Our primary use case for Intune has been securing our desktops. We now also use it to secure our servers, which started about a year ago.
Senior Systems Engineer at CallTower Inc.
Its security integration offers a view into different vulnerabilities and enables us to secure them more effectively
Pros and Cons
- "Intune's integration with Defender and other security solutions is valuable because it offers a view into different security vulnerabilities and enables us to secure them more effectively."
- "I rate Intune 10 out of 10."
- "Intune's server management could be better. If it could incorporate more features from System Center into Intune's Configuration Manager, it would be beneficial."
What is our primary use case?
How has it helped my organization?
Before, we used to reactively track down issues and fix security holes. Now, we're more proactive, stopping threats before they occur rather than reactively removing them afterward. This change helps stop the spreading of security issues.
What is most valuable?
Intune's integration with Defender and other security solutions is valuable because it offers a view into different security vulnerabilities and enables us to secure them more effectively. It's easy to use. There isn't a huge learning curve. It doesn't take long to get in and figure out where everything is.
The application management feature's automatic updates help a lot, especially when we need to push updated scripts and apps to our desktops. We can update quickly instead of getting everybody to download and install it.
What needs improvement?
Intune's server management could be better. If it could incorporate more features from System Center into Intune's Configuration Manager, it would be beneficial.
Buyer's Guide
Microsoft Intune
September 2026
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
914,394 professionals have used our research since 2012.
For how long have I used the solution?
I've been using Microsoft Intune for about seven years.
What do I think about the stability of the solution?
There are no problems with Intune's stability.
What do I think about the scalability of the solution?
Scalability is great. We've had no issues scaling it across different environments, managing multiple Office 365 tenants and servers with no problems.
Which solution did I use previously and why did I switch?
We used System Center Configuration Manager before moving to Intune. It's essentially an upgrade that allows us to manage both desktops and servers.
How was the initial setup?
The initial setup had some issues, primarily with understanding scattered documentation, but it was resolved without much difficulty.
What about the implementation team?
We deployed Intune in-house with our internal IT staff.
What was our ROI?
We are saving at least two or three hours a day since implementing Intune.
What's my experience with pricing, setup cost, and licensing?
I don't have any information on pricing, setup costs, or licensing.
Which other solutions did I evaluate?
We did not evaluate other options before choosing Intune.
What other advice do I have?
I rate Intune 10 out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
MDM Analyst at a government with 5,001-10,000 employees
Significant cost savings with streamlined device management
Pros and Cons
- "Intune's most valuable feature is its centralized management capability."
- "The time we have to wait to deploy policies has room for improvement."
What is our primary use case?
Our company has consistently used Microsoft products. As the mobile device administrator, I oversaw the transition from Workspace ONE to Microsoft Intune. This decision stemmed from a desire to reduce licensing costs by leveraging existing Microsoft licenses held by all employees, ultimately leading to significant financial savings.
How has it helped my organization?
Intune consolidates endpoint and security management tools into a single platform. This centralized approach allows for specialized roles while maintaining a shared understanding of the complete security solution.
Intune's overall user experience is good.
What is most valuable?
Intune's most valuable feature is its centralized management capability.
The enterprise application management system for mobile devices is effective for app discovery, deployment, and automatic updates. The automatic update feature functions well, eliminating the need for manual updates and individual prompts, which is convenient for both administrators and users.
Intune has made things easier for us because we are using Autopilot to build our laptops.
We've saved a lot of money by moving from Workspace ONE to Microsoft Intune for mobiles.
What needs improvement?
I've recently started using Microsoft Intune, specifically its mobile device management features. While both Intune and Workspace ONE offer similar functionality, I've noticed that Workspace ONE operates in real-time, whereas Intune has a noticeable delay when deploying policies or apps. The time we have to wait to deploy policies has room for improvement.
People using Intune for Windows deployment, etcetera, can get annoyed because of the Windows updates.
For how long have I used the solution?
I have been using Microsoft Intune for three months because we've just moved over.
What do I think about the stability of the solution?
From a mobile perspective, Microsoft Intune has been stable.
What do I think about the scalability of the solution?
From a mobile perspective, Microsoft Intune is easily scalable.
How are customer service and support?
I have contacted technical support only once, and it was very helpful.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used VMware Workspace ONE previously. The decision to switch and save on costs was made by the higher-ups.
What other advice do I have?
I would rate Microsoft Intune nine out of ten.
I would definitely recommend Intune to a colleague. It provides a centralized platform for managing various devices, including laptops, desktops, and mobile devices, and seamlessly integrates with other Microsoft solutions like Azure and Active Directory.
We have a team that continuously works on solutions to make workflows smooth, like building laptops and ensuring deployments work smoothly.
Microsoft Intune is deployed across various departments and locations within our local government council. We have different physical sites and departments, and Intune is managed and implemented at the departmental level.
Our team is continuously developing solutions to streamline the laptop production workflow, including assembly, traffic management, and deployment. We also have a separate team dedicated to ensuring the process runs smoothly.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Microsoft Intune
September 2026
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
914,394 professionals have used our research since 2012.
