmicrosoft.com Public Cloud Office 365 Intune RMS Azure ITProceedx.local Windows Server Active Directory

9 Demo Pre-requisites Azure Subscription Legacy AD Buy a new Public Domain Next Steps Create Azure Active Directory Premium Add a Custom Domain to improve SSO Experience Integration with Local Active Directory Customize Branding Assign EMS Licenses

10 Phone callMobile appSingle-use codes SMS “ ” cloudOn-premises

11 Mobile application management PC managementMobile device management IT User Microsoft Intune Intune helps organizations provide their employees with access to corporate applications, data, and resources from virtually anywhere on almost any device, while helping to keep corporate information secure.

12 Enroll Provide a self-service Company Portal for users to enroll devices Deliver custom terms and conditions at enrollment Bulk enroll devices using Apple Configurator or service account Restrict access to Exchange email if a device is not enrolled Retire Revoke access to corporate resources Perform selective wipe Audit lost and stolen devices Provision Deploy certificates, email, VPN, and WiFi profiles Deploy device security policy settings Install mandatory apps Deploy app restriction policies Deploy data protection policies Manage and Protect Restrict access to corporate resources if policies are violated (e.g., jailbroken device) Protect corporate data by restricting actions such as copy, cut, paste, and save as between Intune-managed apps and personal apps Report on device and app compliance User IT

13 ConfigMgr integrated with Intune (hybrid)Intune standalone (cloud only) Mobile devices and PCs Intune web console System Center Configuration Manager Mobile devicesDomain joined PCs Configuration Manager console IoT/Kiosk devices

14 Demo Enable Workplace Join & auto Enrolment with Microsoft Intune Set Mobile Management Authority – Intune Cloud Only Available Mobile Platforms Setup iOS Devices - Apple Push Notification Certificate

15 SharePoint Online Exchange Online User Microsoft Intune IT SharePoint Online Exchange Online User Microsoft Intune IT

16 Demo Configure a Compliance Policy Enable Conditional Access Enroll a device with conditional Access – (optional)

17 MANAGED MOBILE PRODUCTIVITY Managed apps Personal apps Managed apps Corporate data Personal data Multi-identity policy Personal apps Managed apps Copy Paste Save Save to personal storage Paste to personal app Email attachment

18 Personal apps Managed apps Perform selective wipe via self- service company portal or admin console Remove managed apps and data Keep personal apps and data intact IT

19 Demo Selective Wipe (Optional)

20 Data protection at the file layer Document tracking Access control Data encryption Share internallyShare externally z On any device Authentication and collaboration

21 Vendor 2 Azure Rights Management ! Sender Vendor Username Password john@vendor.com Username Password sarah@vendor.com

22 Sharing documents securely Use Microsoft Azure RMS to securely share documents with colleagues and business partners

23 Getting email notifications for document use alice@contoso.com; alice@contoso.com opened RMS blog post – Aug2014.docx.pdf alice@contoso.com was denied access to BudgetWithCharts.xlsx.pdf alice@contoso.com was denied access to BudgetwithCharts.xlsx.pdf

24 Demo Prerequisites RMS1 Computer with Office RMS2 Computer with Office Next Steps Data Encription Access Control Tracking Print Screen

25

26

27 Belgiums’ biggest IT PRO Conference


Download ppt "Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr."

Similar presentations


Ads by Google