Build 2015 4/16/2017 © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION.

Slides:



Advertisements
Similar presentations
Mobile Device Management Intune-Configmanager CHANDAN BHARTI PREMIER FIELD ENGINEER-MICROSOFT.
Advertisements

Azure AD & Office Logon with Username / Password 2. MFA challenge 3. Reply to MFA challenge -1-way or 2-way SMS -Phone call -Mobile Application.
Windows 8.1 Device Management With Windows Intune Mark O’Shea MVP Windows Expert – IT Pro 30 June 2014.
Managing and Securing Devices using Exchange, System Center, and Intune LAWRENCE NOVAK MICHAEL INDENCE DMVMUG Reston, VA
iOS & other Android devices KNOX EMM (Client) Cloud Service Active Directory integration (Optional) Mobile Device & App Management MDM IAM Samsung Device.
SharePoint Server Exchange Server CORPORATE NETWORK Mobile devices PCs Browsers INTERNET DMZ Active Directory Policies Filter EAS Filter web access.
Script Kiddies; CybercrimeCyber-espionage; Cyber-warfare CybercriminalsState sponsored actions; Unlimited resources Attacks on fortune 500All sectors.
Microsoft Ignite /16/2017 3:58 PM
Microsoft Ignite /16/2017 3:59 PM
Management lifecycle summary Mobile Device Management with Windows Intune or 3 rd Party tools Simplified and flexible device enrollment, using.
GREATER THAN EVER. TODAY, RISK OF DATA FALLING IN THE WRONG HANDS IS QUITE OFTEN THIS RISK IS NOT FROM EXTERNAL ATTACKERS. IT COMES FROM WITHIN.
Devices and Deployment Management & Security Identity Cloud.
Data Devices People 6.5B Wireless connections today >42% of global population owns smartphone by end of 2015 >50% User will go to tablet or smartphone.
Sessions about to start – Get your rig on!. Ash de Zylva.
Protect your data Enable your users Unify Your Environment DevicesAppsData Help organizations enable their users to be productive on the devices they.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Desktop virtualization Access & information protection Mobile device & application management Hybrid identity Simplified device enrollment and.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Managing BYOD Legal IT’s Next Great Challenge. Agenda  The BYOD Trend – benefits and risks  Best practices for managing mobile device usage  Overview.
 background and intro  client deployment  system Architecture and server deployment  behind the scenes  data protection and security  multi-server.
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Windows Phone 8 device and app management Alan Meeus Sr. Technical Product Manager Windows Phone Division Microsoft Corporation WPH205.
Exchange Exchange Connecter with Configuration Manager Configuration Manager with Intune Protect and Manage Devices and Infrastructure.
Lack of control for mobile devices Different tools for phone & PC Policy conflict Inconsistent user experience… Granular mobile device mgmt Converged.
Nick Randolph: Built To Roam Dave Glover: Microsoft.
 background and intro  client deployment  system Architecture and server deployment  behind the scenes  data protection and security  multi-server.
Enabling users to be productive, responsibly Finding the right balance Devices & Experiences Users Want Applications and data across devices, anywhere.
Microsoft Ignite /25/2017 9:57 AM
Get identities to the cloud Mix on-premises and cloud identity for improved PC, mobile, and web productivity Cloud identities help you run your business.
James Lewis and Simon Waight Office 365 security: everywhere you need it to be PRD33 1.
Configuration Manager and InTune Gemeinsam oder einsam?
Pat Fetty – Principal PM Manager Securing your mobile assets with Microsoft Intune WIN33 1.
Craig Pringle & Derek Moir
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
Tomaž Čebul Principal Consultant Microsoft Bring Your Own Device, kaj pa je to?
Enabling the Modern Workstyle with Windows 10 & Azure Active Directory Venkatesh Gopalakrishnan 2016 Redmond Summit | Identity Without Boundaries May 25,
Productivity Architect Meet Chris Bortlik Author, Blogger, Speaker.
Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.
Office 365 Upsell Paths.
Phase 4: Manage Deployment
Changing Apps for a changing world
Conduct a successful pilot deployment of Microsoft Intune
Mobile Data Solutions Inc
Cloud-First, Modern Windows Management and Security
Exam Prep : Section 2: Design for Device Access and Protection
Windows 10 and the cloud: Why the future needs hybrid solutions
Azure AD for the client management guy (or gal!)
Mobile Device Management options in Office 365 and beyond
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Welcome to Salem State University
Microsoft /1/2018 5:38 PM Send secure to anyone with the power of Office 365 and  Azure Information Protection Gagan Gulati Ian Hameroff.
Protect sensitive information with Office 365 DLP
Wait, Microsoft is in the Security Game?
Windows 10 & Intune: A Modern Desktop Management Story Joe Crandall.
New modern management features for IT pros
Enable external sharing and collaboration with OneDrive and SharePoint
Simplified for business
9/14/2018 2:22 AM THR2026 Set up secure and efficient collaboration for your organization with Office 365 Joe Davies Senior Content Developer Brenda Carter.
Microsoft Intune MAM without Device Enrollment
Introduction to Soonr by ….
SVTRAININGS. SVTRAININGS Features of SCCM  Application management  Provides a set of tools and resources that can help you create, manage, deploy, and.
Protect your OneDrive and SharePoint files on mobile devices
Windows 10 and Office 365, better together – the reunion
Microsoft Ignite /20/2018 2:21 PM
Office 365 MDM On the field experience
11/27/ :16 AM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Encryption in Office 365 Shobhit Sahay Technical Product Manager
Microsoft Ignite NZ October 2016 SKYCITY, Auckland
MDM Migration Analysis Tool (MMAT)
Microsoft 365 Business Technical Fundamentals Series
Presentation transcript:

