Enterprise Technical Support at a government with 10,001+ employees
Provides enhanced security with flexible policy management for enterprise environments
Pros and Cons
- "Overall, I would rate Microsoft Intune as eight out of ten."
- "I rate Microsoft support between six to eight. The support often involves third parties hired by Microsoft who are knowledgeable, but sometimes the help I receive is not adequate."
What is our primary use case?
I use Microsoft Intune on corporate devices as well as bring your own devices. It is always within an enterprise environment. I deal with industries such as manufacturing and health.
What is most valuable?
Microsoft Intune provides a more secure way by offering MFA policy, conditional access policies, and R-back policies. I can set up all my GPO policies, and Microsoft is moving these features to Microsoft Intune.
What needs improvement?
I could not discuss all the areas that need improvement due to time constraints. However, there are definitely challenges that could be addressed.
For how long have I used the solution?
I have been using Microsoft Intune for around five to six years.
Buyer's Guide
Microsoft Intune
December 2025
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,371 professionals have used our research since 2012.
How are customer service and support?
I rate Microsoft support between six to eight. The support often involves third parties hired by Microsoft who are knowledgeable, but sometimes the help I receive is not adequate.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I previously used Blackberry until it was discontinued, which led me to switch to Microsoft Intune.
How was the initial setup?
The setup is not difficult. The deployment time depends on the project specifics.
What was our ROI?
I rate the return on investment for Microsoft Intune as seven out of ten.
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing depend on my company's budget. If the company can afford it, it is manageable.
What other advice do I have?
Overall, I would rate Microsoft Intune as eight out of ten.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Engineer, Systems Admin . at a financial services firm with 5,001-10,000 employees
Dynamic groups enhance security while cumbersome deployment process needs refinement
Pros and Cons
- "Dynamic groups allow us to set conditions for automatic membership, eliminating the need for user intervention or manual review and ensuring a seamless workflow."
- "Dynamic groups allow us to set conditions for automatic membership, eliminating the need for user intervention or manual review and ensuring a seamless workflow."
- "Microsoft Intune's app deployment presents challenges for non-MSI and non-store apps, particularly EXEs, requiring the use of a Win32 wrapper tool and adding overhead to the process."
- "Microsoft Intune's app deployment presents challenges for non-MSI and non-store apps, particularly EXEs, requiring the use of a Win32 wrapper tool and adding overhead to the process."
What is our primary use case?
We use Microsoft Intune to manage mobile devices for our parent company and our independent subsidiaries. These devices are not directly corporate-owned but belong to individuals or subsidiaries with whom we work. We enroll both their and our corporate devices in Intune to manage policies, ensure optimal security settings through compliance reviews, and deploy a VPN client for secure access to our internal network resources.
How has it helped my organization?
Microsoft Intune has provided valuable insight into the status of our independent computers, which previously lacked a management agent and had no standardized security policies. We could not enforce password expiration policies, hardened passwords, or even minimum password requirements, with some users relying on six-character passwords. By enrolling these devices in Intune, we have enforced more robust security measures, such as a minimum eight-character password length, and gained visibility into device compliance to ensure adherence to best security practices for data protection.
The Intune user experience is good, especially with the many improvements made to the web interface over the years. It has always been designed as a simpler interface than Configuration Manager, and Microsoft has done a good job in achieving this goal.
What is most valuable?
Dynamic groups are more efficient than static groups, which require manually adding members. This was cumbersome, especially when onboarding new people, as it necessitated manually adding them to the appropriate groups. Dynamic groups allow us to set conditions for automatic membership, eliminating the need for user intervention or manual review and ensuring a seamless workflow.
What needs improvement?
Microsoft Intune's app deployment presents challenges for non-MSI and non-store apps, particularly EXEs, requiring the use of a Win32 wrapper tool and adding overhead to the process. Additionally, deploying device-specific installers, such as VPN clients, is complicated by the inability to target users directly, necessitating knowledge of device names that may not be readily available. Furthermore, the web interface lacks detailed information for MDM-enrolled devices, such as the user's UPN, requiring the use of Graph Explorer API and necessitating Global Admin consent to access device properties. Enhancing app deployment, enabling user-targeted device application deployment, and improving the web interface, particularly for MDM-enrolled devices, by providing comprehensive device information and customizable columns, would significantly streamline Intune's usability.
Microsoft Intune should enhance flexibility and features to better match the granularity available in systems like SCCM.
For how long have I used the solution?
I have been using Microsoft Intune for over five years.
What do I think about the stability of the solution?
