Try our new research platform with insights from 80,000+ expert users
system engineer 2 at a retailer with 10,001+ employees
Real User
Top 5
Mar 7, 2025
Management tools streamline device provisioning and security across multiple platforms
Pros and Cons
  • "Microsoft Intune is a cost-saving solution, reducing IT department workload and allowing for faster device provisioning compared to traditional methods."
  • "The reporting part needs improvement, and it would be beneficial if it could integrate with third-party tools instead of just Power BI."

What is our primary use case?

I use Microsoft Intune to manage devices and Windows, including Linux and macOS. It provides a zero-touch experience for provisioning mobile devices like iOS, iPad, Android, and macOS. It offers security and serves as a management tool where multiple products can be managed.

What is most valuable?

Microsoft Intune helps me manage devices and Windows, including Linux and macOS. It provides a zero-touch experience for provisioning mobile devices like iOS, iPad, Android, and macOS. It offers security and acts as a management tool where multiple products can be managed. Having all endpoint and security management tools in one place reduces the IT department's workload, making provisioning devices faster compared to traditional methods.

What needs improvement?

The reporting part needs improvement, and it would be beneficial if it could integrate with third-party tools instead of just Power BI. Additionally, the inventories could be enhanced.

For how long have I used the solution?

I have ten years of experience working with Microsoft Intune. I also have experience with Jamf Pro, which I have used for four years.

Buyer's Guide
Microsoft Intune
January 2026
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,733 professionals have used our research since 2012.

What do I think about the stability of the solution?

I can give Microsoft Intune a ten out of ten for stability.

What do I think about the scalability of the solution?

I can give Microsoft Intune a nine out of ten for scalability.

How are customer service and support?

Customer service is good, and I would rate it nine out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I did not use any other solution before Microsoft Intune.

How was the initial setup?

The initial setup was conducted in-house, and no external integrator or consultant was used.

What about the implementation team?

We did not use an integrator or consultant; everything was done in-house.

What was our ROI?

Microsoft Intune is a cost-saving solution, reducing IT department workload and allowing for faster device provisioning compared to traditional methods. However, I am not sure about the exact savings per month or year.

What's my experience with pricing, setup cost, and licensing?

I find the price somewhat affordable.

Which other solutions did I evaluate?

I never evaluated any other options before choosing Microsoft Intune.

What other advice do I have?

My advice is to improve the reporting capabilities and integrate with third-party tools. I rate the overall solution nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Maarten Van Der Tol - PeerSpot reviewer
Manager, Information Technology at a government with 1,001-5,000 employees
Real User
Top 20
Dec 4, 2024
Enables secure and flexible device management across multiple platforms
Pros and Cons
  • "Intune makes our organization more secure and flexible. We can onboard new employees faster and more securely. We are a governmental organization with strict regulations, and Intune helps us comply with those requirements."
  • "Intune makes our organization more secure and flexible."
  • "We would like to see the ability to use multiple personas on a device, similar to Samsung Knox, included in future updates."
  • "Customer service used to be better, but as we are nearing the end of the contract, the focus on investing in us as a customer has diminished. It is what one would expect in such a situation."

What is our primary use case?

We use Microsoft Intune to manage mobile devices and distribute software. It helps us securely manage multiple vendors and operating systems.

How has it helped my organization?

Intune makes our organization more secure and flexible. We can onboard new employees faster and more securely. We are a governmental organization with strict regulations, and Intune helps us comply with those requirements.

What is most valuable?

The most valuable feature for us is mobile device management because it allows us to use multiple vendors and operating systems securely. I don't use Intune directly. My teams have used it, and I don't get any complaints about the user experience. 

Intune Suite's enterprise application management has made my life a little more difficult because now I know the kind of applications circulating in my organization. On the other hand, we started a program to fix the problem, and Intune helps us by providing us with insights.

Copilot helps because you can use the prompt to ask questions about the Intune-managed environment. That shortens the time we spend on reporting and that kind of stuff. Our analysis will be more efficient.

What needs improvement?

We would like to see the ability to use multiple personas on a device, similar to Samsung Knox, included in future updates.

For how long have I used the solution?

I have used Intune for the two years I have worked for my company, but the company has been using it for longer. 

What do I think about the scalability of the solution?

Intune's scalability is excellent. We are not a large company—only around 2,000 employees— and Intune handles our needs well.

How are customer service and support?

Customer service used to be better, but as we are nearing the end of the contract, the focus on investing in us as a customer has diminished. It is what one would expect in such a situation.

How would you rate customer service and support?