Mobility support engineer at a consultancy with 10,001+ employees
We can implement a MAM policy and protect the devices without touching them
Pros and Cons
- "We can implement a MAM policy in this Intune and protect the device through mobile application development without touching it. The interface is easy to use and understand."
- "We had an APNS certificate set to expire last week. We tried to renew it two days before it expired. We logged in to the APNS portal but could not find that certificate. We didn't know where it went. All the iOS devices stopped working. We contacted the Apple and Microsoft teams, and each blamed the other. This is something that Microsoft should take care of. Last week, we had so many escalations from high-profile users who couldn't access corporate data on their devices."
What is our primary use case?
I work for a company that deploys all of its iOS and Android devices on Intune. It can manage company and personal mobile devices. We have 150,000 users.
How has it helped my organization?
It helps us secure hybrid work. Some users work on company devices at the company, and some use personal devices. We have set app configuration and protection policies in Intune.
When customers travel, they carry their tablets or cell phones, so they need to access corporate resources, such as emails, chats, and files. Instead of carrying their laptops, they can easily access corporate services from their tablets or mobile phones.
Intune increases productivity by 80 to 85 percent. Since adding Intune, our budget has increased. We are trying a few new things, and corporate is doing data testing. We've also had to purchase more licenses. The budget has increased, but it's worth it.
What is most valuable?
We can implement a MAM policy in this Intune and protect the device through mobile application development without touching it. The interface is easy to use and understand.
Microsoft brings all my endpoint and security tools into one place. Intune and endpoint manager are there. We can control our devices at the maximum level. I'm fully satisfied with Intune.
With the application management feature, we can manage Google Play and publish applications from there. Per user requirements, we can deploy applications to Intune and to the user machines.
What needs improvement?
We had an APNS certificate set to expire last week. We tried to renew it two days before it expired. We logged in to the APNS portal but could not find that certificate.
We didn't know where it went. All the iOS devices stopped working. We contacted the Apple and Microsoft teams, and each blamed the other. This is something that Microsoft should take care of. Last week, we had so many escalations from high-profile users who couldn't access corporate data on their devices.
For how long have I used the solution?
I have used Intune for more than two years.
What do I think about the stability of the solution?
I rate Intune 10 out of 10 for stability. We've had no issues.
What do I think about the scalability of the solution?
I rate Intune 10 out of 10 for scalability.
How are customer service and support?
I rate Microsoft support seven out of 10. When Microsoft support engineers can't resolve an issue, they refer it to the technical department, which will come back in a month. Then, you have to explain the entire issue from the start.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Before Intune, we used IBM MaaS360. Intune is more flexible. With the IBM product, we had to contact their product team to make any changes. Intune is more customizable.
How was the initial setup?
The deployment is a little complex. We previously had an on-premises data center, but we have migrated everything to the cloud in the past six months. Implementing Intune took months. We have two data centers: Bangalore and Kolkata. Migrating a lot of data was a lot of work. After deployment, it requires no maintenance.
What's my experience with pricing, setup cost, and licensing?
Intune isn't cheap, but it's fairly priced.
Which other solutions did I evaluate?
I tried the AWS but the user interface is not as good as Intune's.
What other advice do I have?
I rate Microsoft Intune eight out of 10.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Efficient endpoint management and improved visibility streamline operations
Pros and Cons
- "When a user receives the machine, sets it up, and turns it on, it connects to the domain and begins installing software, becoming ready within approximately half an hour, which represents a significant time savings for IT departments."
- "Installing software in Microsoft Intune can be challenging if it is not already prepackaged."
What is our primary use case?
Our use case for Microsoft Intune is managing end-user endpoints, specifically Windows desktops. It is not limited to Windows desktops as it can also manage Mac OS desktops, laptops, and mobile devices for both Android and Apple iOS.
In terms of needing Microsoft Intune to manage devices, first, there is a requirement that devices must be joined to an Azure domain, either hybrid joined or purely joined.
From my perspective, purely joined is really the only viable way of setting up an environment. Once devices are joined to Azure, access to Microsoft group policy is no longer available. Because group policy is not accessible in Azure, another way to manage and control devices is necessary. This alternative method uses Microsoft Intune Windows profiles.
When setting up devices using Microsoft Intune, Windows profiles can be established which perform most of the same functions that Microsoft Group Policy did in a local Windows Active Directory environment. Microsoft Intune can manage and control machines and install software. It allows for Windows provisioning on machines and enables autopilot deployment with pre-packaged installations. When a user receives the machine, sets it up, and turns it on, it connects to the domain and begins installing software, becoming ready within approximately half an hour, which represents a significant time savings for IT departments.
How has it helped my organization?
Companies using Microsoft Intune are much better at managing their endpoints with far more visibility. The endpoint inventory is far more accurate and up to date. The Windows versioning for the endpoints is much better, and Windows stays current. Companies not using Microsoft Intune still rely on manual or prior methods of updating and inventorying, which are subject to gaps and inaccurate information.
What is most valuable?
