My main use case for Microsoft Intune is to manage all the endpoints and use the conditional access policies to manage all the applications for Microsoft.
In my organization, we are using M365 with Microsoft Intune, and we do not want users to access their email on any non-managed devices, so we manage devices with Microsoft Intune and the Exchange, meaning online exchange mail is only accessible on Microsoft Intune managed devices. This is the use case we are following.
For Microsoft Intune, we also use it for patching our devices because patching is very critical for us, and Microsoft Intune helps us to get all the patches centrally without going to any further third-party sites. It is helpful, and it also gives me options to see the vulnerabilities on all the Microsoft Intune-joined devices.
The best feature of Microsoft Intune is the zero-touch device provisioning, which is very helpful to reduce the manual imaging, as we do not want any dependencies on local engineers to install the OS manually, and it is easy to manage our devices from remote sites. It also increases the compliance which we follow and helps to reduce the time to deployment, allowing us to customize the OS with the software our company uses, making it ready to go.
Microsoft Intune impacts our organization positively by reducing the time for our engineers, allowing them to focus on other important tasks. It provides a complete overview of all the endpoints managed by Microsoft Intune, showing which systems are critical, not critical, healthy, and not healthy, and how many devices comply with our organization's policies. It also reduces the risk of data being shared outside of our devices.
Microsoft Intune reduces the time of our engineers, cuts down costs for the deployment of our endpoints managed by Microsoft Intune, and helps to improve compliance and the security policies we wanted to apply on endpoints, which was not happening earlier. Now it is working fine.
For improving Microsoft Intune, it sometimes feels laggy, taking some time to implement any policies on machines. I understand it's dependent on the network, but some other device management applications implement changes more quickly. This lag is the only gap I see.
There should be an easy guide to getting started with Microsoft Intune. As an admin, I feel we need clear steps to follow based on the licenses we have purchased. Best practices for Microsoft Intune would help us utilize all its features fully, giving us confidence and better value for our investment. Currently, we have to figure it out on our own.
I have been using Microsoft Intune for four years.
Previously, without Microsoft Intune, we were using a manual method by booting all laptops with USBs after procuring them to our office. We installed the OS and all the applications, provided antivirus, configured the Outlook Exchange, and other user profiles, then sent those laptops via delivery to any remote users located anywhere in India. This process reduced the time and cost of delivery, as we can now send laptops directly to users without going through our office, and it has significantly reduced the time for deployment of applications, images, and configurations which can now happen remotely.
Sometimes, the AI gives options that are not available, making it difficult, leading us to search repeatedly. While the AI understands we have purchased only basic licenses, it typically provides generic answers related to the complete feature set of Microsoft Intune, making it tricky. This occurs only sometimes, as most of the time, the AI's output is accurate.
Microsoft Intune AI is one of the most valuable AI-driven capabilities within Microsoft Intune, with its integration with Microsoft Security Copilot and AI-based analytics for endpoint management, detecting compliance issues, application failures, risky devices, and deployment problems proactively. It helps us analyze compliance issues, and if we ask the AI to improve compliance or reduce application failures and risky devices, it provides answers that make managing Microsoft Intune easy.
For remote management, we use Microsoft's default application, Quick Assist, which is helpful as we do not have to depend on any third-party applications, making it easy. We can also use the remote wipe if anything goes wrong.
The cloud provider we use for deploying Microsoft Intune is Microsoft.
In my experience, Microsoft Intune licensing and pricing mainly depend on the size of the organization, security requirements, and whether it is purchased standalone or as part of the Microsoft 365 subscription. We are using M365 and Microsoft Intune together, with my organization preferring Microsoft Intune through Microsoft 365 E3 or E5 because it includes endpoint manager capabilities along with security and identity services. The setup cost feels lower compared to other software in the market.
I would rate this product an eight out of ten.