Try our new research platform with insights from 80,000+ expert users
reviewer2520849 - PeerSpot reviewer
Cloud Engineer at a tech services company with 51-200 employees
Real User
It's cost-efficient and has the best capability for managing Windows-based devices and application
Pros and Cons
  • "The best part of Intune is device control. If we need to block a user from opening something in their organization's system, we can do it from Intune. If we want to restrict the movement of an organization's data to prevent users from copying the data into Outlook, WhatsApp, or their personal Gmail, we can limit that via Intune. It secures all corporate data."
  • "We are currently unable to control aspects of group policy from Teams like we can for GPO. They are still not part of Intune. Microsoft is adding this, but it's currently in preview, and few GPO features have been added to the product."

What is our primary use case?

We are a Microsoft vendor, not an Intune user. I have deployed Intune for several customers who use this product for business. Our clients use Intune for device management and data security, which gives them control over end-user devices.

Previously, we used a device manager and had a local Active Directory. However, most of our SME customers do not have a local Active Directory set up in their organization that allows them to control their devices. Intune does not require any local AD. It's a cloud application. We can directly join the user devices to the cloud, and the organization manages them. We have enterprise customers and also SMBs, but most of our clients have less than 100 users. 

How has it helped my organization?

One of my Indian clients previously had all their devices at the workplace. None of the devices were joined to an Active Directory, so they had to install applications on each device individually. With the help of Intune, we could push the applications to all the portal users simultaneously. 

We have to create a group, assign an application to it, and automatically install it on the user's devices. We also apply the company logo and desktop wallpaper via Intune, which a tech user can change. We can also find the exact location of the devices where the user is sitting.

We also have the option to enroll hybrid devices with Intune. We can enroll users'  devices and separate work and personal data. The devices on the local Active Directory can be joined to Intune. 

Privilege identity management helps. Let's say someone is a company administrator for five to ten days. We can create a dual administrator role for that user for seven days. I can create a PIM role and assign it to the user for seven days, after which the role will be deleted automatically. 

Intune provides routine management of user devices. Once the device is not enrolled in any domain or Active Directory, the IT person must delete every user device to change anything. Intune can work on all those things. That device can be updated and marked as non-compliant. If someone is using Windows 7 or a version of Windows that has been deprecated, we can restrict Windows 7's user ability to log in to the work environment. We can control all this over the admin panel.

If we scale 10 to 50 percent, where new customers manage all their devices. After enrolling all the devices, this work can be done with only one or two people, saving the organization money.

What is most valuable?

The best part of Intune is device control. If we need to block a user from opening something in their organization's system, we can do it from Intune. If we want to restrict the movement of an organization's data to prevent users from copying the data into Outlook, WhatsApp, or their personal Gmail, we can limit that via Intune. It secures all corporate data.

If they share the data with someone outside the organization, that external person cannot see it until an analyst provides them with access or creates a policy. 

The user experience is good. Users are happy that Intune is managing their work devices. In addition to Windows devices, we can control iOS and other mobile devices. There are good features for managing mobile devices. Work data is stored in different containers, making it easier for users to find their work data. 

In the case of application deployment, we have more services like application updates and patches that can be implemented from the Intune portal. We do not need to outsource these tasks to the device user.

What needs improvement?

We are currently unable to control aspects of group policy from Teams like we can for GPO. They are still not part of Intune. Microsoft is adding this, but it's currently in preview, and few GPO features have been added to the product. 

Buyer's Guide
Microsoft Intune
December 2024
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.

For how long have I used the solution?

I have worked on Intune for the last two years. 

What do I think about the stability of the solution?

Intune is a stable solution with a lot of capabilities. Most customers who are moving to Intune are also exploring the capabilities of the cloud. 

What do I think about the scalability of the solution?

I rate Intune seven out of 10 for scalability.

How are customer service and support?

I rate Microsoft support eight out of 10. Microsoft is good, but Intune support is delayed compared to other products. If I make a support ticket on the Intune portal, I get a reply after one or two days. For Exchange or SharePoint, I get a response after an hour, but Intune takes a minimum of a day. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

One product we can compare Intune with is Jamf Pro. Intune has limitations when managing Mac devices. You can enforce fewer policies because Apple has its own hardware and software. There are lots of limitations of control. Most of my clients use Intune for Windows and Android devices, but Jamf Pro if they have Mac devices.