The Microsoft Intune management console provides visibility into the current status of machines and deployed software. It can automatically update components within its capability, primarily Microsoft products. Third-party software updates, such as VLC media player, are not within Microsoft Intune's update capabilities. Some companies, such as Adobe, have packaged their software to be updatable in Microsoft Intune, though this is more the exception than the rule. Installing software in Microsoft Intune can be challenging if it is not already prepackaged.
What do I think about the stability of the solution?
The stability and reliability of Microsoft Intune is good. Microsoft takes everything in, and if users stay with Microsoft, everything works together effectively.
How are customer service and support?
Microsoft support for Microsoft Intune is good. In my own use of Microsoft Intune, I did not spend significant time with support because the Microsoft documentation was adequate for our needs.
How would you rate customer service and support?
What about the implementation team?
In a prior environment, when setting up Microsoft Intune, we utilized a third party for assistance. They contacted Microsoft on several occasions, and their needs were answered sufficiently.
Which other solutions did I evaluate?
We have a couple of companies using other options besides Microsoft Intune. One company is using Avanti Neurons.
What other advice do I have?
I rate the documentation for Microsoft Intune very highly, approximately nine or ten out of ten. One of our companies is beginning to provision and establish a Cloud PK to replace their legacy on-prem ADCS server.
I used Microsoft Intune extensively in setting up, running, and managing it for several years. In my current role, I don't have hands-on management responsibility for Microsoft Intune as much as responsibility for ensuring it secures the environment from a cybersecurity perspective.
From an IT infrastructure team perspective, the experience with Microsoft Intune is good, although somewhat complex to navigate initially. From an end-user perspective, the experience is good as long as the infrastructure team has done their due diligence in setting it up to remove any obstacles from the user's setup of their own machine.
I rate Microsoft Intune a ten out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Desktop Support Engineer at COMnet Solutions (Global)
Provides centralized management and positive user experience
Pros and Cons
- "The best features in Microsoft Intune that I appreciate most are its centralized features."
- "For macOS devices, we use the Jamf portal. I understand that the Jamf portal and server are more secure than Microsoft Intune for macOS."
What is our primary use case?
In our organization, we use Microsoft Intune for enrolling our end user devices. We handle enrollment and de-enrollment and BitLocker recovery. We manage conditional access policies, configuration profiles, MDM, MAM, and managed endpoint devices such as Android phones, iOS devices, and tablet devices.
We use Copilot in Microsoft Intune as it is premium-based with licensing. In our organization, we have over 1000 licenses for our end users. If there is any requirement from our end users, we check their approval from their manager and provide Microsoft Copilot licenses.
We also manage and protect our apps through Microsoft Intune and have protection tools such as DLP, Netscope, and Zscaler. We utilize monitoring features in Microsoft Intune through conditional access policy.
What is most valuable?
The best features in Microsoft Intune that I appreciate most are its centralized features. There is no concern about managing end user devices. We enroll the user devices through Microsoft Intune and can manage them from anywhere. For instance, if I am in India, I can manage a user device that is available in the USA, Dubai, or any other country.
I assess the user experience of Microsoft Intune as a very positive experience from our user end because it is user-friendly and manageable, resulting in great reviews from our users.
We use advanced endpoint analytics, which is very useful and protective. That is the benefit of advanced analytics. We use Microsoft Enterprise features. The Enterprise Application Management feature is very useful because we simply configure through policy and do not need to worry about any disturbance or further monitoring. We check the monitor or report sheet, and everything works perfectly and smoothly.
What needs improvement?
We could benefit from some AI features in Microsoft Intune, and it would be helpful to have some automation features available.
For macOS devices, we use the Jamf portal. I understand that the Jamf portal and server are more secure than Microsoft Intune for macOS. It would be beneficial if there were ways to improve and make it more user-friendly for managing macOS devices.
For how long have I used the solution?
I have approximately 1.5 years of experience managing and supporting Microsoft Intune.
What do I think about the stability of the solution?
I would rate it a ten out of ten for stability.
What do I think about the scalability of the solution?
For scalability, I would rate it a nine out of ten.
We are using it at multiple locations. In India, we have about seven offices, and we have multiple offices in UAE and the USA.
Approximately, we have 10,000 users, but at my location, I manage and support about 1,000 users.
How are customer service and support?
Their technical support deserves a rating of ten out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
It's not complex. It's very user-friendly. It generally takes 24 to 48 hours.
It's a hybrid environment. We use the cloud and on-prem environments.
It doesn't require any maintenance from our side.
What's my experience with pricing, setup cost, and licensing?
It's cheap. It's not expensive.
What other advice do I have?
As compared to other products, Microsoft Intune is more secure, reliable, and user-friendly.
I would rate Microsoft Intune a ten out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
App Admin at a tech vendor with 10,001+ employees
Improves productivity and security management through centralization
Pros and Cons
- "The interface is user-friendly, and the reporting tool works in real-time."
- "Microsoft Intune is far more efficient and faster than MECM."
- "There is room for improvement in server patch management and allowing direct uploads of EXE applications instead of needing to convert them to Intune format, which would save time."
What is our primary use case?
My use case for Microsoft Intune is to deploy applications and enroll devices, pushing the apps to the devices.