Microsoft Intune has been stable, and I have not noticed any specific stability issues. While we've encountered problems with other services like Exchange, Intune has remained unaffected.
What do I think about the scalability of the solution?
Scaling Intune is challenging due to the various device types we manage. Our parent company's mobile devices were already enrolled, and we've added our independent Windows devices, with plans to include corporate devices soon. A key hurdle is the lack of visibility into user attributes in Intune, hindering our ability to create dynamic groups effectively. Ideally, we want to automatically segregate devices based on user properties like primary use, but currently, dynamic groups seem limited to device properties. This forces manual group assignment after user enrollment, which is inefficient and reliant on user notification. Improved dynamic group functionality, particularly the ability to leverage user attributes, would significantly streamline device management.
How are customer service and support?
Customer support has been reasonable overall. However, there have been cases, such as issues with BitLocker recovery keys, where support was less effective, leading to multiple hand-offs and delays.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Before Intune, the independent devices were unmanaged without any agent. For corporate devices, we previously used SCCM.
How was the initial setup?
The initial deployment of Microsoft Intune was fairly straightforward, despite a few challenges due to our unusual configuration of two on-premise domains syncing to our Azure tenant. This dual user sync caused issues because some users remained on the older domain, leading to conflicts when automated systems modified on-premise account attributes. These modifications triggered Azure to switch the sync to the other account, resulting in login failures for users with cached credentials from the old account. While we've mostly identified the cause and the fix, we still encounter this issue occasionally.
What about the implementation team?
The deployment was handled in-house. Our organization benefited from having skilled personnel and guidance from our parent company.
What was our ROI?
The return on investment includes successfully distributing applications like a VPN client and Office 365. As a result, independent devices now have better application access, encouraging even non-enrolled entities to request Intune enrollment.
Which other solutions did I evaluate?
We considered Tanium for managing independent devices, but it's a comprehensive endpoint management tool with more functionality than we needed. Management felt it would introduce unnecessary overhead. Since all our corporate devices are currently managed with Intune, adding independent devices would require segregation. Ultimately, we opted for Intune due to its ease of use, allowing us to create targeted policies from scratch.
What other advice do I have?
I would rate Microsoft Intune a seven out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Microsoft Intune
December 2025
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,371 professionals have used our research since 2012.
Second Line Support Engineer at a tech services company with 10,001+ employees
Monitoring and managing device compliance effectively improve user experience
Pros and Cons
- "The best features of Microsoft Intune include helping to know if computers are configured correctly and if users have access to apps or the platform."
What is our primary use case?
I use Microsoft Intune to check if laptops are compliant or not, and to check if applications are added to user profiles. Sometimes there are applications users cannot find in the Company Portal or on their laptops, so we try to add them to their profiles. We can check if there are issues with Windows updates and verify if they have the latest version. We can check by hostname or serial number of the laptop if a user's computer is compliant or has access to the enterprise company platform resources.
What is most valuable?
The best features of Microsoft Intune include helping to know if computers are configured correctly and if users have access to apps or the platform. It provides an excellent overview of all machines for the company and helps determine if those machines are facing issues. It is particularly helpful when laptops face issues with upgrading or migrating to Windows 10 or Windows 11.
What needs improvement?
Automation has room for improvement in Microsoft Intune for fixing some errors. The knowledge and database in support can also be improved. If errors aren't in the database, we need to check forums or Google to understand and troubleshoot them. The most important improvement needed for Microsoft Intune is to have a comprehensive database about what each error means exactly and what steps to take for troubleshooting.
For how long have I used the solution?
I have been using Microsoft Intune for about four years.
What do I think about the stability of the solution?
The stability of Microsoft Intune rates at nine out of ten.
What was our ROI?
Microsoft Intune has saved approximately 30% of time.
What other advice do I have?
Users are mostly satisfied with Microsoft Intune because it helps them understand what's happening on their laptops. For some issues, I can assist depending on Microsoft Intune access. When comparing Microsoft Intune with other tools, the pricing is acceptable and it's easy to use. I recommend Microsoft Intune; it should be used in companies using Windows. I rate Microsoft Intune eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jul 30, 2025
Flag as inappropriatesystem engineer 2 at a retailer with 10,001+ employees
Management tools streamline device provisioning and security across multiple platforms
Pros and Cons
- "Microsoft Intune is a cost-saving solution, reducing IT department workload and allowing for faster device provisioning compared to traditional methods."
- "The reporting part needs improvement, and it would be beneficial if it could integrate with third-party tools instead of just Power BI."
What is our primary use case?
