Presentation is loading. Please wait.

Presentation is loading. Please wait.

5/29/2018 12:04 PM BRK3012 Secure access to Office 365, SaaS and on-premises apps with Microsoft Enterprise Mobility + Security Caleb Baker @caleb_b Principal.

Similar presentations


Presentation on theme: "5/29/2018 12:04 PM BRK3012 Secure access to Office 365, SaaS and on-premises apps with Microsoft Enterprise Mobility + Security Caleb Baker @caleb_b Principal."— Presentation transcript:

1 5/29/ :04 PM BRK3012 Secure access to Office 365, SaaS and on-premises apps with Microsoft Enterprise Mobility + Security Caleb Principal Program Manager, AAD Chris Green @chrisgtech Principal Program Manager, Intune © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

2 Is the new control plane
5/29/ :04 PM Identity Is the new control plane On-premises / Private cloud © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION. 2

3 Conditional Access Policy Conditions Policy Controls Applications
5/29/ :04 PM Conditional Access Policy Conditions Policy Controls Applications Microsoft Cloud 3rd Party SaaS Apps On Premises Apps Microsoft Azure User identity Group membership Session Risk Access Control Azure AD Identity Protection Service User Allow sign-in Block sign-in OS Platform Is Compliant / Domain joined Is lost or stolen Device Risk Enforce MFA Device Windows Defender Terms of Use Partners Session Restrictions Mobile or Cloud app Per app policy Restrict download App IP range Country / Region Disable print Location Prevent data leak © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

4 Deployment Guidance Aka.ms/m365docs
5/29/ :04 PM Deployment Guidance Aka.ms/m365docs Increased access requirements and control of data MFA Managed app and device MFA on low risk Managed app or device MFA on medium risk Managed app or device Baseline protection Sensitive protection Highly regulated © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

5 Policy composition 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

6 Policy composition 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

7 Policy composition 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

8 Policy composition 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

9 Protecting all authentication protocols
5/29/ :04 PM Protecting all authentication protocols Conditional access applies to Browser access Apps using modern auth Special integration to work with Exchange Active Sync Currently not covered Auth protocols used by pre-modern auth Office clients Mail clients using SMTP / IMAP / EWS Options for older protocols Block at AD FS Block at SharePoint Learn more at : © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

10 Access for trusted devices and mobile apps
5/29/ :04 PM Access for trusted devices and mobile apps © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

11 Trusted mobile devices and mobile apps
5/29/ :04 PM Trusted mobile devices and mobile apps Intune Mobile Device Management Intune Mobile App Management App protection policies (APP) App wipe App configuration App deployment self-service Device policies Device inventory Device wipe App push Device configuration (certs; VPN) IT IT Intune in Azure Portal Intune in Azure Portal Intune MAM apps Mobile devices and PCs Mobile devices © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

12 Conditional Access at US Bank
5/29/ :04 PM Conditional Access at US Bank Manoj Sood Assistant Vice President | Mobility Solutions Architect © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

13 US Bank - background Environment Migration to Office 365 with EMS
70K employees 10K mobile users 12K mobile devices managed by Intune Migration to Office 365 with EMS Migration to Exchange Online and EMS started in Nov 2016 and went to 90% in July 2017 OneDrive for Business and SharePoint Online just started Within next 6 months: MS Teams, Yammer, Delve, Outlook Groups, App Proxy

14 Conditional Access Policies
Allow approved users access to O365 service and Azure AD Application Proxy (Intranet) resources using approved application from approved locations. Implemented Trusted sites EXO-1 Block All User Extrnl Browser Access: No access by any user with a browser from outside our network. EXO-2 Block Non-Mobile User Extrnl Mob apps: No access to un-approved users with mobile and desktop applications from outside out network. EXO-3 Allow Mobile User on Mob apps: Allow access to approved users (via AD group) on compliant iOS/Android devices using mobile and desktop applications from any location. EXO-4 BLOCK Mobile User Extrnl All OS x/iOS Android: No access to approved users on any OS except iOS/Android from outside our network using mobile and desktop applications. Replicate EXO rules for SPO, Yammer, Microsoft Teams, Delve, Outlook Groups

15 What we learned CA rules have great flexibility but this can increase complexity. Therefore, study rules carefully and fully test consequences in test environment before moving to Prod. CA rules default to open access

16 Summary Conditional access offers a lot of power
5/29/ :04 PM Summary Conditional access offers a lot of power This also brings some complexity Common deployment pattern © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