How was the initial setup?

Deploying Intune is a little complex but not too complicated. At the time of deployment, there is much work to do to join a device to Intune. We have to create a new Windows profile and make users log into the enabled Windows profile. We need to configure all the Office applications and copy users from one to another. It takes 30 to 40 minutes on a single device. 

Intune requires some maintenance, but the customer performs the maintenance once we implement it. We support the customers with issues while they are enrolling the device.

What's my experience with pricing, setup cost, and licensing?

I rate Intune five out of 10 for pricing. It's expensive. 

What other advice do I have?

I rate Intune 10 out of 10. I recommend Intune to every organization that wants to secure user data and control endpoint devices. It can manage other platforms on the market. Google has device management software, but it doesn't have the same scope as Intune. 

It's cost-efficient and cheaper than the other device management and third-party applications available. Intune can control most things, especially Windows devices. Intune has the best compatibility with Microsoft Windows.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer: MSP
Flag as inappropriate
PeerSpot user
Anish Sharma - PeerSpot reviewer
Consultant at a tech vendor with 10,001+ employees
Consultant
Top 10
We can deploy an application to several users with a single click
Pros and Cons
  • "Intune is flexible. If you want to move a device that was previously on-prem, we can bring it to the cloud and apply all the policies. This is helpful for even those organizations that were on-prem and not on the cloud. They can also come and use these features, which are pretty cool and would be handy to protect the data and manage the devices as well."
  • "The best part of Intune is application deployment. We can deploy an application to several users with a single click. We can use conditional access, granting access to users based on certain conditions, such as location, platform, etc."
  • "The reporting causes problems because we're trying to gather data to present to the management, but we can't get the data they request. If a user has removed an application from his device, but it won't report it at exactly the right time. It takes time to sync from the device to the portal. Let's say we are preparing a list or deck for the number of compliant devices that meet all of the organization's requirements. In a real-time scenario, that device could be compliant, but it is showing as non-compliant on the portal. It sometimes hampers the overall decisions that we make on our end."

What is our primary use case?

We use Intune to manage devices and configurations on all platforms, including Windows, iOS, iPad, and Android. It also provides conditional access from the Azure portal. We have also used Intune to bifurcate data and data transfers. We have an Intune entry list that shows the device count and bandwidth of each, so we can manage the data flow from every device based on whether it's corporate or personal. 

How has it helped my organization?

Intune is flexible. If you want to move a device that was previously on-prem, we can bring it to the cloud and apply all the policies. This is helpful for even those organizations that were on-prem and not on the cloud. They can also come and use these features, which are pretty cool and would be handy to protect the data and manage the devices as well.

It's handy to manage all the hybrid devices that are on-prem and in the cloud. If a user accesses company resources on their work profile or their personal devices, they can register the device in Intune and access the company data. Intune is a crucial part of the overall structure because we can use it to analyze risks and threats coming into our organization and predict what will be vulnerable. It's necessary to analyze all those things from a security perspective.

Intune's advanced endpoint analytics require a separate license. We are keen to use that one because it comes with more features, flexibility, and control for admins over the devices. We haven't used it, but I've tested it on my tenant with a few devices

It is much easier for admins to use that cloud PKI infrastructure compared to when we had to set up all those things using our Skype profile from Intune. It's quite handy. It takes a little work on the admin side, but the whole structure is the same.

Intune drastically improved our productivity. Work that was previously completed in four hours could now be finished in one. It saved our IT admins many hours of work. Once we migrated from our on-prem servers to the cloud, the Cloud PKI saved us a lot of money. I don't know the numbers, but we are saving so much money because of this. 

What is most valuable?

The best part of Intune is application deployment. We can deploy an application to several users with a single click. We can use conditional access, granting access to users based on certain conditions, such as location, platform, etc. 