I use Microsoft Intune to manage devices and Windows, including Linux and macOS. It provides a zero-touch experience for provisioning mobile devices like iOS, iPad, Android, and macOS. It offers security and serves as a management tool where multiple products can be managed.
What is most valuable?
Microsoft Intune helps me manage devices and Windows, including Linux and macOS. It provides a zero-touch experience for provisioning mobile devices like iOS, iPad, Android, and macOS. It offers security and acts as a management tool where multiple products can be managed. Having all endpoint and security management tools in one place reduces the IT department's workload, making provisioning devices faster compared to traditional methods.
What needs improvement?
The reporting part needs improvement, and it would be beneficial if it could integrate with third-party tools instead of just Power BI. Additionally, the inventories could be enhanced.
For how long have I used the solution?
I have ten years of experience working with Microsoft Intune. I also have experience with Jamf Pro, which I have used for four years.
What do I think about the stability of the solution?
I can give Microsoft Intune a ten out of ten for stability.
What do I think about the scalability of the solution?
I can give Microsoft Intune a nine out of ten for scalability.
How are customer service and support?
Customer service is good, and I would rate it nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I did not use any other solution before Microsoft Intune.
How was the initial setup?
The initial setup was conducted in-house, and no external integrator or consultant was used.
What about the implementation team?
We did not use an integrator or consultant; everything was done in-house.
What was our ROI?
Microsoft Intune is a cost-saving solution, reducing IT department workload and allowing for faster device provisioning compared to traditional methods. However, I am not sure about the exact savings per month or year.
What's my experience with pricing, setup cost, and licensing?
I find the price somewhat affordable.
Which other solutions did I evaluate?
I never evaluated any other options before choosing Microsoft Intune.
What other advice do I have?
My advice is to improve the reporting capabilities and integrate with third-party tools. I rate the overall solution nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
End User Computing Architect at a consultancy with 10,001+ employees
Simplifies IT and security operations and enrolling endpoints is a breeze
Pros and Cons
- "A valuable feature is user enrollment, where users can enroll their devices in their organizations themselves."
- "The current Intune reporting functionality could benefit from some improvements."
What is our primary use case?
We use Intune to manage endpoints as a centralized enterprise solution. Instead of relying on Active Directory or an on-premise system, we directly manage employee devices using Microsoft Intune. Intune, a cloud-based SaaS product, simplifies endpoint management. From a user perspective, it's an improvement. Users no longer need to be on the office network. They can set up their devices anywhere with an internet connection, whether at home or another location.
Security is also enhanced. By using Intune as a mobile device management solution, we can implement security controls and restrictions on endpoints. Intune helps us achieve a balance between user experience and security.
How has it helped my organization?
Managing remote employee devices with Microsoft Intune is easy. Intune acts as a central platform for deploying controls, policies, and applications to our endpoints. It simplifies the delivery of these configurations to our remote workforce.
Intune simplifies our mobile application management. Once implemented across the organization, it will eliminate our reliance on on-premises solutions. Previously, managing endpoints required using our System Center Configuration Manager. Now, Microsoft offers a unified solution called Microsoft Endpoint Manager. Intune, a key component of this suite, allows for convenient device enrollment over the internet, streamlining endpoint organization.
Intune helps bring our endpoints and security management tools into one place.
Consolidating endpoints and security management tools simplifies IT and security operations. This unified approach offers a single solution or console for all tasks. Role-based access control ensures each administrator only sees and modifies what's relevant to their role. For example, the security team can access Intune solely for security-related functions, while the patch management team has its own set of permissions. This centralized management is significantly easier to handle than using multiple third-party tools. Intune provides a comprehensive solution where everyone can configure settings – security, endpoints, controls, etc. – within a single platform.
Intune offers endpoint visibility and IT control across various device platforms. It simplifies troubleshooting and device management compared to other solutions. Intune excels in providing a comprehensive solution. We can manage applications, security controls, and patching processes all within Intune. This eliminates the need to rely on three separate solutions. With Intune, everything is consolidated into a single platform, allowing for combined reporting and streamlined issue resolution.
Enrolling endpoints with Intune is a breeze! The overall user experience is excellent, easily a nine out of ten.
There are three critical features of Intune for maintaining our devices' security. Endpoint encryption ensures data on the device is scrambled even if it's lost or stolen. Intune supports BitLocker encryption for Windows devices and file-level encryption for Mac devices. Defender is a comprehensive security solution that helps protect devices from malware, viruses, and other threats. Compliance policies in Intune allow us to define security requirements for devices. These policies can enforce encryption, complex passwords, and other security settings. If a device doesn't meet the compliance policy, it can be restricted from accessing organizational resources. Intune can also send notifications to users or administrators when a device becomes non-compliant.