17 Conditional Access for macOS
5/29/ :04 PM Conditional Access for macOS New macOS Company Portal Application Support for Safari and Chrome Outlook, Word, Excel, PowerPoint, OneNote, Teams Intune compliance policy authoring © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

18 Demo Conditional access for macOS 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

19 Conditional access from Intune managed devices
5/29/ :04 PM Conditional access from Intune managed devices SharePoint Online 7 Client signs in; Azure AD performs a redirect to Intune Client is directed to install the Intune company portal Device begins enrollment via company portal Device enrolls in Intune and is registered in AAD Device management and compliance status is set in AAD AAD issues direct access token Client accesses service with direct access token Data is delivered to client 8 Company Portal Step 1: Enroll device 2 6 Intune Azure Active Directory 1 3 Device object device id isManaged MDMStatus Unified Enrollment 5 4 Microsoft Cloud © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

20 EMS + Jamf Mac device compliance for EMS conditional access
Available later this year (2017) Contact your Intune rep 1. Mac is managed by Jamf Pro 3. Jamf sends macOS device inventory to Intune 7. Allow access from compliant devices Intune Azure AD 8. Block access from noncompliant devices 2. Mac is registered with Intune Microsoft EMS 4. Intune evaluates compliance 5. Generates compliance report 6. Azure AD enforces Conditional Access 9. User-friendly remediation experience provided by Intune and Jamf

21 Containing data after it has been accessed
5/29/ :04 PM Containing data after it has been accessed Personal apps Managed apps Personal apps Managed apps Protect corp data IT Corporate data Personal data Monitor and restrict activity Control sharing and downloading via mobile app via browser © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

22 Conditional Access for Intune App Protection on iOS/Android
5/29/ :04 PM Conditional Access for Intune App Protection on iOS/Android Outlook for iOS/Android Stateless Protocol Translator (Azure) Exchange Online 7 8 Client signs in; Azure AD authenticates user and device Client is redirected to app store to install broker app Broker app is installed Device is registered in AAD Broker requests token based on Client ID AAD issues direct access token via Broker Client accesses service with direct access token Direct access token is passed through to Exchange Online to retrieve mailbox data Data is delivered to client 9 2 App Store / Google Play Step 1: Install Microsoft Authenticator / Company Portal 6 Azure Active Directory Intune 1 Policy Approved Client IDs 3 4 Broker App 5 Microsoft Cloud © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

23 Hybrid environments 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

24 Co-management with Configuration Manager and Intune
5/29/ :04 PM Co-management with Configuration Manager and Intune AD + ConfigrMgr Software Distribution Patching Conditional Access EMS (Intune & Azure AD) On-premises Cloud Traditional Management Modern Management © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

25 Managed by ConfigMgr and Intune Windows 10 personal and other devices
5/29/ :04 PM Azure AD Azure AD Azure AD Windows 10 work devices AD Domain Joined Hybrid Azure AD Joined Azure AD Joined Managed by ConfigMgr Managed by ConfigMgr and Intune (co-management) Managed by Intune AD Azure Windows 10 personal and other devices Conditional Access Azure AD Registered Managed by Intune © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

26 Better together – App Proxy and Managed Browser
5/29/ :04 PM Better together – App Proxy and Managed Browser Secure and seamless access to web apps from anywhere Intune App Protection policies and the Managed Browser make sure that links in work, even outside of the network MyApps and Managed Browser make it easy for end users to find apps © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

27 Demo Intune Managed Browser and Azure AD App Proxy 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

28 Application Proxy and Managed Browser flow
5/29/ :04 PM Application Proxy and Managed Browser flow Configuration Intune Azure Active Directory 1. App configuration for Managed Browser 2. App protection policies for Managed Browser and other mobile apps 1. Publish apps via Application Proxy 2. Create CA policy to require approved apps for browser Access Azure Active Directory App Proxy routes the request to on-premises app 6 MB maps internal to external URL connector 5 User accesses Managed Browser retrieves URL mapping for user from Azure AD 4 3 Connections are protected with Azure AD (conditional access, MFA, etc.) Azure or 3rd Party IaaS Microsoft Intune User launches Intune Managed Browser (MB) MB retrieves App Protection policy 1 2 © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

29 VPN and Azure AD conditional access
5/29/ :04 PM VPN and Azure AD conditional access 1 Auth to AAD Cert issued Cert used to auth to VPN Server VPN auth to RADIUS Server 2 3 Internet Intranet 4 VPN Server 5 RADIUS Server © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

