Skip to main content
Microsoft

Microsoft Intune

Cloud-native Mobile Device Management and Mobile Application Management for Windows, macOS, iOS and Android — strategic successor to SCCM.

Overview

Microsoft Intune in practice

Microsoft Intune manages Windows, macOS, iOS and Android devices from one console and supplies the compliance signals on which Conditional Access bases its access decisions. For organisations with an existing Configuration Manager, the route rarely runs through a cut-over date but through co-management: both systems manage the same devices while responsibility shifts step by step.

Microsoft distinguishes seven workloads here — compliance policies, Windows Update policies, resource access, Endpoint Protection, device configuration, Microsoft 365 Apps and client apps — each of which can be switched separately. Resource access has not been supported in Configuration Manager since version 2203 and sits with Intune anyway. Most teams begin with compliance policies, because that switch can be reversed.

Further building blocks are Autopilot for provisioning without a technician on site, app protection policies for personal devices without full enrolment, and Endpoint Privilege Management as a replacement for permanent local administrator rights. Alendris migrates Configuration Manager estates workload by workload, in short reversible steps.