Positive

How was the initial setup?

Deploying Intune was difficult for me, but we have a deployment manager who handles it. 

What about the implementation team?

We used multiple consultants, including Capgemini and KPN. Our experience with Capgemini has been positive due to a long-term relationship.

What was our ROI?

It is hard to quantify the ROI in hard metrics, but using Intune allows faster onboarding, increased flexibility, and more insight into device and software usage.

What's my experience with pricing, setup cost, and licensing?

We are a governmental organization, so we can get discounts. Considering our environment, we get good value. 

What other advice do I have?

I rate Microsoft Intune eight out of 10. Microsoft Intune fits well into our architecture, and they are developing new features like Copilot. It has contributed to the seamless integration with our existing setup.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Microsoft Intune
January 2026
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,733 professionals have used our research since 2012.
End User Computing Architect at a consultancy with 10,001+ employees
Real User
Top 10
Apr 16, 2024
Simplifies IT and security operations and enrolling endpoints is a breeze
Pros and Cons
  • "A valuable feature is user enrollment, where users can enroll their devices in their organizations themselves."
  • "The current Intune reporting functionality could benefit from some improvements."

What is our primary use case?

We use Intune to manage endpoints as a centralized enterprise solution. Instead of relying on Active Directory or an on-premise system, we directly manage employee devices using Microsoft Intune. Intune, a cloud-based SaaS product, simplifies endpoint management. From a user perspective, it's an improvement. Users no longer need to be on the office network. They can set up their devices anywhere with an internet connection, whether at home or another location.

Security is also enhanced. By using Intune as a mobile device management solution, we can implement security controls and restrictions on endpoints. Intune helps us achieve a balance between user experience and security.

How has it helped my organization?

Managing remote employee devices with Microsoft Intune is easy. Intune acts as a central platform for deploying controls, policies, and applications to our endpoints. It simplifies the delivery of these configurations to our remote workforce.

Intune simplifies our mobile application management. Once implemented across the organization, it will eliminate our reliance on on-premises solutions. Previously, managing endpoints required using our System Center Configuration Manager. Now, Microsoft offers a unified solution called Microsoft Endpoint Manager. Intune, a key component of this suite, allows for convenient device enrollment over the internet, streamlining endpoint organization.

Intune helps bring our endpoints and security management tools into one place.

Consolidating endpoints and security management tools simplifies IT and security operations. This unified approach offers a single solution or console for all tasks. Role-based access control ensures each administrator only sees and modifies what's relevant to their role. For example, the security team can access Intune solely for security-related functions, while the patch management team has its own set of permissions. This centralized management is significantly easier to handle than using multiple third-party tools. Intune provides a comprehensive solution where everyone can configure settings – security, endpoints, controls, etc. – within a single platform.

Intune offers endpoint visibility and IT control across various device platforms. It simplifies troubleshooting and device management compared to other solutions. Intune excels in providing a comprehensive solution. We can manage applications, security controls, and patching processes all within Intune. This eliminates the need to rely on three separate solutions. With Intune, everything is consolidated into a single platform, allowing for combined reporting and streamlined issue resolution.

Enrolling endpoints with Intune is a breeze! The overall user experience is excellent, easily a nine out of ten.

There are three critical features of Intune for maintaining our devices' security. Endpoint encryption ensures data on the device is scrambled even if it's lost or stolen. Intune supports BitLocker encryption for Windows devices and file-level encryption for Mac devices. Defender is a comprehensive security solution that helps protect devices from malware, viruses, and other threats. Compliance policies in Intune allow us to define security requirements for devices. These policies can enforce encryption, complex passwords, and other security settings. If a device doesn't meet the compliance policy, it can be restricted from accessing organizational resources. Intune can also send notifications to users or administrators when a device becomes non-compliant.

In the initial stages of migrating from our on-premises solution to Intune, we relied on device compliance policies. We configured these policies to require the latest antivirus signatures, specifically targeting developer devices. This ensured compliance and minimized the risk of non-compliance impacting their work. While compliance policies were initially used, we've since transitioned to Microsoft Defender, which now plays a major role in our device security strategy.

Intune's application deployment feature has significantly improved efficiency in our IT department. As one of its key functionalities, Intune allows deployment of a variety of applications with different extensions, such as .DXE or .MSI files. However, for applications requiring custom license scripts, batch files, or executables, Intune provides its own Windows app deployment toolkit. This toolkit facilitates the conversion of these files into a format compatible with the Intune app store and its update system.