Build 2015 4/16/2017 © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Managing Mobile Devices and Applications in an Enterprise Build 2014 4/16/2017 3-654 Managing Mobile Devices and Applications in an Enterprise Janani Vasudevan Senior Program Manager Twitter: @jananivasudevan © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows 10 : Managing Mobile Devices and Applications in an Enterprise Build 2014 4/16/2017 Janani Vasudevan Senior Program Manager Twitter: @jananivasudevan Windows 10 : Managing Mobile Devices and Applications in an Enterprise Session code: 3-654 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Managing Windows devices Microsoft Ignite 2015 4/16/2017 5:05 PM Managing Windows devices Challenges today With Windows 10 Lack of control for mobile devices Granular mobile device mgmt Different tools for phone & PC Converged admin controls Policy conflict Automatic policy resolution Inconsistent user experience… …not anymore Windows 10 makes management easy © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Management options – Windows 10 Microsoft Ignite 2015 4/16/2017 5:05 PM Management options – Windows 10 IDENTITY Active Directory Azure Active Directory GROUPING Domain join | Workgroup Azure AD join MANAGEMENT Group policy New GPOs | AGPM scripting ConfigMgr MDM policies via WMI bridge MDM New configuration | Initial provisioning Exchange Active Sync Powershell | WMI © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Go ahead. Pick any configuration tool. Microsoft Ignite 2015 4/16/2017 5:05 PM Go ahead. Pick any configuration tool. MDM Configuration Service Providers (CSP) Device WMI provider Common component PC component Common Device Configurator EAS Client MDM Client Service/Server Provisioning Engine WMI Bridge EAS Provisioning MDM ConfigMgr © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

The story of an employee in your company Build 2015 4/16/2017 5:05 PM The story of an employee in your company © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows 10 makes it easy to enroll Microsoft Ignite 2015 4/16/2017 5:05 PM Windows 10 makes it easy to enroll Easy enroll © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