How has it helped my organization?
Microsoft Intune brings all of our endpoint and security management tools into one place.
The integration of Microsoft Intune with Microsoft 365 and Microsoft security for cloud and co-managed devices is flawless.
Microsoft Intune works smoothly for discovery, deployment, and automatic updates.
Microsoft Intune helps simplify our IT and security operations as it takes less time, and it's easier to use than SCCM.
Microsoft Intune is flawless for securing hybrid work and protecting data on company and BYO devices.
We are using Microsoft Intune's endpoint privilege management feature. For enforcing least privilege access with Microsoft Intune, we use Entra ID. It restricts unauthorized access, requiring roles to be activated to proceed with necessary tasks, enhancing security.
Microsoft Intune has positively affected my IT productivity, as the decisions made at the enterprise level show it to be a more efficient way than SCCM.
What is most valuable?
In Microsoft Intune, everything is great. The interface is user-friendly, and the reporting tool works in real-time. Uploading the content is fine as well.
What needs improvement?
There is room for improvement in server patch management and allowing direct uploads of EXE applications instead of needing to convert them to Intune format, which would save time.
For how long have I used the solution?
I have been using Microsoft Intune for more than one and a half years.
What do I think about the stability of the solution?
We have not experienced any issues. I would rate the stability of Microsoft Intune a nine out of ten.
What do I think about the scalability of the solution?
We have approximately 90,000 devices in our organization. We have multiple locations across various regions of the world. In our IT team, there are about ten people working with Intune, with plans to add more.
How are customer service and support?
I would rate the technical support for Microsoft Intune an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Previously, we were using MECM. The reason for the switch to Microsoft Intune is that the organization I work for has migrated to Intune. Microsoft Intune is far more efficient and faster than MECM. The deployment would take a lot of time in MECM; Intune is quite faster.
We are still using SCCM for cloud PKI as it hasn't been migrated.
How was the initial setup?
Deploying Microsoft Intune in the cloud was complex as the previous work needed to be deleted and recreated, which wasted time.
What was our ROI?
Microsoft Intune saves about 10% to 15% of time. For example, deploying a 2 to 3 GB application at an enterprise level typically takes around one hour to one and a half hours, but with Microsoft Intune deployment, it gets completed in 30 to 40 minutes.
Microsoft Intune saves us around 10% to 15% in resources.
What other advice do I have?
We are using Microsoft Copilot in Intune as an AI tool; it doesn't protect much, but it is handy for our users.
I would recommend Microsoft Intune to other users, especially those using MECM or SCCM, because Microsoft is ending support for older solutions.
Overall, I would rate Microsoft Intune an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Cloud Solution Specialist & End User Architect at a computer software company with 51-200 employees
Cloud integration reduces hands-on IT support and increases productivity
Pros and Cons
- "The most valuable feature of Microsoft Intune is its scalability."
- "The platform is incredibly slow and could be more responsive. Specifically, when making changes to security policies, I would like to see those changes take effect more quickly."
What is our primary use case?
I use Microsoft Intune for endpoint management. I administer Intune for many clients, and I also use Bring Your Own Device (BYOD) application protection policies.
What is most valuable?
The most valuable feature of Microsoft Intune is its scalability. It helps reduce hands-on IT support, especially with remediations. Since it is a cloud solution, there is no need for on-premises infrastructure to support endpoints. Endpoint Analytics is considered very useful, although it can be slow. Endpoint Privilege Management greatly increases productivity by allowing admin rights to be assigned to individual applications.
What needs improvement?
The platform is incredibly slow and could be more responsive. Specifically, when making changes to security policies, I would like to see those changes take effect more quickly.
For how long have I used the solution?
I have used Microsoft Intune since more than 2019, so approximately three years.
What was my experience with deployment of the solution?
For me, the deployment is not complicated, but it is a complicated process overall.
What do I think about the stability of the solution?
Microsoft Intune is generally stable but slow. I would rate its stability at eight out of ten.
What do I think about the scalability of the solution?
I would rate Microsoft Intune's scalability ten out of ten. Being a cloud solution increases its scalability.
How are customer service and support?
The technical support for Microsoft Intune is slow to respond and not great. I try to avoid using it because of its slowness. If you can get through to technical support, it is great, but the triage process is lackluster. I would rate their technical support five out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I previously used Symantec Altiris. I switched to Microsoft Intune for native cloud support, as Altiris was not native at the time with cloud support.
What was our ROI?
Using Microsoft Intune saves costs by reducing the need for hands-on IT support. It has improved our ROI by lowering licensing costs due to the consolidation of vendors.
What other advice do I have?
I rate Microsoft Intune eight out of ten because it is improving all the time. The biggest lesson is that all solutions must be integrated, especially in the journey to the cloud. It is important to keep up-to-date with changes in Intune to ensure all adaptations are utilized.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Strategy & Portfolio Advisor at a insurance company with 1,001-5,000 employees
Faced limitations with diverse platforms, yet centralizes management tools
Pros and Cons
- "Intune does consolidate all endpoint and security management tools into one place, making everything easier to manage."