The user interface is easy to navigate. Microsoft provides monthly updates that introduce new features. Previously, they provided pie chart visualizations for complaint and policy control status reports. These have been transitioned to standard chart formats. Overall, the UI continues to improve with each Microsoft update.

Company-owned devices are subject to a different set of policies. These policies may be very strict, restricting certain functionalities, or they may prioritize security above all else. On the other hand, for BYOD programs, we provide users with certain privileges for their mobile devices and laptops. We create a secure, isolated environment in a sandbox to manage the devices within that environment. Security is a major consideration for both BYOD and company-owned devices.

Intune has increased our IT productivity for patching and security by around 15 percent.

Microsoft Intune helps our organization reduce the risk of security breaches by eight percent by deploying zero-day patches in conjunction with Defender and Sentinel.

Intune has helped us consolidate vendors with the driver deployment and onboarding.

We manage configurations for Microsoft 365, co-managed devices, Azure, Defender security controls, and DLP controls within Intune. This centralized platform allows us to configure roughly 80 percent of these services and controls in a single location.

What is most valuable?

A valuable feature is user enrollment, where users can enroll their devices in their organizations themselves. This streamlines the process and saves IT time.

Another key benefit is zero-day productivity. During enrollment, the user has access to the applications and settings the organization needs them to have, making them ready to work immediately. Intune essentially pre-configures the device based on the user and organization during enrollment.

Finally, Intune offers easy patch management for various endpoints, including Windows 10, 11, and Macs. Deploying upgrades and monthly patches is significantly simpler compared to other solutions, both from Microsoft and third-party vendors.

What needs improvement?

The current Intune reporting functionality could benefit from some improvements. Specifically, a report that tracks patch deployment status would be valuable. Ideally, I'd like a report that provides device-level details on applications and controls deployed. However, it seems like other organizations might be more interested in control-centric reports, showing details like what control was deployed, the number of devices affected, and other relevant device data. Overall, reporting is the area where we're encountering the most challenges with Intune.

For how long have I used the solution?

I've been using Microsoft Intune as a comprehensive solution for the past six years. While I had some experience with it before 2019, it was limited to mobile device management. Since 2019, I've been managing the full Intune suite as an administrator, overseeing Windows endpoints, Mac endpoints, Android and iOS.

What do I think about the stability of the solution?

I would rate the stability of Microsoft Intune eight out of ten.

What do I think about the scalability of the solution?

Microsoft Intune excels in scalability, earning it a nine out of ten rating. It empowers organizations to migrate to the cloud and manage all their endpoints seamlessly. This includes a wide range of platforms like Windows, macOS, mobile devices, and even Linux. Intune simplifies endpoint management by offering a centralized solution for all these platforms.

How are customer service and support?

The response time and technical knowledge of the support team is not what it used to be.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We previously used an on-premises solution, Microsoft Endpoint Manager, to manage our devices. The pandemic necessitated a shift to the cloud.

How was the initial setup?

The initial deployment of Intune can be complex because it is linked to Microsoft Entra, which itself is a complex product. This complexity depends on the desired outcome. Intune's deployment complexity hinges on whether users will enroll their devices themselves or if the IT team will enroll them and grant access. A proper pre-assessment is crucial to determine if Intune's complexity aligns with our desired outcome.

Our deployment took two months to complete because of the internal security approvals we required.

Three administrators were required for the deployment.

What's my experience with pricing, setup cost, and licensing?

The price for Intune is fair.

What other advice do I have?

I would rate Microsoft Intune eight out of ten. There are some improvements concerning the reports and there are other design-related concerns that we are looking at in Intune.

We don't have the tunnel option because we primarily work in a restricted computer environment. Our organization uses Microsoft Intune to manage applications within a dedicated sandbox environment. We perform frequent updates to ensure everything is current.

During the initial onboarding process, we encountered some challenges, and multiple teams were involved in resolving them. For example, users from India might experience issues like broken URLs or restricted access due to their ISPs. Similarly, in China, certain URLs might be blocked by some internet service providers. To address these issues, we initially involved additional administrators from each region on the administrative side. However, we've since transitioned to a centralized management structure with a core team of five to six members overseeing the entire organization.

We maintain a separate development Intune environment for User Acceptance Testing specific to the Asia Pacific region. Since our production environment is also located in Asia Pacific, we essentially have two Intune instances: one for development and one for production. We also have around 290,000 devices.

We have a team of five Intune administrators. The only maintenance required for Intune is the updates.

I recommend Microsoft Intune.

