Categories
Modern Desktop AdministratorManaging Modern Desktops
Exam MD-101
Course MD-101T00-A: Managing Modern Desktops
This exam is for the Modern Desktop Administrator role and the Microsoft 365 Certified: Modern Desktop Administrator Associate certification. Candidates for this exam are Administrators who deploy, configure, secure, manage, and monitor devices and client applications in an enterprise environment. Candidates manage identity, access, policies, updates, and apps. As an Administrator, candidates typically collaborate with a Microsoft 365 Enterprise Administrator to design and implement a device strategy that meets the business needs of a modern organization. Candidates must be familiar with Microsoft 365 workloads and must be proficient and experienced in deploying, configuring, and maintaining Windows 10 and non-Windows devices and technologies.
About this course
In this course, students will learn how to plan and implement an operating system deployment strategy using modern deployment methods, as well as how to implement an update strategy. Students will be introduced to key components of modern management and co-management strategies. This course also covers what it takes to incorporate Microsoft Intune into your organization. Students will also learn about methods for deployment and management of apps and browser-based applications. Students will be introduced to the key concepts of security in modern management including authentication, identities, access, and compliance policies. Students will be introduced to technologies such Azure Active Directory, Azure Information Protection and Windows Defender Advanced Threat Protection, as well as how to leverage them to protect devices and data.
Audience profile
The Modern Desktop Administrator deploys, configures, secures, manages, and monitors devices and client applications in an enterprise environment. Responsibilities include managing identity, access, policies, updates, and apps. The MDA collaborates with the M365 Enterprise Administrator to design and implement a device strategy that meets the business needs of a modern organization.
The Modern Desktop Administrator must be familiar with M365 workloads and must have strong skills and experience of deploying, configuring, and maintaining Windows 10 and non-Windows devices. The MDA role focuses on cloud services rather than on-premises management technologies.
At course completion
After completing this course, learners should be able to:
- Plan, develop, and implement an Operating System deployment, upgrade, and update strategy.
- Understand the benefits and methods of co-management strategies.
- Plan and implement device enrollment and configuration.
- Manage and deploy applications and plan a mobile application management strategy.
- Manage users and authentication using Azure AD and Active Directory DS.
- Describe and implement methods used to protect devices and data.
Prerequisites
The Modern Desktop Administrator must be familiar with M365 workloads and must have strong skills and experience of deploying, configuring, and maintaining Windows 10 and non-Windows devices. The MDA role focuses on cloud services rather than on-premises management technologies. It is recommended students complete course MD-100, Windows 10, prior to taking this course.
Exam MD-101: Managing Modern Desktops
Skills Measured
Deploy and update operating systems (35-40%)
Plan and implement Windows 10 by using dynamic deployment
evaluate and select an appropriate deployment options
pilot deployment
manage and troubleshoot provisioning packages
evaluate deployment options in Microsoft Endpoint Manager
Plan and implement Windows 10 by using Windows Autopilot
evaluate and select an appropriate deployment options
pilot deployment
create, validate, and assign deployment profile
extract device HW information to CSV file
import device HW information to cloud service
troubleshoot deployment
Upgrade devices to Windows 10
identify upgrade and downgrade paths
manage in-place upgrades
configure a Desktop Analytics environment
assess which computers can be upgraded to Windows 10
migrate user profiles
Manage updates
configure Windows 10 delivery optimization
configure Windows Update for Business
deploy Windows updates
implement feature updates
monitor Windows 10 updates
Manage device authentication
manage authentication policies
manage sign-on options
perform Azure AD join
Manage policies and profiles (25-30%)
Plan and implement co-management
implement co-management precedence
migrate group policy to MDM policies
recommend a co-management strategy
Implement conditional access and compliance policies for devices
implement conditional access policies
manage conditional access policies
plan conditional access policies
implement device compliance policies
manage device compliance policies
plan device compliance policies
Configure device profiles
implement device profiles
manage device profiles
plan device profiles
Manage user profiles
configure user profiles
configure Enterprise State Roaming in Azure AD
configure sync settings
implement Folder Redirection, including OneDrive
Manage and protect devices (20-25%)
Manage Windows Defender
implement and manage Windows Defender Application Guard
implement and manage Windows Defender Credential Guard
implement and manage Windows Defender Exploit Guard
implement Microsoft Defender Advanced Threat Protection
integrate Windows Defender Application Control
manage Windows Defender Antivirus
Manage Intune device enrollment and inventory
configure enrollment settings
configure Intune automatic enrollment
enable device enrollment
enroll non-Windows devices
enroll Windows devices
generate custom device inventory reports’ Review device inventory
Monitor devices
monitor device health (e.g., log analytics, Desktop Analytics, or other cloud-based tools,
etc.)
monitor device security
Manage apps and data (10-15%)
Deploy and update applications
assign apps to groups
deploy apps by using Intune
deploy apps by using Microsoft Store for Business
deploy O365 ProPlus
enable sideloading of apps into images
gather Office readiness data
configure and implement kiosk (assigned access) or public devices
Implement Mobile Application Management (MAM)
implement MAM policies
manage MAM policies
plan MAM
configure Windows Information Protection
implement Azure Information Protection templates
securing data by using Intune