With the help of Microsoft Defender, we can bring each endpoint or node under  Intune's umbrella and manage it through Defender. The most effective feature for managing mobile devices is the compliance policy, which mandates that any user on a particular device should be compliant. It should meet the requirements the company sets and be upgraded. The user should meet all these security criteria we have implemented. 

Intune's app management can support our business operations. For example, if a user wants an Android app, we can deploy it through the Android store, but if we're talking about any MSI on a public-facing platform, we can convert it into Win32 and deploy it to the whole enrollment. Intune is quite flexible.

Compared to another Indian MDM tool I use, Intune provides more flexibility for security. The Microsoft name assures us that our data will be protected. Control over data is the main concern on the cloud.

What needs improvement?

The reporting causes problems because we're trying to gather data to present to the management, but we can't get the data they request. If a user has removed an application from his device, but it won't report it at exactly the right time. It takes time to sync from the device to the portal. Let's say we are preparing a list or deck for the number of compliant devices that meet all of the organization's requirements. In a real-time scenario, that device could be compliant, but it is showing as non-compliant on the portal. It sometimes hampers the overall decisions that we make on our end.

For how long have I used the solution?

I have used Intune for four and a half years.

How are customer service and support?

I rate Microsoft premium support nine out of 10. Their premium support is top-notch. They build a bridge to resolve the issues. Standard support varies, depending on the engineer you get. It could range from six to eight out of 10. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Previously we used SCCM. It's a Microsoft solution, but Intune's user experience is much better because it's cloud-based and it's more cost-effective. 

How was the initial setup?

Deploying Intune is pretty simple for someone who is experienced with the program. The admin needs to know the basics. Otherwise, it's user-friendly. The time needed to deploy depends on the network, but if everything is perfect, it only takes five to 10 minutes to deploy an application on a Windows device. An Android device is in a similar range. In some weird scenarios, it may take 15 minutes. It doesn't require much maintenance after deployment because it's cloud-based, so we don't need to update anything.

What was our ROI?

Intune cuts the amount of time we spend on these tasks in half.

What's my experience with pricing, setup cost, and licensing?

Intune is a better value than SCCM or other management tools because we can integrate more with Intune. 

What other advice do I have?

I rate Intune eight out of 10. I would recommend Intune to others. Microsoft offers many new handy features, such as the ledger and the ability to locally administer managed devices. It doesn't require much hassle to set up these things. It's worth the price.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Flag as inappropriate
PeerSpot user
Buyer's Guide
Microsoft Intune
December 2024
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
Diego Rios - PeerSpot reviewer
Systems Engineer Intune at Auxis
MSP
Top 10
It is reliable and helps consolidate our endpoints, but the reset process has room for improvement
Pros and Cons
  • "The ease of applying security policies to applications we deploy is the most valuable feature of Microsoft Intune."
  • "Sometimes, the process is unsuccessful when we attempt to reset a device and wipe the data using Intune."

What is our primary use case?

I am using Microsoft Intune for a trading company, Where I need to establish a secure administrative role for this product. We utilize Intune to manage Android, iOS, and Windows devices. We use it primarily to secure devices, deploy applications, and enforce security policies. Additionally, when employees leave the company, we can remotely wipe devices or applications, especially if personal devices are used for business purposes.

How has it helped my organization?

Microsoft Intune consolidates our endpoint and security management tools into one dashboard.

The user experience is generally positive. While specific changes can sometimes introduce minor issues, these are often related to device operating systems, particularly variations in Android labeling. Consequently, a small percentage of users have reported inconsistencies across different devices. Overall, however, the platform is effective, with 90 percent of users finding Intune a good user experience.

Our team manages most of the security measures we implement, specifically those related to conditional access. This involves deploying various conditional access policies, which I believe is a positive development. Intune has significantly enhanced its capabilities, allowing us to restrict and secure access to corporate data more effectively.

Enterprise application management is a valuable tool for managing non-corporate devices, commonly called Bring Your Own Device. By implementing this feature, companies can protect sensitive data from potential breaches. Intune offers a promising starting point for organizations seeking to adopt this strategy, as it enables control over infrastructure data.

In my experience with management products, Microsoft Intune is a reliable tool for most of our needs, providing a strong foundation for company-wide management. While initial configuration is required, Intune consistently delivers a positive experience for managing applications and devices once established.