Based on the number of users and devices you're enrolling, I recommend having separate UAT and production Intune environments for larger deployments. For simpler environments, a single Intune license is sufficient to manage your devices and integrate with your Enterprise and Microsoft 365 solutions.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2748810 - PeerSpot reviewer
UC Architect at a consumer goods company with 10,001+ employees
Real User
Top 20
Aug 9, 2025
Works perfectly for our diverse organization but support needs improvement
Pros and Cons
  • "Microsoft Intune has transformed my organization; we are managing to scale the Intune deployment across all our regions efficiently, and it works perfectly for our needs."

    What is our primary use case?

    We have hundreds of thousands of users, so we have to manage their devices, and Microsoft Intune plays an important role in managing those devices through deploying applications, operating systems, and security configurations. 

    How has it helped my organization?

    Microsoft Intune has transformed my organization. We are managing to scale the Intune deployment across all our regions efficiently. 

    It works perfectly for our needs. Our organization's architecture is well-suited for Microsoft Intune. Given that we are a diverse organization, managing connectivity with our endpoints can be quite challenging. However, Microsoft Intune offers an ideal interface solution that meets our requirements.

    What is most valuable?

    It is a device management tool that includes all the features which were available in SCCM, such as OS deployment, user device enrollment, and Autopilot. These features are primarily important for us to do automated OS deployment.

    As a user, I assess the user experience of Microsoft Intune to be seamless. Users have to log in with their email ID on the device itself, and the process is seamless. Their 365 is integrated, and Outlook is configured automatically.

    What needs improvement?

    Microsoft Intune is evolving. They are introducing new features every month. For instance, they integrated Copilot, among many other features added in terms of Apple and Chrome. These enhancements are being implemented gradually, and I believe they are actually improving the user experience.

    Local administrators use this tool to connect with users, and they require a password to be reset or retrieved. It can be a bit inconvenient for them to log into Intune just to raise privileges and reset the password.

    Their technical support can be improved. 

    For how long have I used the solution?

    We have been using Microsoft Intune for Windows devices since 2021.

    What do I think about the stability of the solution?

    Microsoft Intune is stable and reliable. I did not find any anomalies with the solution that Microsoft has introduced. None of the market has reported downtime for longer periods, though they might have experienced something with very short notice, but they have not reported it.

    What do I think about the scalability of the solution?

    It fits perfectly with the growing needs of my organization. 

    How are customer service and support?

    When we raise a question or issue, it takes a longer time to resolve. I would rate the technical support a five out of ten.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We were using SCCM before Microsoft Intune. It was cost-effective to switch from SCCM to Microsoft Intune because it has no local infrastructure to manage. Earlier, we were paying to manage our SCCM across hundreds of primary and secondary servers globally.

    How was the initial setup?

    I was the one who designed the solution for my organization. We only faced a challenge when trying to implement a hybrid solution because it wasn't feasible with our multiple forests. As a result, we had to discard the option for hybrid deployment. Instead, we decided to use pure Autopilot devices for the Entra join process. For the existing domain-joined devices, we opted for co-management. Ultimately, the primary authentication for these devices will remain with the domain, but they will operate in a hybrid state.

    What was our ROI?

    In terms of infrastructure costs, we were previously managing our SCCM across the entire group, which involved hundreds of primary and secondary servers for managing endpoints and distribution centers. When we calculate the total expenses, Microsoft Intune turns out to be quite cost-effective. In fact, entire regions have approached us to adopt Microsoft Intune, so I can see that the ROI is fully recoverable. 

    What's my experience with pricing, setup cost, and licensing?

    We didn't have to pay anything for Microsoft Intune with our subscription.

    Which other solutions did I evaluate?

    We have not evaluated other options before choosing Microsoft Intune because it comes free with all our licenses distributed across our users.

    What other advice do I have?

    I would rate Microsoft Intune a seven out of ten. There are many things they have to add.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Aug 9, 2025
    Flag as inappropriate
    PeerSpot user
    Julio Barahona - PeerSpot reviewer
    Team Lead, Information Technology Systems Administration at a tech vendor with 501-1,000 employees
    Real User
    Top 10
    Dec 16, 2024
    Autopilot saves significant time on managing devices
    Pros and Cons
    • "The Autopilot feature is the most valuable because it saves significant time on managing devices. We can ship devices globally, and users can set them up on their own. It's convenient."
    • "The Autopilot feature is the most valuable because it saves significant time on managing devices."
    • "Microsoft Intune could improve in reporting data for endpoints and fleets. Enhanced capabilities to run queries and gather specific device data to identify trends or issues would be beneficial. The feature parity for MacOS and handling devices from an MDM perspective is not comprehensive. Consolidation of these functionalities within Intune would simplify processes and finances."
    • "We do not utilize Microsoft customer service and technical support since it is generally a waste of time."