A single experience across all Windows devices Microsoft Ignite 2015 4/16/2017 5:05 PM NOT FINAL UI A single experience across all Windows devices © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Demo: Enrollment Microsoft Ignite 2015 4/16/2017 5:05 PM © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows 10 gives you more enroll options Build 2015 4/16/2017 5:05 PM Windows 10 gives you more enroll options Password Sign in to your work or school account Sign in Cancel Privacy statement Forgot your password? If your organization uses Office 365 or other business services from Microsoft, use the same user name and password to sign in here. What account should I use? |someone@example.com Work or school account Contoso Corp Auto MDM enroll with Azure AD AAD join: Company owned Add AAD account: Personally owned Bulk enrollment simplifying IT setup Allow this PC to be managed ? Accept Cancel Contoso requires this PC to be managed before it can access org resources. What you get on this PC: Email, Calendar, Contacts OneDrive for Business Access to company apps How this PC is controlled by Contoso: Enforce PIN lock Partial device wipe Enforce password policy Monitor device location Questions? Contact Contoso IT Help Desk at (206) 555-1234. Curious to know how Microsoft IT has adopted AAD? See Microsoft Ignite session by Laura Hunter | May 8 | 12.30 [Link] Need more info? See Microsoft Ignite session on “Provisioning Windows 10 Devices with New Tools” by Vladimir Holostov [Link] © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows 10 makes it easy to provide “secure“ productivity Microsoft Ignite 2015 4/16/2017 5:05 PM Windows 10 makes it easy to provide “secure“ productivity Easy enroll Secure device, data & access © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

A step in the right direction – Windows 8.1 Microsoft Ignite 2015 4/16/2017 5:05 PM A step in the right direction – Windows 8.1 Security policies Email profiles [Now on PC] Remote lock Remote wipe [Now on PC] and all that goodness… Want a recap of Windows/Phone 8.1 MDM features? Watch //BUILD 2014 session by Katharine Holdsworth on Channel9 here © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

You have more policies for granular control Microsoft Ignite 2015 4/16/2017 5:05 PM You have more policies for granular control Security Connectivity Experience Microsoft Passport PIN policies Firewall & Defender Block sharing internet via Wifi Auto connect VPN Cortana Theme background & color Hardware System Email Camera policies Bluetooth Sync settings Telemetry & flighting Exchange Active Sync policies Email profiles configuration This is only a sample list…there are over 100 new policies! Need more info on Microsoft Passport? See Microsoft Ignite session on “Secure authentication with Windows Hello” by Nelly Porter [Link] © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Demo: Policy configuration Microsoft Ignite 2015 4/16/2017 5:05 PM Demo: Policy configuration © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Certificate management has never been easier Microsoft Ignite 2015 4/16/2017 5:05 PM Certificate management has never been easier MDM server Get a cert SCEP server Cert please? Available now in 8.1 SCEP (TPM or software) Added in Windows 10 Install certificate directly “Microsoft Passport” certificates “Certificates” app available now View certificates on phone MDM server Here’s your cert! © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Better VPN management Auto connect VPN VPN traffic filters Microsoft Ignite 2015 4/16/2017 5:05 PM Better VPN management Auto connect VPN VPN traffic filters Application based filters Unified platform VPN: open to 3rd party plug-ins Refer to //Build video session on “Secure Enterprise Network Access and VPN” by Aman Arneja for more info © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Need access? Prove you’re healthy Microsoft Ignite 2015 4/16/2017 5:05 PM Need access? Prove you’re healthy Access please 1 2 Prove to me you are healthy MDM & Windows Attestation Service Here is my proof 5 Approved 4 Company resources Documents Email 3 Request Access please 1 2 You’re in Company resources Documents Email MDM evaluates compliance Device health attestation state Windows health attestation service Refer session @ Microsoft Ignite on “Securing Access to Microsoft Exchange and SharePoint Online services with Microsoft Intune“ by Dilip Radhakrishnan & Chris Green © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