Intune is excellent for managing applications from the outset. It allows for robust corporate data protection by implementing Mobile Application Management policies and conditional access, ensuring all data is secure quickly. This strong security foundation enables organizations to leverage Intune's additional benefits fully.

What is most valuable?

The ease of applying security policies to applications we deploy is the most valuable feature of Microsoft Intune.

What needs improvement?

Sometimes, the process is unsuccessful when we attempt to reset a device and wipe the data using Intune. This inconsistency requires improvement.

For how long have I used the solution?

I have been using Microsoft Intune for almost seven years.

How are customer service and support?

Support has been helpful in resolving some issues, but response times are inconsistent. Initial troubleshooting can be lengthy, especially for complex problems. While they sometimes guide us effectively, resolution speed varies widely depending on the issue's complexity. Support performance is inconsistent, with some instances of rapid assistance and others marked by excessive delays.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial deployment was complex because there were many steps, and I failed to get the full results. It took a week to complete, and one person was enough for the deployment.

What's my experience with pricing, setup cost, and licensing?

Microsoft Intune is reasonably priced for large organizations that already have Microsoft Enterprise licenses, but it is less affordable for smaller businesses.

What other advice do I have?

I would rate Microsoft Intune seven out of ten.

Because of all the training and information, it took me a couple of years to see the benefits of Microsoft Intune.

Managing deployed applications requires maintenance, but Intune, being cloud-based, does not necessitate such upkeep.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
PeerSpot user
VipinKumar2 - PeerSpot reviewer
System Engineer at CapitaLand
Real User
Improves security, offers excellent mobile device management and is easy to set up
Pros and Cons
  • "The mobile device management is very useful."
  • "There are a lot of updates happening on Microsoft."

What is our primary use case?

I'm working with InTune on the user side. It's used for device enrollment and mobile device management. It's used for remote desktops and remote control for compliance. 

How has it helped my organization?

The solution helped us resolve user enrollment issues. Sometimes, users want to reset, for example, file server systems and Intune ensures a user can't just enroll any new systems.

What is most valuable?

The mobile device management is very useful. With mobile device management, we can monitor everything and control devices. We can monitor devices and fix things on remote desktops. 

Intune brings all endpoints and security management tools into one place. This helps us monitor everything from one portal. We can exclude any PowerShell command. It helps us not only monitor for but also fix any problems. We can add and remove items remotely from any device from a single place. 

The solution has a helpful feature called Co-Pilot. We can access it via the portal and configure it as we need. However, I have not used it myself. 

We use Intune with a hybrid model. We can connect it easily to other services. 

With the ability to monitor everything from one place, our security is quite good. The level of security is better. I'd rate the level of security we've been able to achieve ten out of ten.

It's positively affected IT productivity in our organization. Having Intune has made our IT engineers more effective. They can use the cloud portal from anywhere and at any time to easily adjust or deploy whatever users need. 

We've been able to save money compared to using SCCM. Intune has helped from a cost-savings perspective, although I can't speak to exact costs. 

What needs improvement?

There are a lot of updates happening on Microsoft.

For how long have I used the solution?

I've used the solution for about six months. 

What do I think about the stability of the solution?

I haven't had any challenges with stability.

What do I think about the scalability of the solution?

I haven't come across any limitations in terms of scalability. 

How are customer service and support?

I've never had to reach out to technical support.

Which solution did I use previously and why did I switch?

I also use VMware. 

How was the initial setup?

The initial setup was straightforward. We simply needed to create an account don't he Microsoft side and then we can go and get licenses. 

I administrate and maintain Intune for the company.

What's my experience with pricing, setup cost, and licensing?

I don't have any visibility in regards to Intune pricing. 

What other advice do I have?

I'd recommend Intune to others. I'd rate Intune ten out of ten. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Flag as inappropriate
PeerSpot user
CISO at a financial services firm with 201-500 employees
Real User
Streamlines endpoint management, enhances security and ensures seamless device integration, offering a user-friendly solution with robust support
Pros and Cons
  • "It is a comprehensive security solution that not only controls access to enterprise resources but also tracks and prevents unauthorized access, ensuring the protection of sensitive data and preventing potential data loss scenarios."
  • "There is room for improvement, particularly in terms of compatibility, extending beyond the well-known major brands."