    What is our primary use case?

    I use Microsoft Intune to Autopilot our devices and manage various configuration policies mainly on Windows PCs. It helps in efficiently deploying company configurations remotely.

    How has it helped my organization?

    Intune has streamlined our onboarding process. Most of our workforce is remote, and there typically isn't an office where they can pick up the devices. It's easy to ship them to any address and configure them remotely. 

    What is most valuable?

    The Autopilot feature is the most valuable because it saves significant time on managing devices. We can ship devices globally, and users can set them up on their own. It's convenient.

    The user experience is pretty solid. We've gotten great feedback on the onboarding process and replacing devices. Every employee on the Windows PC has gone through Intune's Autopilot process.

    What needs improvement?

    Microsoft Intune could improve in reporting data for endpoints and fleets. Enhanced capabilities to run queries and gather specific device data to identify trends or issues would be beneficial. The feature parity for MacOS and handling devices from an MDM perspective is not comprehensive. Consolidation of these functionalities within Intune would simplify processes and finances.

    For how long have I used the solution?

    I have used Microsoft Intune for about four years.

    What do I think about the stability of the solution?

    Microsoft Intune is very stable. I cannot recall any significant service outages in the last few years.

    What do I think about the scalability of the solution?

    Microsoft Intune is scalable and handles our workload efficiently. Although our organization is not very large, we foresee continuing with Intune as it supports scalability effectively.

    How are customer service and support?

    We do not utilize Microsoft customer service and technical support since it is generally a waste of time.

    Which solution did I use previously and why did I switch?

    We used SCCM before, and now we are in a hybrid state, co-managing with SCCM and Microsoft Intune. The primary reason for the switch was the convenience of joining devices to our environment over the Internet.

    How was the initial setup?

     Microsoft Intune's initial setup was straightforward. It took some effort to configure it to a finalized version. Like every other piece of technology, it's constantly undergoing configuration changes. From an out-of-the-box perspective, it's super-easy to set up, but, you know, you have to continue iterating on it over time.

    What about the implementation team?

    The implementation was primarily conducted by my team, especially my endpoint administrator on the Windows side.

    What was our ROI?

    Factoring in the setup time, we've saved about 1,000 hours in the last couple of years.

    What's my experience with pricing, setup cost, and licensing?

    We spend a lot of money on Intune licensing, and some of our users have to be double licensed just because of how our dev and corporate environments are segmented.

    What other advice do I have?

    I rate Microsoft Intune eight out of 10. Offering the same features for MacOS would make it a 10.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Microsoft Azure
    Disclosure: My company has a business relationship with this vendor other than being a customer. Partners
    PeerSpot user
    David Dean - PeerSpot reviewer
    Microsoft 365 Principal Engineer at a manufacturing company with 10,001+ employees
    Real User
    Top 20
    Nov 27, 2024
    Autopilot allows us to enroll devices and install applications to meet corporate requirements seamlessly
    Pros and Cons
    • "I appreciate Intune's autopilot feature, which allows us to enroll devices and install applications to meet corporate requirements seamlessly."
    • "Overall, I like Intune as a solution and would rate it nine out of ten."
    • "I would like to see Intune improve its handling of hybrid domain joins."
    • "I would like to see Intune improve its handling of hybrid domain joins. We continue to experience issues with machines losing their hybrid domain join status."

    What is our primary use case?

    We use Microsoft Intune to enroll devices in our environment, install software, and monitor security patches.

    How has it helped my organization?

    In the past, our cumbersome OSD installation model using images made it difficult for IT to track installations and required users to visit the help desk for reinstallation. However, with Intune, employees can now conveniently manage installations themselves.

    I have no complaints about the Intune user experience.

    What is most valuable?

    I appreciate Intune's Autopilot feature, which allows us to enroll devices and install applications to meet corporate requirements seamlessly.

    What needs improvement?

    I would like to see Intune improve its handling of hybrid domain joins. We continue to experience issues with machines losing their hybrid domain join status.

    For how long have I used the solution?

    I have been using Microsoft Intune for several years now.

    What do I think about the stability of the solution?

    Intune's stability has been generally good, although recent issues caused devices to stop checking in and become unmanageable. We hope this is resolved before we begin redeployment.

    What do I think about the scalability of the solution?

    Intune's scalability appears satisfactory, as we have not experienced any scaling issues.

    How are customer service and support?

