Managing Modern Desktops

DURATION:
self-learning

Managing Modern Desktops
Exam MD-101

Course MD-101T00-A: Managing Modern Desktops

This exam is for the Modern Desktop Administrator role and the Microsoft 365 Certified: Modern Desktop Administrator Associate certification. Candidates for this exam are Administrators who deploy, configure, secure, manage, and monitor devices and client applications in an enterprise environment. Candidates manage identity, access, policies, updates, and apps. As an Administrator, candidates typically collaborate with a Microsoft 365 Enterprise Administrator to design and implement a device strategy that meets the business needs of a modern organization. Candidates must be familiar with Microsoft 365 workloads and must be proficient and experienced in deploying, configuring, and maintaining Windows 10 and non-Windows devices and technologies.

 

Overview

About this course

In this course, students will learn how to plan and implement an operating system deployment strategy using modern deployment methods, as well as how to implement an update strategy. Students will be introduced to key components of modern management and co-management strategies. This course also covers what it takes to incorporate Microsoft Intune into your organization. Students will also learn about methods for deployment and management of apps and browser-based applications. Students will be introduced to the key concepts of security in modern management including authentication, identities, access, and compliance policies. Students will be introduced to technologies such Azure Active Directory, Azure Information Protection and Windows Defender Advanced Threat Protection, as well as how to leverage them to protect devices and data.

Audience profile

The Modern Desktop Administrator deploys, configures, secures, manages, and monitors devices and client applications in an enterprise environment. Responsibilities include managing identity, access, policies, updates, and apps. The MDA collaborates with the M365 Enterprise Administrator to design and implement a device strategy that meets the business needs of a modern organization.

The Modern Desktop Administrator must be familiar with M365 workloads and must have strong skills and experience of deploying, configuring, and maintaining Windows 10 and non-Windows devices. The MDA role focuses on cloud services rather than on-premises management technologies.

At course completion

After completing this course, learners should be able to:

  • Plan, develop, and implement an Operating System deployment, upgrade, and update strategy.
  • Understand the benefits and methods of co-management strategies.
  • Plan and implement device enrollment and configuration.
  •  Manage and deploy applications and plan a mobile application management strategy.
  •  Manage users and authentication using Azure AD and Active Directory DS.
  •  Describe and implement methods used to protect devices and data.

Prerequisites

The Modern Desktop Administrator must be familiar with M365 workloads and must have strong skills and experience of deploying, configuring, and maintaining Windows 10 and non-Windows devices. The MDA role focuses on cloud services rather than on-premises management technologies. It is recommended students complete course MD-100, Windows 10, prior to taking this course.

 

 

Exam MD-101: Managing Modern Desktops
Skills Measured
Deploy and update operating systems (35-40%)
Plan and implement Windows 10 by using dynamic deployment
 evaluate and select an appropriate deployment options
 pilot deployment
 manage and troubleshoot provisioning packages
 evaluate deployment options in Microsoft Endpoint Manager
Plan and implement Windows 10 by using Windows Autopilot
 evaluate and select an appropriate deployment options
 pilot deployment
 create, validate, and assign deployment profile
 extract device HW information to CSV file
 import device HW information to cloud service
 troubleshoot deployment
Upgrade devices to Windows 10
 identify upgrade and downgrade paths
 manage in-place upgrades
 configure a Desktop Analytics environment
 assess which computers can be upgraded to Windows 10
 migrate user profiles
Manage updates
 configure Windows 10 delivery optimization
 configure Windows Update for Business
 deploy Windows updates
 implement feature updates
 monitor Windows 10 updates
Manage device authentication
 manage authentication policies
 manage sign-on options
 perform Azure AD join
Manage policies and profiles (25-30%)
Plan and implement co-management
 implement co-management precedence
 migrate group policy to MDM policies
 recommend a co-management strategy
Implement conditional access and compliance policies for devices
 implement conditional access policies
 manage conditional access policies
 plan conditional access policies
 implement device compliance policies
 manage device compliance policies
 plan device compliance policies
Configure device profiles
 implement device profiles
 manage device profiles
 plan device profiles
Manage user profiles
 configure user profiles
 configure Enterprise State Roaming in Azure AD
 configure sync settings
 implement Folder Redirection, including OneDrive
Manage and protect devices (20-25%)
Manage Windows Defender
 implement and manage Windows Defender Application Guard
 implement and manage Windows Defender Credential Guard
 implement and manage Windows Defender Exploit Guard
 implement Microsoft Defender Advanced Threat Protection
 integrate Windows Defender Application Control
 manage Windows Defender Antivirus
Manage Intune device enrollment and inventory
 configure enrollment settings
 configure Intune automatic enrollment
 enable device enrollment
 enroll non-Windows devices
 enroll Windows devices
 generate custom device inventory reports’ Review device inventory
Monitor devices
 monitor device health (e.g., log analytics, Desktop Analytics, or other cloud-based tools,
etc.)
 monitor device security
Manage apps and data (10-15%)
Deploy and update applications
 assign apps to groups
 deploy apps by using Intune
 deploy apps by using Microsoft Store for Business
 deploy O365 ProPlus
 enable sideloading of apps into images
 gather Office readiness data
 configure and implement kiosk (assigned access) or public devices
Implement Mobile Application Management (MAM)
 implement MAM policies
 manage MAM policies
 plan MAM
 configure Windows Information Protection
 implement Azure Information Protection templates
 securing data by using Intune