What is our primary use case?

Microsoft Intune serves as a crucial tool to safeguard against unauthorized access and protect sensitive data. By implementing Intune, we can control and monitor device usage, acting as a gateway to enterprise services. Access to corporate resources, including email and sensitive information, is restricted to devices enrolled in Intune. It is a comprehensive security solution that not only controls access to enterprise resources but also tracks and prevents unauthorized access, ensuring the protection of sensitive data and preventing potential data loss scenarios.

How has it helped my organization?

It acts as a central integration point for endpoint and security management tools, simplifying the connection process. However, considerations such as privacy laws may impact the integration of certain devices, like partner devices, emphasizing the flexibility of Intune in adapting to various organizational needs. Given that Microsoft Intune operates on a policy-driven model, connecting all staff devices becomes a matter of duty. This is because the platform excels in efficiently managing endpoints by enforcing policies that govern device security, access, and compliance.

When it comes to the user experience, integrating and onboarding with Microsoft Intune is a seamless process for the majority of devices, such as those from well-known brands like Android and iOS, where compatibility stands at a high success rate of around ninety-four percent. However, it's important to acknowledge that there might be challenges with certain lesser-known or non-mainstream brands, where compatibility may not reach a hundred percent.

The implementation of Intune hasn't significantly impacted IT productivity within our organization. Instead, its primary function is to enhance security for remote connections.

Intune has played a vital role in minimizing the risk of security breaches. Its effectiveness lies in restricting unauthorized access, particularly in scenarios such as conferences where secure connectivity is crucial. This reinforces the overall security posture, especially concerning mobile devices.

Implementing this product has resulted in cost savings for our organization. In the event of data loss, the expenses associated with investigations and remediation are significantly reduced. The product adds value by mitigating the financial impacts related to security incidents.

What is most valuable?

Intune plays a crucial role in ensuring the security of hybrid work environments and safeguarding data on both company-owned and BYO devices. While it functions seamlessly for mainstream devices, including Dimensional and others, there might be some challenges with certain brands of personal devices. However, overall, Intune provides a comprehensive platform where both corporate and partner devices can coexist securely.

The utilization of Microsoft security signals, coupled with the impact of Intune on our organization's security, is a pivotal aspect of our strategy. While there may be some limitations in the user interface when dealing with BYOD scenarios, the synergy with Microsoft Defender solutions is noteworthy. The seamless integration within the Microsoft suite ensures a cohesive security approach. Additionally, the incorporation of phishing information and tracking numbers further enhances our security posture, especially when dealing with partner devices atop the Microsoft Defender platform.

The integration of Intune suite capabilities with Microsoft 365 and Microsoft Security for both cloud and on-premises managed devices is highly valuable. The suitability depends on the specific requirements and the number of users in a given scenario.

What needs improvement?

There is room for improvement, particularly in terms of compatibility, extending beyond the well-known major brands.

For how long have I used the solution?

I have been working with it for approximately a year.

What do I think about the stability of the solution?

It provides good stability.

What do I think about the scalability of the solution?

We never faced any issue with scalability.

How are customer service and support?

Thus far, we have not encountered any issues with the support provided, and their responsiveness has been satisfactory.

What about the implementation team?

The deployment process is straightforward; we simply configure the necessary settings within the server, initiate the enrollment, and push it out. This streamlined approach facilitates staff onboarding efficiently.

What's my experience with pricing, setup cost, and licensing?

When it comes to licensing, the decision to include Intune may vary based on the volume of users and the specific modules needed.

What other advice do I have?

Overall, I would rate it eight out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Srini B. - PeerSpot reviewer
Senior Manager Information Technology Infrastructure at a financial services firm with 11-50 employees
Real User
Top 10
Easy to deploy and allows us to work form anywhere
Pros and Cons
  • "Autopilot is the most valuable feature of Microsoft Intune."
  • "Integrating certain group policies can be challenging and may necessitate using on-premises systems to integrate them with Microsoft Intune."

