Microsoft Defender for Endpoint: Setup and Best Practices

Microsoft Defender for Endpoint: Setup and Best Practices

After some weeks, here is the second part of my series on Microsoft Defender for Endpoint. In this part, we delve into essential insights and best practices for Microsoft Defender for Endpoint. I will guide you through important configurations and strategies to enhance your organization’s security.

Part 1 (How to enroll device to Microsoft Defender for Endpoint and how does it work)

Read More »
The easy way to make data science with Intune

Data Science with Microsoft Intune — Quick Start

This is a Quick Start to Data Science with Microsoft Intune. The post walks through how to pull Intune data into a notebook, do meaningful exploratory analysis on devices, apps, and compliance, and turn the result into something an admin team can actually act on.

As you know I like everything what is related to data science and Intune. In this blog I will show you a solution how you can get some insights about your Intune environment you did not have before.

The easy way to make data science with Intune
Read More »
New Version of the intune group assignment script

New Intune Group Assignment Script (Updated)

This post introduces the new and Updated Intune Group Assignment Script. The original was useful but limited; the New version of the Intune Group Assignment Script supports dynamic groups, scope tags, exclusion assignments, and a much cleaner CLI for use in pipelines.

A few months ago I released a script which lists you all assignments of a Microsoft Entra ID group in intune. With this blog post I will release a new version of this script which includes more configuration objects and improves a lot of the code parts.

New Version of the intune group assignment script
Read More »
Azure Monitor Agent to monitor Windows devices (1/2) – Setup

Azure Monitor Agent to monitor Windows devices (1/2) – Setup

In this blog post we want to have a closer look into a way to collect data from client systems to monitor them. With endpoint analytics Microsoft provides a very powerful way to analyze clients, remediate potential issues or also detect anomalies in the field. If you are interested in unaggregated and more detailed data to build custom solutions then the Log Analytics management agent is the right solution for you. This is the first part of a small series with two parts. In this part we will check how this service works and how to set it up, and in the other part how you can work with the data.

Diagram shows monitored object purpose and association.
Read More »
Get started with Intune driver update management

Intune Driver Update Management — Quick Start

This is a quick start guide to Intune driver update management — the policy class that finally gives endpoint admins a controllable, transparent way to roll driver updates across a fleet of Windows devices. From profile creation to ring-based deployment, in under 30 minutes.

Many Intune admins have been waiting for the Intune driver update management feature. Now it is here. In this blog post I want to describe what’s behind this feature, how it works, and how you can get started with it.

Get started with Intune driver update management
Read More »
Export Intune Data to OneLake for Power BI with Fabric

Export Intune Data to OneLake for Power BI with Fabric

Intune provides a lot of data that can be exported via interfaces, which is also the foundation for Intune reporting and analytics. But wouldn’t it be cool if you could have everything from the data export to the Power BI dashboard in one place in a portal and additionally query the data Graph provides you with via SQL to build complex queries. That’s exactly what Microsoft Fabric delivers. In this blog we would like to take a closer look at this new platform.

Microsoft Fabric workflow exporting Intune data to OneLake
Read More »