30 Outlook Mobile and Exchange Hybrid
5/29/ :04 PM Outlook Mobile and Exchange Hybrid Exchange Online Outlook Device API REST Stateless protocol translator (Azure) Exchange Server Data cache EAS Office 365 mailboxes On-premises and third-party mailbox data is cached in Office 365 EAS is the protocol used to synchronize on-premises mailbox data to Exchange Online Benefits Outlook can take advantage of Exchange Online features that are not available on-premises (e.g., Focused Inbox) Enables Intune App Protection and Conditional Access support © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

31 5/29/ :04 PM Terms of Use © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

32 New feature - Terms of use
5/29/ :04 PM New feature - Terms of use Require, configure, enforce, and audit Require a user to view and consent to a terms of use before getting access to an application. ​ Configure a terms of use by uploading a PDF document Targeted to users & applications, leveraging conditional access​ If a user in scope of this control, they will only be have access to the application if they have agreed to the terms presented. Audit events show who consented / what TOU / when Create a ToU Enforce at Sign-In Users consent Review audit reports © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

33 5/29/ :04 PM Custom Controls © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

34 Azure Active Directory New MFA partners

35 How they work – For the IT Pro
5/29/ :04 PM How they work – For the IT Pro Supply JSON to register the control Configure conditional access policy Sign in © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

36 How they work – For the partner
5/29/ :04 PM How they work – For the partner The OpenID Connect protocol is used to communicate with partner controls U P Verify token Do something at external site Issue token to AAD Issue AAD token to site Policy evaluation © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

37 Beyond sign in Controlling session and data access
5/29/ :04 PM Beyond sign in Controlling session and data access © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

38 Session controls Conditional access isn’t just a binary allow / block
5/29/ :04 PM Session controls Conditional access isn’t just a binary allow / block Different levels of access in a session enable better security and productivity © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

39 SharePoint limited access
5/29/ :04 PM SharePoint limited access © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

40 Microsoft Cloud App Security
5/29/ :04 PM Microsoft Cloud App Security Control content and access within SaaS apps Enforce using the Cloud App Security proxy © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

41 Demo Cloud App Security restricted access 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

42 Azure Information Protection
5/29/ :04 PM Azure Information Protection Use cases with conditional access Require MFA to access documents Require compliant device to access documents Combine 1 & 2 with risk or location conditions © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

43 Location condition updates
5/29/ :04 PM Location condition updates © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

44 Use Cases MFA user when outside of their office
5/29/ :04 PM Use Cases MFA user when outside of their office MFA when a user is outside of their country Block users from specific countries or IP addresses © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

45 Demo Named Locations 5/29/2018 12:04 PM
© Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

46 FastTrack for Microsoft 365
5/29/ :04 PM FastTrack.microsoft.com FastTrack for Microsoft 365 Move to the cloud with confidence Faster Deployment Migrate , content, and light up Microsoft 365 services Deploy and securely manage devices Enable your business and gain end-user adoption Delivered by Microsoft engineers as part of your subscription Tight integration with qualified partners for additional services Maximized ROI Higher Adoption © Microsoft Corporation. All rights reserved.

47 Identity @ Ignite | Monday
5/29/ :04 PM Ignite | Monday BRK3020 What's new and upcoming in AD FS to securely sign-in your users to Office 365 and other applications OCCC W307 Monday 4:00–5:15 Sam Devasahayam Ignite | Tuesday BRK2019 Productivity and protection for your employees, partners, and customers with Azure Active Directory OCCC Valencia W415 AB Tue 9:00–10:15 Alex Simons Nasos Kladakis THR2072 Migrate your apps from legacy APIs to Microsoft Graph OCCC South – Expo Theater #6 Tue 11:35-11:55 Jeff Sakowicz, Dan Kershaw BRK2017 Saying goodbye to passwords OCCC W240 Tue 12:45-1:30 THR2071 Managing enterprise applications, permissions, and consent in Azure Active Directory OCCC West Building Theater - Level 2 Tue 2:10–2:30 Jeff Sakowicz BRK1051 Locking down access to the Azure Cloud using SSO, Roles Based Access Control, and Conditional Access Tue 2:15–3:30 Stuart Kwan © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