    Support has become more challenging to navigate over the past couple of years. It takes some effort to engage the right level of support, but once the right person is contacted, support works well.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    Before Intune, we used the OSD image approach. We switched to Intune for end-user ease of use and to lessen the burden on support teams.

    How was the initial setup?

    The initial setup was fairly straightforward.

    What about the implementation team?

    We did the implementation in-house ourselves.

    Which other solutions did I evaluate?

    We did not evaluate other solutions because Intune was included with our Microsoft 365 solution.

    What other advice do I have?

    Overall, I like Intune as a solution and would rate it nine out of ten. The rating isn't a ten because we haven't enrolled our entire environment in it yet, but so far, it looks promising. It might reach a ten at some point.

    We have over 50,000 employees and 75,000 machines.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Microsoft Support Engineer at a tech vendor with 10,001+ employees
    Real User
    Top 10
    Aug 6, 2024
    It helps consolidate our endpoints, simplifies mobile device management, and provides a smooth user experience
    Pros and Cons
    • "Intune significantly simplifies application deployment, mobile application management, and policy enforcement, such as restricting user access to specific applications, thereby enhancing overall environment security."
    • "Since GMS is unavailable in China, we currently rely on device administrator enrollment for managing Android devices there."

    What is our primary use case?

    We use Microsoft Intune to manage mobile devices across almost all platforms, including Android, Windows, and Linux, which was recently added just a few months ago.

    Previously, we relied on on-premises infrastructure using SCCM to manage mobile devices alongside other tools. Intune is a cloud-based solution that empowers administrators to manage cloud devices, implement policies, and deploy applications. While other MDM platforms exist, Intune is a top choice due to its feature set.

    How has it helped my organization?

    Microsoft Intune consolidates our endpoint and security management tools into a single platform. While still under development with new security features on the horizon, the current capabilities offer administrators ample tools to fortify the environment.

    Intune simplifies mobile device management by consolidating endpoint and security tools into a single platform. This centralized approach enables IT administrators to efficiently manage various aspects, including Windows updates, Wi-Fi and VPN policies, application restrictions, and user account creation, all within the Intune interface, significantly streamlining the overall management process.

    The user experience is quite smooth for most users because administrators handle all necessary configurations. Options like Windows Autopilot and zero-touch deployment enrollment significantly simplify the process, minimizing user intervention and effort required to set up and use devices.

    I currently support Microsoft admins and have handled numerous cases related to Enterprise Application Management. Many companies utilize this tool to manage their in-house applications. While not all companies employ this method, most larger organizations do. These companies often deploy their enterprise applications using Intune, which offers a feature that allows admins to protect application data through mobile application management policies. To enable MAM, applications must be wrapped with the Intune Software Development Kit to communicate with Intune services. This process is valuable as it empowers admins to safeguard sensitive data. Intune provides SDK options for both iOS and Windows applications.

    There are two methods for automatically updating the application: independent updates within the application itself or updates to the application package managed through Intune. The chosen method depends on the enterprise application's configuration. Recently introduced Azure application registration simplifies the process by requiring registration before deployment, enhancing security through authentication.

    We utilize advanced endpoint analytics within the Intune suite, and the recent release of Windows Autopilot's version has expanded the range of analytics tools available to administrators. While Intune provides data on devices and users under its management, more in-depth reports can be accessed through Log Analytics or Azure Monitor. However, Intune's analytics are sufficient for gathering reports on managed devices.

    The advanced endpoint analytics feature within the Intune suite allows us to access detailed information about our devices. This includes data on device counts, specific settings for bulk administration or devices, and the ability to filter devices based on our needs.

    I have experience with several MDM solutions. While Microsoft Intune is excellent for managing thousands of user devices, it may not be ideal for specific use cases like bulk printer or Jabra device management, which could present challenges. However, Intune shines in organizations with large numbers of users, especially when integrated with existing on-premises infrastructure or SCCM. This integration can streamline operations and reduce staffing needs. For example, a ten-person IT team might only require two to five people dedicated to Intune management with on-premises support. While I cannot provide a full sales pitch, I confidently recommend Intune to anyone seeking a robust MDM solution.

    Copilot in Intune is valuable when integrated with back-end data, such as our existing tools and libraries. This integration empowers administrators to assess information effectively. However, the tool's effectiveness hinges on the quality of data input and query formulation. As users are still familiarizing themselves with Copilot, its adoption varies across environments, with some users enabling it and others disabling it.

    Copilot in Intune simplifies IT operations by quickly responding to inquiries about integrated systems. Users won't need to search for specific details as Copilot offers a variety of solutions.