What is our primary use case?

I use Microsoft Intune for my Active Directory and my end-point and zero-day protection.

How has it helped my organization?

Microsoft Intune has allowed us to work from anywhere.

What is most valuable?

Autopilot is the most valuable feature of Microsoft Intune.

What needs improvement?

Integrating certain group policies can be challenging and may necessitate using on-premises systems to integrate them with Microsoft Intune.

I am encountering challenges integrating with multiple domains outside of my own due to unsupported Active Directory extensions.

For how long have I used the solution?

I have been using Microsoft Intune for four years.

What do I think about the stability of the solution?

Microsoft Intune is stable.

What do I think about the scalability of the solution?

Microsoft Intune is scaled to support more than 39,000 users without any issues. The initial setup process for the on-premises to Active Directory hybrid integration can be quite technical. We have 100 users.

How are customer service and support?

Microsoft Intune's technical support is good.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is straightforward. I am an architect and completed the deployment on my own within two months.

What about the implementation team?

The implementation was completed in-house.

What was our ROI?

Using a hybrid setup instead of relying on a third-party product can provide a better return on investment with Microsoft Intune.

What's my experience with pricing, setup cost, and licensing?

Microsoft Intune is included in our Office 365 suite license. The E5 license is expensive.

What other advice do I have?

I give Microsoft Intune an eight out of ten.

Microsoft Intune doesn't require any maintenance from our end.

I recommend Microsoft Intune because it can be easily integrated with other Microsoft products into a single suite, making it a plug-and-play solution that can be set up with ease.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer2315082 - PeerSpot reviewer
IT Systems Admin at a government with 10,001+ employees
Real User
Top 20
A cost-effective solid solution that helps to manage devices
Pros and Cons
  • "The tool's most valuable feature is Autopilot."
  • "I have a lot of Apple products in my environment. It would be nice to have an improved integration of Apple products with Microsoft Intune without Jam."

What is our primary use case?

We are replacing AirWatch MDM with the product so that we can manage our devices. Eventually, we plan to migrate from SCCM, Windows, and Mac to the Microsoft Intune environment. It will help different departments to manage devices from one place. 

How has it helped my organization?

Microsoft Intune helps us lock and open iPads easily. 

What is most valuable?

The tool's most valuable feature is Autopilot. 

What needs improvement?

I have a lot of Apple products in my environment. It would be nice to have an improved integration of Apple products with Microsoft Intune without Jam. 

For how long have I used the solution?

I have been working with the product for a year. 

What do I think about the stability of the solution?

Microsoft Intune's stability and uptime are good. 

How are customer service and support?

Microsoft Intune has a lot of documentation. Its support is also good. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We used AirWatch before Microsoft Intune. We switched because of cost and customer care issues. We are currently in an SCCM environment. 

How was the initial setup?

The solution's deployment is both complex and intuitive. 

What's my experience with pricing, setup cost, and licensing?

Microsoft Intune's pricing is reasonable. 

Which other solutions did I evaluate?

We chose the product because it was cost-effective and easy to integrate with our system. 

What other advice do I have?

We are working with a Microsoft partner to improve our environment's security. It helps us condense our profile into one instead of three. 

We expect time and money savings in the long run since it is a cost-effective solution. We are Microsoft partners. It integrates everything into one platform, which helps us save time since we don't have to jump from one platform to another. 

I rate the product a seven. It is a good product with good capabilities. It is a solid solution that is easy to work with. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Kevin Egger - PeerSpot reviewer
Information Technology System Engineer at a tech consulting company with 201-500 employees
Real User
Top 5
The solution's ability to set conditional access polices significantly reduce your risk from unpatched software
Pros and Cons
  • "The most valuable feature is probably mobile device management. Small businesses are coming under greater scrutiny and requirements for compliance as time goes on. We don't have to worry about a VPN because we can manage these devices, control company data, and lock users out. If needed, we can remotely wipe devices and deadman-switch them."
  • "Intune's third-party patch management could be better. It should be easier for the average system admin to keep non-Microsoft applications updated."

What is our primary use case?