In the initial stages of migrating from our on-premises solution to Intune, we relied on device compliance policies. We configured these policies to require the latest antivirus signatures, specifically targeting developer devices. This ensured compliance and minimized the risk of non-compliance impacting their work. While compliance policies were initially used, we've since transitioned to Microsoft Defender, which now plays a major role in our device security strategy.
Intune's application deployment feature has significantly improved efficiency in our IT department. As one of its key functionalities, Intune allows deployment of a variety of applications with different extensions, such as .DXE or .MSI files. However, for applications requiring custom license scripts, batch files, or executables, Intune provides its own Windows app deployment toolkit. This toolkit facilitates the conversion of these files into a format compatible with the Intune app store and its update system.
The user interface is easy to navigate. Microsoft provides monthly updates that introduce new features. Previously, they provided pie chart visualizations for complaint and policy control status reports. These have been transitioned to standard chart formats. Overall, the UI continues to improve with each Microsoft update.
Company-owned devices are subject to a different set of policies. These policies may be very strict, restricting certain functionalities, or they may prioritize security above all else. On the other hand, for BYOD programs, we provide users with certain privileges for their mobile devices and laptops. We create a secure, isolated environment in a sandbox to manage the devices within that environment. Security is a major consideration for both BYOD and company-owned devices.
Intune has increased our IT productivity for patching and security by around 15 percent.
Microsoft Intune helps our organization reduce the risk of security breaches by eight percent by deploying zero-day patches in conjunction with Defender and Sentinel.
Intune has helped us consolidate vendors with the driver deployment and onboarding.
We manage configurations for Microsoft 365, co-managed devices, Azure, Defender security controls, and DLP controls within Intune. This centralized platform allows us to configure roughly 80 percent of these services and controls in a single location.
What is most valuable?
A valuable feature is user enrollment, where users can enroll their devices in their organizations themselves. This streamlines the process and saves IT time.
Another key benefit is zero-day productivity. During enrollment, the user has access to the applications and settings the organization needs them to have, making them ready to work immediately. Intune essentially pre-configures the device based on the user and organization during enrollment.
Finally, Intune offers easy patch management for various endpoints, including Windows 10, 11, and Macs. Deploying upgrades and monthly patches is significantly simpler compared to other solutions, both from Microsoft and third-party vendors.
What needs improvement?
The current Intune reporting functionality could benefit from some improvements. Specifically, a report that tracks patch deployment status would be valuable. Ideally, I'd like a report that provides device-level details on applications and controls deployed. However, it seems like other organizations might be more interested in control-centric reports, showing details like what control was deployed, the number of devices affected, and other relevant device data. Overall, reporting is the area where we're encountering the most challenges with Intune.
For how long have I used the solution?
I've been using Microsoft Intune as a comprehensive solution for the past six years. While I had some experience with it before 2019, it was limited to mobile device management. Since 2019, I've been managing the full Intune suite as an administrator, overseeing Windows endpoints, Mac endpoints, Android and iOS.
What do I think about the stability of the solution?
I would rate the stability of Microsoft Intune eight out of ten.
What do I think about the scalability of the solution?
Microsoft Intune excels in scalability, earning it a nine out of ten rating. It empowers organizations to migrate to the cloud and manage all their endpoints seamlessly. This includes a wide range of platforms like Windows, macOS, mobile devices, and even Linux. Intune simplifies endpoint management by offering a centralized solution for all these platforms.
How are customer service and support?
The response time and technical knowledge of the support team is not what it used to be.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We previously used an on-premises solution, Microsoft Endpoint Manager, to manage our devices. The pandemic necessitated a shift to the cloud.
How was the initial setup?
The initial deployment of Intune can be complex because it is linked to Microsoft Entra, which itself is a complex product. This complexity depends on the desired outcome. Intune's deployment complexity hinges on whether users will enroll their devices themselves or if the IT team will enroll them and grant access. A proper pre-assessment is crucial to determine if Intune's complexity aligns with our desired outcome.
Our deployment took two months to complete because of the internal security approvals we required.
Three administrators were required for the deployment.
What's my experience with pricing, setup cost, and licensing?
The price for Intune is fair.
What other advice do I have?
I would rate Microsoft Intune eight out of ten. There are some improvements concerning the reports and there are other design-related concerns that we are looking at in Intune.
We don't have the tunnel option because we primarily work in a restricted computer environment. Our organization uses Microsoft Intune to manage applications within a dedicated sandbox environment. We perform frequent updates to ensure everything is current.