- "Intune should support platforms other than Windows. We have encountered several limitations, especially when handling iOS devices."
What is our primary use case?
Currently, we are using Intune to manage our iOS devices. We are planning to extend its use to our Windows computers. Initially, the immediate need was for a Mobile Device Management to support the iOS platform, and Intune fulfilled that requirement.
What is most valuable?
When it comes to iOS, Intune is quite limited. Since it is a Windows product, it is more tailored towards Windows devices. We noticed limitations, which is one reason we are trying to move away from it. Intune does consolidate all endpoint and security management tools into one place, making everything easier to manage.
What needs improvement?
Intune should support platforms other than Windows. We have encountered several limitations, especially when handling iOS devices. Features like unlocking devices sometimes fail, and the support offered for other operating systems is insufficient. Enhancements are needed based on my real user concerns.
For how long have I used the solution?
We have been using Intune since we transitioned to Office 365, and that was over five years ago.
What do I think about the stability of the solution?
The product itself is fine. We have not experienced any connection issues or significant problems. However, we do encounter backend issues related to its administration.
What do I think about the scalability of the solution?
Intune is not scalable enough to fully support other operating systems aside from Windows.
How are customer service and support?
Microsoft support is alright; it is a standard experience. On a scale from one to ten, I would rate it a five.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We did not use a different solution before opting for Intune.
How was the initial setup?
The initial deployment was pretty straightforward.
What about the implementation team?
The deployment was completed with an in-house team comprising about twenty people, where everyone had a small piece of the work.
What was our ROI?
We see ROI because Intune is bundled in our Microsoft agreement.
What's my experience with pricing, setup cost, and licensing?
The pricing is fair. We get Intune bundled with our Microsoft agreement.
Which other solutions did I evaluate?
We did not evaluate any other options before choosing Intune.
What other advice do I have?
If you are a Microsoft shop, then Intune is a good fit. If not, you might face issues because it primarily supports Microsoft products. We are planning to decrease its usage. Overall, I would rate Intune a five because we are not solely a Microsoft environment.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Programmer at a insurance company with 1,001-5,000 employees
Enables efficient remote laptop setup and management
Pros and Cons
- "Without Microsoft Intune, it would be extremely challenging, if not impossible, for a large company to send out computers to users and have them set up and ready to use right out of the box in a remote location."
- "There are some cases where features of Microsoft Intune have changed, and sometimes it's tricky to find the answer."
What is our primary use case?
Our main use case for Microsoft Intune is for laptops in remote situations where the client is remote and not where we are locally, as well as when the end user is not at the home office. When they get a new computer, they open it up out of the box and then it connects to the internet and it will automatically set up their username to the brand new computer. It'll download apps, it'll set up security policies, it'll connect, program in the company Wi-Fi, the network settings, mapping drives. This enables automated remote setup and management of the computer.
We provide IT support through a managed service provider (MSP) model, offering both hourly work and contracted managed services.
How has it helped my organization?
Once the initial setup is complete, which involves running PowerShell commands, programming, and testing, the product becomes very user-friendly for end users, particularly for Level 1 tech support staff. After Level 3 network engineers have configured everything, it becomes easy for frontline support personnel to manage the computers effectively. This system allows a Level 1 technician to address various needs without having to remote into the end user's computer. For instance, if a user requires a new printer, the technician can simply deploy the printer driver remotely. If access to certain resources is needed, that can also be pushed out without direct interaction. Additionally, the capability to remotely apply or remove settings is crucial. If a machine is lost or confiscated, technicians can lock it down or even wipe the data remotely. In the event of an operating system failure, they can instruct the computer to reinstall the system from a distance.
In this way, once properly set up, Microsoft Intune significantly alleviates the headaches and hassles faced by Level 1 tech support staff when addressing end user issues. The system is not only designed for setting up computers but also for maintaining them and assisting in troubleshooting. Without Microsoft Intune, it would be extremely challenging, if not impossible, for a large company to send out computers to users and have them set up and ready to use right out of the box in a remote location. If a vendor needs to ship a brand new computer to a user whose previous computer has broken, the process becomes much simpler. The user doesn’t need to be on the phone for setup; the computer connects to Microsoft servers remotely and sets itself up automatically.
Our client has around 300 machines, and initially, their goal was to complete the setup of one or two machines each week. However, after implementing Intune for them, they have been able to set up and install approximately 30 machines per week. This has significantly exceeded their expectations, allowing them to accomplish far more than they initially planned.
What is most valuable?
The best feature of Microsoft Intune is that since it's working with Microsoft servers and the Microsoft operating system, it's tightly integrated. There's a lot of documentation and resources for training. It's the first step to remote managing a Windows-based laptop or machine that you want to use out of the box. Even if you use a third party, they're still built on Microsoft services.
What needs improvement?
There are some cases where features of Microsoft Intune have changed, and sometimes it's tricky to find the answer. It's such a mass amount of information that searching for the solution to why something isn't working as expected is sometimes tricky or daunting. That's where the AI searches with ChatGPT and CoPilots come in because those AIs are helping us search a vast amount of data all at once. We can type in our question and formulate it to get the steps to the problem, the answer, and then verify it or write a script. We're leveraging AI to search the vast amount of old solutions, new solutions, and potential solutions all at once.