We use Intune to manage mobile devices and applications. I'm not solely using Intune for the agents installed on each machine. I use the Microsoft Endpoint Manager solution primarily for device configuration, device compliance, and mobile application management.

I have 80 different clients, and their environments vary. We have people that work in offices across multiple foreign countries and domestically. Most have a strictly cloud-based deployment, but a few have a private cloud that we host ourselves. Some have their own data centers. I've got a couple of clients with hybrid environments. None of them are entirely on-prem. Everybody is using a hybrid cloud or completely on the cloud.

How has it helped my organization?

Intune helps us from a compliance standpoint by making it easier for system admins to configure devices and ensure they conform to business policies. It gives us more visibility into where the devices are and their postures.

I try to use conditional access policies for every client I can. It's essential for a zero-trust security posture. Conditional access policies make it possible. This dramatically reduces the risk of unpatched devices connecting to our corporate network.

The conditional access policies, compliance, and updates affect employees positively. Once the value is explained to them, they don't complain much about MFA.

You can use Endpoint Manager to see whether or not a device is compliant and apply conditional access policies in Entra to only allow connections to your environment from compliant devices. That significantly reduces your risk from unpatched software because that device cannot connect to your machine or environment. Using those two features together definitely helps protect us.

It saves some time. Either way, you will have to manage an Active Directory environment, but Intune allows you to manage devices over the internet. You don't need to worry if the machines are connected to a VPN or on-site.

What is most valuable?

The most valuable feature is probably mobile device management. Small businesses are coming under greater scrutiny and requirements for compliance as time goes on. We don't have to worry about a VPN because we can manage these devices, control company data, and lock users out. If needed, we can remotely wipe devices and switch them. 

It's a big deal to be able to assure an insurance company or auditor that our endpoint devices are effectively managed. Intune is a solid solution if you use Microsoft and Microsoft 365 products.

What needs improvement?

Intune's third-party patch management could be better. It should be easier for an average system admin to keep non-Microsoft applications updated. 

For how long have I used the solution?

I have used Intune for about six years now.

What do I think about the stability of the solution?

Intune is highly stable. 

What do I think about the scalability of the solution?

Intune is highly scalable. Thus far, I haven't had to expand it to a thousand users, but the scalability appears to be readily available.

How are customer service and support?

I rate Microsoft support a nine out of ten. I enjoy working with them, and I'm often surprised at how good they are. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I've used Rocky MDM and Google MDM. Microsoft is the primary platform on which we do business. Intune works better with the Windows operating system, desktop applications, and SharePoint. It also reduces vendor complexity. I don't require multiple vendors, which reduces my costs because many features are baked into it. 

I log into fewer systems daily. Microsoft's virtual monopoly on productivity applications in your average small business makes them the right choice in most situations.

How was the initial setup?

Deploying Intune is pretty straightforward. It doesn't matter whether you use autopilot or manual deployment. Each machine is enrolled in Intune automatically if it's connected to Azure AD with the correct user licensing. It's a relatively painless enrollment process.

Intune involves some maintenance, like any solution. You must ensure it's still working correctly and helping you achieve your business goals for compliance and configuration of your endpoints.

Which other solutions did I evaluate?

Meraki and Google are relatively common in small businesses. Many small businesses use Meraki for wireless and networking solutions, so that is one MDM option. Also, small businesses often start with Google and transfer to Microsoft 365 once they mature. Google is already in the environment. I don't sell anything as an IT guy, so I don't care what solution my clients use. I choose what's best for them in that particular instance.

I have tried Okta, but I haven't used it seriously as an MDM solution. I've only used Okta as an SSO provider. I didn't realize they did MDM solutions. I don't understand the point of Okta. If you have Azure AD and Entra, I can't fathom why you would bother with Okta. It seems redundant to me.

What other advice do I have?

I rate Microsoft Intune a nine out of ten. Don't underestimate the solution, and spend time learning about it. Intune has some powerful capabilities. Often, small businesses acquire systems but never fully utilize them because nobody has the time to dive deeply into them. It's a big solution with a lot of features. 

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros sharing their opinions.
Updated: December 2024
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros sharing their opinions.