    Intune offers more than device management; it also aids in user management. Regardless of the platform, Intune provides various options for device enrollment. Intune prevents mixing personal and corporate data, whether using a corporate or personal device. It also offers robust security features, enabling granular control over user access to applications, resources, and other tools.

    In a hybrid environment, security management depends on whether devices are co-managed and how policies are configured in Intune. Intune offers various features, including remote actions, to address these scenarios. However, I discovered an issue with BYOD devices on iOS: wiping an enrolled device deletes all data, not just corporate data. This is a problem that needs to be addressed internally.

    With the endpoint privilege management feature, the admin can create an EPM policy. If a user tries to access a resource, the admin will be prompted to grant or deny access based on the policy.

    Suppose I need to access data, logs, or files on a Windows device that a global administrator restricts or requires approval for. In that case, I can configure an EPM policy to remind users that additional authorization is necessary. For instance, I encountered cases where users frequently mistakenly assigned test applications to production environments. To prevent this without restricting access or privileges, we configured an EPM policy to prompt users specifically when assigning that application to a production environment. This approach demonstrates how EPM policies can be tailored to address various requirements.

    EPM provides an additional layer of authentication for accessing a resource, application, or permission. For ASR, we can define rules by which users can access the resources.

    Intune has significantly improved productivity by simplifying tasks like certificate authority restoration. For example, using a deployed CA server certificate, I've set up a Wi-Fi profile with auto-authentication. Previously, expiring certificates required manual reissuance, but Intune automates this process by revoking certificates when they approach their expiration threshold. This threshold, configurable within the certificate profile, can be set as a percentage of the certificate's lifespan. A revocation request is triggered when the threshold is reached, ensuring a new certificate is issued for the device or user profile before the old one expires.

    Intune's integration with Microsoft 365 and Microsoft Security for both cloud and co-managed devices is beneficial because it offers a centralized platform. We can directly assign licenses within Intune instead of using the separate M365 admin portal to create users, simplifying the process. Intune synchronizes features and functions from M365, streamlining management. However, purchasing new licenses still requires accessing the admin center. Despite this, Intune effectively synchronizes information to endpoints.

    What is most valuable?

    While conditional access isn't solely limited to Intune, we can also effectively implement and manage conditional access policies through Azure. However, Intune significantly simplifies application deployment, mobile application management, and policy enforcement, such as restricting user access to specific applications, thereby enhancing overall environment security. Furthermore, Intune automates numerous tasks previously requiring manual configuration by administrators, streamlining the process by creating simple policies for desired outcomes.

    What needs improvement?

    There are specific devices we can focus on. For example, due to GMS restrictions in China, we face limitations. However, BlackBerry UEM can enroll Android devices as Android Enterprise, though the exact method is unclear. We could explore whether Intune can replicate this functionality. Since GMS is unavailable in China, we currently rely on device administrator enrollment for managing Android devices there. This suggests potential opportunities to develop solutions or collaborate with Chinese partners to create new features within Intune for managing Android devices in the Chinese market.

    For how long have I used the solution?

    I have been using Microsoft Intune for three years.

    What do I think about the stability of the solution?

    While some specific tenants experience occasional outages and bugs, our monitoring team is actively tracking an upcoming issue affecting certain tenants in specific regions. Both the support and broader teams are diligently working to resolve this. Aside from this, Microsoft Intune is demonstrating overall stability.

    What do I think about the scalability of the solution?

    If an organization has the budget, they can easily scale Microsoft Intune.

    How are customer service and support?

    Microsoft's technical support for Microsoft Intune and the broader Microsoft environment consists of several tiers. Customers can choose between broad commercial support, Pro support, or Premier support, the latter including dedicated Customer Success Account Managers and Incident Managers to facilitate access to specialized engineers. Support engineers are categorized into levels one, two, and three. We collaborate weekly with global subject matter experts to address ongoing issues and cases. For complex or backend problems, we engage the product group using a specific request form. While Microsoft previously employed support staff primarily in the US and Canada, they now utilize vendors in India and the Philippines, offering varying levels of expertise. To enhance support quality, Microsoft should invest in training these engineers and consider opportunities for full-time employment, rather than incurring the costs of recruiting and training new staff.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?


    How was the initial setup?

    An organization migrating to the cloud typically requires an Azure subscription as a starting point. While our FastTrack Team offers full migration solutions, IT administrators can also independently move operations to the cloud by purchasing an Azure subscription, tenant, and licenses and configuring policies, privileges, and workloads. Existing on-premises infrastructure can be synced to the cloud using Azure AD Connect, enabling management within a hybrid or pure Azure AD environment. The ease of migration depends on the administrator's experience, and Microsoft support is available for those requiring assistance.