48 Identity @ Ignite | Wednesday
5/29/ :04 PM Ignite | Wednesday BRK3388 Build applications to secure and manage your enterprise using Microsoft Graph OCCC S210 Wed 09:00-09:45 Jeff Sakowicz, Dan Kershaw BRK3225 Office development: Authentication demystified OCCC W315 Wed 10:45–12:00 Vittorio Bertocci BRK3146 The power of common identity across any cloud OCCC West Hall F3-4 Wed 12:45-1:30 Sam Devasahayam THR2126 Azure Active Directory: Your options explained from AD sync to pass through authentication & more MS Studio CE OCCC West MS Ignite Studios Theater Wed 1:35-1:55 Alex Simons Simon May   BRK3352 Windows devices in Azure Active Directory: Why should I care? OCCC S331 Wed 2:15–3:30 Jairo Cadena BRK3040 Deliver management and security at scale to Office 365 with Azure Active Directory Hyatt Plaza International H Wed 3:15-4:00 Brjann Brekkan BRK3295 What’s new in Azure Active Directory Domain Services Hyatt Plaza International I-K Wed 4:00–5:15 Mahesh Unnikrishnan BRK3016 Shut the door to cybercrime with Azure Active Directory risk-based identity protection OCCC Chapin Theater W320 Alex Weinert Nitika Gupta © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

49 Identity @ Ignite | Thursday
5/29/ :04 PM Ignite | Thursday BRK2018 Share corporate resources with your partners using Azure Active Directory B2B collaboration OCCC W208 AB Thu 9:00–10:15 Mary Lynch Sarat Subramaniam Laith Al Shamri BRK3207 The keys to the cloud: Use Microsoft identities to sign in and access API from your mobile+web apps OCCC S310 Thu 10:45-12:00 Vittorio Bertocci BRK3012 Secure access to Office 365, SaaS and on-premises apps with Microsoft Enterprise Mobility + Security OCCC Valencia W415 AB Caleb Baker Chris Green BRK3013 Ensure users have the right access with Azure Active Directory Thu 12:30–1:45 Joseph Dadzie Mark Wahl BRK3015 Deep-dive: Azure Active Directory Authentication and Single-Sign-On OCCC W414 Thu 2:15-3:30 John Craddock BRK3014 Azure Active Directory best practices from around the world Thu 4:00–5:15 Tarek Dawoud Mark Morowczynski Ignite | Friday BRK2276 Modernize your customer identity management with Azure Active Directory B2C OCCC West Hall F3-4 Friday 9:00-9:45 Saeed Akhter © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

50 Ignite 2017 Intune/ConfigMgr sessions
5/29/ :04 PM *Locations are subject to change. Please check Ignite Scheduling Tool prior to session time Ignite 2017 Intune/ConfigMgr sessions Code Day Time Title BRK3057 Tuesday 9:00 AM - 10:15 AM Overview: Modern Windows 10 and Office ProPlus management with EMS BRK3075 10:45 AM - 12:00 PM Modernize deployment and servicing of Windows 10 and Office ProPlus with EMS BRK2015 Wednesday Mobile device and app management overview with Microsoft Intune BRK3009 4:00 PM - 5:15 PM System Center Configuration Manager overview and roadmap BRK3011 Thursday Manage and secure Android, iOS and MacOS devices and apps with Microsoft Intune BRK3076 Transition to cloud-based management of Windows 10 and Office ProPlus with EMS BRK3012 Secure access to Office365, SaaS and on-prem apps with Microsoft EMS BRK2079 12:30 PM - 1:45 PM Secure Windows 10 with Intune, Azure AD and System Center Configuration Manager BRK3119 2:15 PM - 3:30 PM Learn how to use Intune with the new admin console and Microsoft Graph API BRK3059 Friday 10:15 AM - 11:00 AM Manage and protect Office 365 mobile apps with Microsoft Intune BRK3010 Conduct a successful pilot deployment of Microsoft Intune © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

51 Check out other great EMS sessions
5/29/ :04 PM Deployment for EMS & Microsoft 365 Microsoft Cloud App Security Azure Information Protection Azure Active Directory Microsoft Advanced Threat Analytics Microsoft Intune Download the Ignite app Windows iOS Android © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

52 Please evaluate this session
Tech Ready 15 5/29/2018 Please evaluate this session From your Please expand notes window at bottom of slide and read. Then Delete this text box. PC or tablet: visit MyIgnite Phone: download and use the Microsoft Ignite mobile app Your input is important! © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

53 5/29/ :04 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.


Download ppt "5/29/2018 12:04 PM BRK3012 Secure access to Office 365, SaaS and on-premises apps with Microsoft Enterprise Mobility + Security Caleb Baker @caleb_b Principal."

Similar presentations


Ads by Google