TrustRadius: an HG Insights company

Microsoft Intune

Score8.3 out of 10

421 Reviews and Ratings

What is Microsoft Intune?

Microsoft Intune (formerly Microsoft Endpoint Manager), combining the capabilities of the former Microsoft System Center Configuration Manager, SCCM or ConfigMgr, is presented as a unified endpoint management option.

Microsoft Intune is an endpoint management solution for mobile devices, an MDM solution that allows the user to securely manage iOS, Android, Windows, and macOS devices with a single endpoint management solution.

The component Endpoint Configuration Manager (the former SCCM) is a system monitoring and management platform that can be deployed as an agent, via the cloud, or on-premises. It can manage systems across OS types (Windows, Mac, Linux), as well as multiple environments, including servers, virtual environments, and mobile devices from a single management console, and supports scaling capabilities, such as future application delivery.

The platform includes a customizable reporting tool to inform future business software decisions. It also enables endpoint protection from malware and vulnerability identification within the monitored systems and infrastructure.

Microsoft Intune for Business

Use Cases and Deployment Scope

We use Microsoft Intune in our organization for many things. We use it as an MDM for phones, we push software and Windows updates through it, and we configure security policies and settings similar to group policy. This product consolidates a lot of other programs we used to use to accomplish the same goals.

Pros

  • MDM
  • Windows Updates
  • Group Policy Migration and Management

Cons

  • UI
  • Learning/User guides

Return on Investment

  • Increases automation - reduces labor hours needed to complete tasks
  • Allows streamlined migration from dated configuration channels

Usability

Alternatives Considered

Skybox Security

Microsoft Intune is a great device management tool.

Use Cases and Deployment Scope

We utilized Microsoft Intune to manage our laptops and desktops, as well as our employee's personal devices. For corporate devices we are controlling WIFI access, installing Office, managing secure folder access, tightening security controls, and managing encryption. Personal devices must be enrolled to use company resources such as Teams and email. The devices are checked for security standards and can be remotely wiped in the case of loss or theft.

Pros

  • Controlling Windows features and settings.
  • It's very easy to implement and manage the certificates for Apple products.
  • Robust configuration for managing a large number of devices.

Cons

  • Deploying applications to Windows devices.
  • Removing a policy from Microsoft Intune does not remove it from the endpoints.
  • The update ring feature requires increased licensing.

Return on Investment

  • Because the product is included in our MS 365 license, we were able to save $5000 a year by removing our existing MDM system.
  • We have better control of Windows settings, such as Wi-Fi, anti-virus, and Office installs. No longer configuring each user manually saves our department hours per deployed PC.
  • The use of dynamic groups greatly reduces the administrative overhead per device.

Usability

Alternatives Considered

Sophos Mobile

Other Software Used

Microsoft Defender for Endpoint, Microsoft 365, Windows Server

Microsoft Intune

Use Cases and Deployment Scope

We use Microsoft Intune to manage most of the laptops, and a portion of the mobile phones. Through Microsoft Intune we have control and a good overview of how compliant the devices are based on the policy that has been applied. The distribution of software also runs through Microsoft Intune, and receives regular updates.

Pros

  • Automated Device Provisioning
  • Compliance & Conditional Access Enforcement
  • Application Deployment & Management

Cons

  • Sometimes it takes a little longer for updates to be implemented properly.
  • Installation times vary. Sometimes it's very quick, and sometimes it takes longer.
  • Sometimes it is confusing which Microsoft licenses are required for certain functionalities

Return on Investment

  • Installation procedure is automatic which saves you a lot of time
  • You can quickly see how compliant all devices are, and take targeted action where necessary. This saves time
  • Many actions can be solved remotely, so users do not have to physically come to the office for a solution.

Usability

Alternatives Considered

Ivanti Neurons for MDM, Google Endpoint Management and Citrix Endpoint Management

Other Software Used

HPE Aruba Ethernet Switches, Aruba Instant Wi-Fi Access Points, Google Chrome

Great product!

Use Cases and Deployment Scope

We use Microsoft Intune to manage all windows, Androids and ios

Pros

  • Large scale and SaaS
  • Security for O365 apps
  • Outlook Mobile app

Cons

  • Support
  • Creating nested user groups
  • All in one plan

Return on Investment

  • Easy access to mail
  • Get all o365 apps
  • Androids to front line workers

Usability

Alternatives Considered

Ivanti Neurons for MDM, Workspace ONE Unified Endpoint Management (UEM) and Jamf Pro

Other Software Used

Microsoft Teams, OneDrive

Best all-around MDM for Windows, Android, iOS, macOS

Use Cases and Deployment Scope

We use Microsoft Intune to manage our Windows, Android, iOS, and macOS devices. It provides a single admin console for all device types, ensuring they stay compliant with our configurations and app requirements. Additionally, Microsoft Intune gives us a streamlined way to deploy apps and configure device settings. We've also intgrated Windows Autopilot, Apple Business Manger, and Android enterprise to make onboarding new devices easy.

Pros

  • Deploy device settings and policies
  • Deploy apps and app settings
  • Checks device compliance
  • Streamlines onboarding of devices
  • Deploy device update policies

Cons

  • It should integrate with BeyondTrust and other remote access tools, not just TeamViewer.
  • App deployments should have a pre-install script option, not just requirement script options.
  • Sync now doesn't always update everything, should be an easy way to push and app, script, or settings instantly so you don't have to wait 24 hours

Return on Investment

  • Provides major security improvements by ensuring device compliance along with conditional access.
  • Onboarding devices is now smoother which saves time.
  • Resetting and reassigning devices with autopilot is quicker and takes less steps than it used to.

Usability

Alternatives Considered

PDQ Deploy & Inventory and PDQ Connect

Other Software Used

PDQ Connect, PDQ Deploy & Inventory, PDQ Detect