    One to two solution architects are enough for the deployment.

    Several factors influence the time required for deployment. For instance, with a user base of 100, deployment can be achieved within a week. However, environments with thousands of users and devices, especially on-premises setups, present greater challenges. Customers or administrators migrating to the cloud and adopting Intune often follow a phased approach. They typically start by deploying and testing a subset of policies to assess manageability and feasibility before proceeding with application deployment. As a result, the overall deployment timeline varies significantly across organizations and can extend to several weeks.

    What's my experience with pricing, setup cost, and licensing?

    Microsoft services are slightly more expensive than competitors but offer advantages and disadvantages. Even if they charge a premium, they aim to provide equal value.

    Which other solutions did I evaluate?

    I have experience with SOTI MobiControl, Jamf Pro, and AirWatch. SOTI MobiControl excels at managing specific devices, offering a list of compatible models upon request. Intune, however, struggles with printer management and Zebra device compatibility. Its network security features are limited due to ongoing development, and it lacks in-built policies for third-party applications, hindering compatibility and communication with external devices and manufacturers. While custom policies can be implemented, comprehensive built-in options would be beneficial.

    What other advice do I have?

    I would rate Microsoft Intune eight out of ten.

    Intune requires no maintenance after initial deployment, but ongoing subscriptions are necessary for each user as individual licenses are needed monthly. Microsoft continually updates the service to support the latest operating systems and applications, so ensuring our environment is up-to-date is crucial for optimal performance.

    Microsoft Intune is a good tool, and to simplify operations, I recommend a full cloud environment over a hybrid environment.

    Which deployment model are you using for this solution?

    Public Cloud
    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    Nicola Moresi - PeerSpot reviewer
    Ceo at a real estate/law firm with 11-50 employees
    Real User
    Top 10
    Dec 16, 2024
    The compliance features are valuable because they allow immediate visibility into ongoing situations
    Pros and Cons
    • "Intune's compliance features are valuable because they allow immediate visibility into ongoing situations."
    • "Microsoft Intune has helped us by improving our security posture, leading to fewer security problems, and helping us understand where we have issues."
    • "It would be interesting to integrate the server side of Intune. Some group policy updates we have on the Windows Server side and possibly some on the client side could also be included."
    • "It would be interesting to integrate the server side of Intune. Some group policy updates we have on the Windows Server side and possibly some on the client side could also be included."

    What is our primary use case?

    We use Intune for security or endpoint inside the company and especially for many customers we have.

    How has it helped my organization?

    Microsoft Intune has helped us by improving our security posture, leading to fewer security problems, and helping us understand where we have issues. 

    What is most valuable?

    Intune's compliance features are valuable because they allow for immediate visibility into ongoing situations. The solution is very easy to use. We haven't implemented Microsoft Copilot but will adopt it next year. It will be interesting to use natural language to interact with Intune.

    What needs improvement?

    It would be interesting to integrate the server side of Intune. Some group policy updates we have on the Windows Server side and possibly some on the client side could also be included.

    For how long have I used the solution?

    I have been using Microsoft Intune for about two years.

    What do I think about the stability of the solution?

    Microsoft Intune is very stable.

    What do I think about the scalability of the solution?

    The scalability of Microsoft Intune is good. We don't have large customers, so we haven't seen any issues with scalability.

    How are customer service and support?

    I rate Microsoft support nine out of 10. Customer service and technical support are good. The technical support from Microsoft and Infineon Technologies is also good. The quality and professionalism of the people are really good, although sometimes we need to escalate to get the right content and answers.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We previously used a solution from an older competitor that is now defunct.

    What about the implementation team?

    We did not use an integrator, reseller, or consultant for the deployment because we are an integrator.

    What was our ROI?

    Our customers have seen a significant return on investment because they now understand and see where the problems are on the endpoints without needing to search the entire company.

    What's my experience with pricing, setup cost, and licensing?

    We know the pricing is good because customers are not complaining about it.

    Which other solutions did I evaluate?

    We directly switched to Microsoft Intune after receiving good feedback from customers.

    What other advice do I have?

    I would rate Intune eight out of 10. Some features could be added, but it is a rock-solid solution.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free Microsoft Intune Report and get advice and tips from experienced pros sharing their opinions.
    Updated: January 2026
    Buyer's Guide
    Download our free Microsoft Intune Report and get advice and tips from experienced pros sharing their opinions.