For how long have I used the solution?
We've been learning Microsoft Intune for a year and a half and have just started to use it.
How are customer service and support?
We haven't used their support. The documentation has been pretty good so far. It has allowed us to meet our clients' needs and deadlines and remotely manage, install their software, remove software, and ensure compliance.
How would you rate customer service and support?
How was the initial setup?
When it comes to the IT department, regardless of individual skill levels, setting up and using these systems requires dedication. It's not something one can merely "hack" their way through; you need to start from the basics and understand the complexities involved. This isn't necessarily Microsoft's fault; rather, it's a reflection of the intricate problems and challenges that Intune addresses.
Intune is designed to handle complex issues, and Microsoft has made it as user-friendly as possible given the many options and components involved. It interacts with various parts of the computer, including group policies, on-premises servers, hybrid systems, and cloud-based solutions like Azure. With such a wide range of capabilities, it's not something you can simply learn by watching a single YouTube video. To effectively use Intune, you need to read and study the material. In summary, it requires a highly skilled individual to properly implement and manage this technology.
The deployment model is what's called a hybrid join with Microsoft Intune. The client has an on-premise server and an off-premise Azure cloud server. Because some of their software is still local and the way they have their network set up, we have to do it as a hybrid, which is one of the more complicated ways to do it, but we've been able to get it done. That's considered a temporary solution by Microsoft. Once you get it all working, there are some changes that you make where it's no longer hybrid.
What other advice do I have?
We've just started taking a look at CoPilot in Microsoft Intune. We use a combination of ChatGPT and CoPilot to get answers and help write scripts quicker or to search for problems quicker.
I would recommend Microsoft Intune to others because it's the industry standard for doing what it does. There's not really another option.
I would rate Microsoft Intune an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Security and Infrastructure - IT Specialist at a tech vendor with 201-500 employees
Makes device management easy with remote wipe and app supersedence features
Pros and Cons
- "Since implementing this solution, our company has grown substantially, and our talent pool has significantly expanded."
- "What frustrates me the most is just waiting and tapping my fingers, uncertain about whether my changes will take effect."
What is our primary use case?
We use Microsoft Intune for managing devices. We deploy our devices to users using Microsoft Intune Autopilot, which enables us to set up the device for the user and then ship it to them. When they log in, everything is there for them, including all the applications they need. We push applications through Microsoft Intune; for example, we install Zoom through it.
We do not allow users to install their own apps. We use AppLocker, which prevents users from installing their apps. We can use remediation scripts. One script uninstalls Google Chrome if someone installs it because it hasn't been set up in AppLocker yet. If it were, AppLocker would prevent the user from installing Google Chrome. We use Microsoft Edge because it's easier to manage using Microsoft Intune and Microsoft Endpoint Manager. We can prevent users from installing extensions, which is beneficial because password and session token theft often occurs through malicious extensions. We can have a whitelist of extensions that users can install or push an extension to be installed using Microsoft Endpoint Manager. I'm using Microsoft Endpoint Manager and Microsoft Intune interchangeably here because they're practically the same product.
What is most valuable?
The best feature in Microsoft Intune is the ability to wipe a device if it gets lost or stolen. Even if the device goes offline, if you send the command to wipe the device and it appears online, you can still wipe it. If the device breaks or ruins the storage, it doesn't matter because the goal is to ensure they don't have the data. You can also keep the device locked to your tenant if desired. If someone steals the device and tries to install Windows again, it will display 'Welcome to X company' and they cannot proceed past that point.
Another notable feature of Microsoft Intune is application supersedence. For example, if we were using Microsoft Paint and we don't want it on the device but want another paint program, we can specify that Microsoft Paint will be superseded by this new application. It finds the application on the device, uninstalls it, and then installs the new application, providing two actions for the price of one.
Regarding the Enterprise Application Management feature for app discovery, deployment, and automatic updating, we utilize that functionality. We use advanced endpoint analytics with Microsoft Intune. Only one of the global admins needs the license, and the rest of the admins can manage without individual licenses.
What needs improvement?
I’m not sure if Microsoft can do anything to improve this situation. The most frustrating part for me is when we make changes to a device, particularly with our virtual machine setups and test users. These test users need an intern license, so we usually provide them with what the other users have, which is a business premium license—it's the best value for our needs. When we push an application, it’s usually manageable. However, when it comes to configuration changes, the waiting game can be tedious. Sometimes the change takes effect in just two minutes, but other times it can take up to two hours. It’s difficult to be patient while waiting to see if the change works. We could try restarting the Intune management service to prompt it to check for updates, but that’s hit or miss too. I really don’t know how the changes are pushed to devices—whether our changes go into a larger queue with others or not. What frustrates me the most is just waiting and tapping my fingers, uncertain about whether my changes will take effect. I honestly don’t know how they could improve this process, as I’m not familiar with the inner workings. But this delay is the most annoying part for me.