You can now manage device updates Build 2015 4/16/2017 5:05 PM You can now manage device updates Control when & how Scan & download Approval for auto install Choose your source Microsoft Update Company update server (WSUS) Update compliance © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Company data stays separate & secure Build 2015 4/16/2017 5:05 PM Company data stays separate & secure © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Company data stays separate & secure Build 2015 4/16/2017 5:05 PM Company data stays separate & secure for business personal “Enterprise data protection” User friendly work-personal separation Manage what data is “Enterprise” Audit intentional data disclosure Data exchange is blocked or audited Business Apps & Data Managed Personal Apps & Data Unmanaged Here @ //Build: “Building apps that keep work-personal data separate & secure” by Derek Adam © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Microsoft Ignite 2015 4/16/2017 5:05 PM Windows 10 makes it easy for admins to assist users & maintain consistency Easy enroll Secure device, data & access Improve user experience © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Help admins help users Assist remotely Locate device Microsoft Ignite 2015 4/16/2017 5:05 PM Help admins help users Assist remotely Locate device Enterprise data wipe or Full wipe Provide a familiar UI Start menu, tiles, lock screen Kiosk mode © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows 10 makes it easy to manage applications Microsoft Ignite 2015 4/16/2017 5:05 PM Windows 10 makes it easy to manage applications Easy enroll Secure device, data & access Improve user experience Manage applications © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Managing apps has never been so easy Build 2014 4/16/2017 Managing apps has never been so easy Common platform All-user apps Consistent side loading Device unlock – no limit, no internet Symantec or Enterprise cert Win32 (MSI) app mgmt. App restrictions by “Applocker” For more info, see session @ Microsoft Ignite on “Windows 10 Universal App Deployment for Enterprises” by John Vintzel © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Acquire store apps through Business Store Build 2015 4/16/2017 5:05 PM Acquire store apps through Business Store Licensing apps in bulk Free and Paid apps Flexible distribution models Azure AD for store Windows app license mgmt Need info? See session @ Microsoft Ignite on “Using the Business Store Portal with Windows 10 Devices” by Tejas Patel © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows 10 makes it easy to unenroll Microsoft Ignite 2015 4/16/2017 5:05 PM Windows 10 makes it easy to unenroll Easy enroll Secure device, data & access Improve user experience Manage applications Easy unenroll © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Remove all enterprise data with a single action Microsoft Ignite 2015 4/16/2017 5:05 PM Remove all enterprise data with a single action Smarter asset removal Certificates, VPN, Wifi, Email profiles Policies Application & App data “Enterprise data protection” data Either admins or users can unenroll Admins control if users can unenroll Server notified on user unenroll Consistent experience © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

THANK YOU Microsoft Ignite 2015 4/16/2017 5:05 PM © 2015 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Next Steps Evaluate Windows 10 insider preview builds http://aka.ms/apf9wk Talk to your MDM server vendor about Windows 10 support Develop Windows applications for your Enterprise needs Let us know your feedback! http://windows.uservoice.com

Resources! Related sessions here @ \\Build 4/16/2017 Resources! Related sessions here @ \\Build 639 | April 29 | 15.30 | Anoosh Saboori & Mike Stephens | Microsoft Passport & Windows Hello 662 | April 30 | 11:30 | Derek Adam | Enterprise Data Protection [VIDEO SESSION] Aman Arneja | Secure Enterprise Network Access and VPN platform enhancements Sessions @ Microsoft Ignite (video recording available online) May 6 | 13:30 | John Vintzel | Windows 10 Universal App Deployment for Enterprises [Link] May 6 | 13:30 | Jason Githens | Managing Windows 10 with Microsoft Intune and SCCM [Link] May 7 | 10:45 | Vladimir Holostov | Provisioning Windows 10 Devices with New Tools [Link] May 7 | 13:30 | Tejas Patel | Using the Business Store Portal with Windows 10 Devices [Link] May 7 | 13:30 | Yogesh Mehta | Protecting your data with containers without boxing yourself in [Link] Windows 10 MDM documentation ONLINE http://aka.ms/kw2vwj © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.