Sometimes, the menu system isn't very user-friendly. You'll find yourself digging through various sections, and the changes to the menu can be frustrating. For example, when you ask Copilot, "Where is this?" it might respond with a sequence of steps to follow, saying you need to go here, here, and then there. However, either Copilot is misunderstanding the situation, or the option has been moved, as it might no longer be where it used to be or it could have a different name. This is something that seems to change frequently. Microsoft tends to update things consistently; they do it with Windows and other products as well.
The most important thing is to stay patient while waiting for these changes to take effect. Additionally, not only do we need to wait for the changes, but we also need access to logs that detail what has changed. It's frustrating when you see the changes happening on the device, and maybe they fail, but then it takes twenty minutes to an hour for that information to be reflected in Intune. This delay hinders your ability to troubleshoot effectively. From Intune's perspective, while I can check the event logs to see why an application might not have installed, I'm more concerned about understanding why Intune itself failed. So, the two main issues are the time it takes for changes to be implemented and the time it takes to report on the effectiveness of those changes.
For how long have I used the solution?
I have been using Microsoft Intune for approximately five years now.
What do I think about the stability of the solution?
There has only ever been one issue with Microsoft Intune, which they fixed quickly in less than a day. That issue concerned displaying incorrect access rights to users. It did not disrupt operations significantly; we simply couldn't test anything for a while.
What do I think about the scalability of the solution?
It's a very scalable solution. You can have thousands of devices connected if you want. It allows you to manage numerous aspects effectively. This system has greatly benefited my company, as we were previously reliant on an inadequate VPN for connecting to our network infrastructure. Now, we have the flexibility to hire employees from places like Arizona and Washington, which wasn’t possible before due to the need for onsite presence. Using Intune has enabled our workforce to operate remotely. Since implementing this solution, our company has grown substantially, and our talent pool has significantly expanded. Although we only hire within the United States, we now have the ability to recruit from virtually anywhere in the country.
Our company has approximately 100 users working with Microsoft Intune, with a more complex setup due to our structure of five separate companies.
How are customer service and support?
We contact our cloud service provider first, who escalates us to level two tech support if needed. Microsoft support can be very inconsistent, warranting a rating of seven out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
My last use of SCCM was about eight years ago. Microsoft Intune's interface is superior; SCCM appeared outdated at that time. While I cannot extensively comment on SCCM due to dated experience, Microsoft Intune remains a strong product despite its regularly changing interface.
How was the initial setup?
Our deployment is entirely in the cloud. We used to operate on-premises, but I migrated everyone to use Entra ID instead of Active Directory on-site. I had to accomplish this while everyone was working remotely, which made the process more challenging since using Entra Connect or AD Connect was not feasible for many users. Currently, everyone is fully in the cloud. We do have an office, but people are rarely there. They only come in for meetings and such; most of the time, they are working remotely.
The deployment of Microsoft Intune is relatively straightforward to set up. It's more straightforward than SCCM, though SCCM lacks certain features that Microsoft Intune has, and vice versa. For beginners, completing Microsoft SC-900 provides a foundation, which is more oriented towards Entra. However, MS-900 might be more suitable as it focuses on the admin center.
For new companies implementing Microsoft Intune, setup can be quick with experienced personnel. Transitioning from on-premises to a hybrid solution depends on the number of users. It's crucial to ensure proper ID transfer and appropriate Entra licenses, particularly for write-back functionality. Without write-back enabled, users changing passwords outside the office might end up with two different passwords.
One essential step is onboarding computers to Microsoft Autopilot. A script pushed through Microsoft Intune can accomplish this, though it becomes more complex without automatic enrollment settings. Autopilot facilitates device building and shipping, ensuring everything is set up when users log in. For organizations with small footprints using Microsoft Office and minimal apps such as Zoom and SharePoint, the process is streamlined. When moving to the cloud, consideration must be given to migrating SharePoint from on-premises, for which Microsoft provides migration tools.
Maintenance involves running reports and managing stale devices. Setting up automatic removal of inactive devices helps maintain a healthy Microsoft Defender secure score. When reassigning devices, running an offboarding script ensures proper device management in Microsoft Defender.
What was our ROI?
Regarding return on investment, Microsoft Intune's value becomes apparent when comparing it to licensing costs of other management tools. Since it comes bundled with Microsoft Business Premium, it serves as a powerful tool that proved more valuable than initially anticipated. The overall ROI is positive, and the solution effectively meets our needs. Additionally, we can now deploy Global Secure Access, a VPN solution that protects remote workers and filters internet traffic, adding further value.
What's my experience with pricing, setup cost, and licensing?
The pricing of Microsoft Intune rates around four or five out of ten. The cost structure varies based on requirements. We utilize licensing bundles such as Microsoft 365 Business Premium, which includes the Microsoft Intune license and provides good value. Microsoft Intune alone costs approximately $6 monthly, but considering its device management capabilities, application installation features, and Microsoft Autopilot deployment functionality, the price is reasonable.
What other advice do I have?
The user experience has been good. There is some crossover with Microsoft Entra ID. You can access groups and users from Microsoft Endpoint Manager when onboarding a device. This can be set up using Microsoft Endpoint Manager. If someone receives a new device, they can sign in for work purposes, and if you are familiar with Microsoft Windows, they will have the option to choose whether the device is for home or work use. Once we see the device in Microsoft Endpoint Manager, we can begin assigning profiles and encrypting the drive, making it easier for us to remain compliant. We utilize the CIS framework for compliance, which provides guidelines on tasks such as drive encryption and ensuring all settings are appropriately configured.
Additionally, we implement conditional access policies. For instance, if someone is outside the United States, we can require them to re-authenticate using Microsoft Authenticator for security verification. This measure ensures that if an unauthorized person managed to steal someone’s MFA token and attempted to sign in from outside the country, they would be prompted to complete another MFA session, which adds an extra layer of protection. Furthermore, we can restrict actions on mobile devices. For example, we can prevent users from copying and pasting content from Word documents into applications like Apple Notes. This feature is particularly useful for maintaining security.
If you are a Microsoft shop, these processes streamline operations significantly. However, for larger enterprises, costs may escalate. In such cases, it would be necessary to contact Microsoft to establish a suitable arrangement, similar to agreements made with Microsoft Azure for their resources. For small to medium-sized businesses, getting set up with these systems is straightforward and can assist in achieving compliance. It's important to note that this information pertains to Microsoft Purview and is distinct from Intune, which I will not discuss further.
We do use Copilot, but we have it turned off for email due to a current exploit. There are hidden Copilot commands that can pull data from sources a user might have access to and then email it to someone else, which is why it's disabled for mail. We only have a handful of licenses, and they are primarily for people who have limited time during the day and receive a lot of emails. It's a time-saving feature for them. Sometimes, they use it to write scripts quickly, like in PowerShell, which I then review to understand what it does. You can trust it, but you should always verify its output. Copilot is also helpful for creating a basic outline for documents, such as policies, where you can simply fill in the blanks. However, the pricing is not great. Additionally, you are locked into a one-year subscription with no month-to-month option. The cost is around $360 a year per person, which adds up quickly, so you have to be sure the person really wants it. Consider purchasing one license first to let someone try it out. If they find it beneficial, they can keep it, and we can buy additional licenses for others who express interest. Currently, we have very limited licenses due to the high cost. If they were half the price, I believe everyone would have access to it.
For those implementing Microsoft Intune, if you plan to have remote workers, consider whether you want to provide them with actual physical devices or if you can offer cloud PCs instead. Cloud PCs can be managed through Intune, and anyone with access to a Chrome-based web browser can use a desktop from anywhere with an internet connection. This approach also helps you avoid issues with retrieving physical devices from users, as they are not legally obligated to return them, potentially leading to a loss of significant investment.
Additionally, there are compliance issues to consider when providing devices. For instance, if you give a physical device to a contractor, they may be legally considered your employee under laws in certain states, such as California. Therefore, think carefully about your deployment strategy. Decide whether you'll be using physical devices, which may require more effort to manage, or cloud PCs, which might save you headaches in the long run. You also need to be proficient in PowerShell, as you may have to write remediation scripts. If you're not comfortable with PowerShell and prefer a simpler solution, be aware that there may not be many alternatives. This also aligns well with Microsoft Windows.
If you prefer to use Apple products, keep in mind that you can't just purchase a MacBook from a store. You'll need an Apple business account to obtain a certificate required for managing the device through Microsoft Intune. This rule applies to iPhones and iPads as well. In contrast, with Android devices, you don’t have these management restrictions. So, before making any decisions, consider your deployment strategy and the existing device ecosystem you have in place. I'm not familiar with using SCCM or other management tools, but be sure that with Microsoft Intune, simply buying a MacBook will not allow you to manage it without following the necessary procedures.
I would rate Microsoft Intune overall as an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2026
Product Categories
Unified Endpoint Management (UEM) Configuration Management Remote Access Enterprise Mobility Management (EMM) Microsoft Security SuitePopular Comparisons
Microsoft Defender for Endpoint
Microsoft Entra ID
Microsoft Defender for Cloud
Microsoft Defender for Office 365
Microsoft Sentinel
NinjaOne
Microsoft Purview Data Governance
Red Hat Ansible Automation Platform
Microsoft Configuration Manager
WhatsUp Gold
VMware Aria Automation
Microsoft Defender XDR
Citrix DaaS (formerly Citrix Virtual Apps and Desktops service)
Workspace ONE UEM
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Microsoft Intune and VMware AirWatch; Which do you recommend?
- What is lacking in comparison with AirWatch?
- What are the benefits of Microsoft Intune for IT Admin?
- What do you think of the integration of Azure AD Services, Defender for Endpoint, and Intune as comprehensive security solutions?
- What are the main differences between Jamf Pro and Microsoft Intune for Mac management?
- Which solution is better for an educational organization: Google Workspace or Microsoft Intune?
- What are the differences between MobileIron UEM and Microsoft Intune?
- What are the pros and cons of Microsoft Intune?
- How does Microsoft Intune compare with ManageEngine Desktop Central?
- Is it worth migrating from WS1 to Intune if we have Microsoft 365 E3 available?