During the initial onboarding process, we encountered some challenges, and multiple teams were involved in resolving them. For example, users from India might experience issues like broken URLs or restricted access due to their ISPs. Similarly, in China, certain URLs might be blocked by some internet service providers. To address these issues, we initially involved additional administrators from each region on the administrative side. However, we've since transitioned to a centralized management structure with a core team of five to six members overseeing the entire organization.
We maintain a separate development Intune environment for User Acceptance Testing specific to the Asia Pacific region. Since our production environment is also located in Asia Pacific, we essentially have two Intune instances: one for development and one for production. We also have around 290,000 devices.
We have a team of five Intune administrators. The only maintenance required for Intune is the updates.
I recommend Microsoft Intune.
Based on the number of users and devices you're enrolling, I recommend having separate UAT and production Intune environments for larger deployments. For simpler environments, a single Intune license is sufficient to manage your devices and integrate with your Enterprise and Microsoft 365 solutions.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
UC Architect at a consumer goods company with 10,001+ employees
Works perfectly for our diverse organization but support needs improvement
Pros and Cons
- "Microsoft Intune has transformed my organization; we are managing to scale the Intune deployment across all our regions efficiently, and it works perfectly for our needs."
What is our primary use case?
We have hundreds of thousands of users, so we have to manage their devices, and Microsoft Intune plays an important role in managing those devices through deploying applications, operating systems, and security configurations.
How has it helped my organization?
Microsoft Intune has transformed my organization. We are managing to scale the Intune deployment across all our regions efficiently.
It works perfectly for our needs. Our organization's architecture is well-suited for Microsoft Intune. Given that we are a diverse organization, managing connectivity with our endpoints can be quite challenging. However, Microsoft Intune offers an ideal interface solution that meets our requirements.
What is most valuable?
It is a device management tool that includes all the features which were available in SCCM, such as OS deployment, user device enrollment, and Autopilot. These features are primarily important for us to do automated OS deployment.
As a user, I assess the user experience of Microsoft Intune to be seamless. Users have to log in with their email ID on the device itself, and the process is seamless. Their 365 is integrated, and Outlook is configured automatically.
What needs improvement?
Microsoft Intune is evolving. They are introducing new features every month. For instance, they integrated Copilot, among many other features added in terms of Apple and Chrome. These enhancements are being implemented gradually, and I believe they are actually improving the user experience.
Local administrators use this tool to connect with users, and they require a password to be reset or retrieved. It can be a bit inconvenient for them to log into Intune just to raise privileges and reset the password.
Their technical support can be improved.
For how long have I used the solution?
We have been using Microsoft Intune for Windows devices since 2021.
What do I think about the stability of the solution?
Microsoft Intune is stable and reliable. I did not find any anomalies with the solution that Microsoft has introduced. None of the market has reported downtime for longer periods, though they might have experienced something with very short notice, but they have not reported it.
What do I think about the scalability of the solution?
It fits perfectly with the growing needs of my organization.
How are customer service and support?
When we raise a question or issue, it takes a longer time to resolve. I would rate the technical support a five out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We were using SCCM before Microsoft Intune. It was cost-effective to switch from SCCM to Microsoft Intune because it has no local infrastructure to manage. Earlier, we were paying to manage our SCCM across hundreds of primary and secondary servers globally.
How was the initial setup?
I was the one who designed the solution for my organization. We only faced a challenge when trying to implement a hybrid solution because it wasn't feasible with our multiple forests. As a result, we had to discard the option for hybrid deployment. Instead, we decided to use pure Autopilot devices for the Entra join process. For the existing domain-joined devices, we opted for co-management. Ultimately, the primary authentication for these devices will remain with the domain, but they will operate in a hybrid state.
What was our ROI?
In terms of infrastructure costs, we were previously managing our SCCM across the entire group, which involved hundreds of primary and secondary servers for managing endpoints and distribution centers. When we calculate the total expenses, Microsoft Intune turns out to be quite cost-effective. In fact, entire regions have approached us to adopt Microsoft Intune, so I can see that the ROI is fully recoverable.
What's my experience with pricing, setup cost, and licensing?
We didn't have to pay anything for Microsoft Intune with our subscription.
Which other solutions did I evaluate?
We have not evaluated other options before choosing Microsoft Intune because it comes free with all our licenses distributed across our users.
What other advice do I have?
I would rate Microsoft Intune a seven out of ten. There are many things they have to add.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Aug 9, 2025
Flag as inappropriateInformation Technology Modern Workplace Management at a manufacturing company with 1,001-5,000 employees
Prioritize reporting improvements while benefiting from user-friendly interface and security features
Pros and Cons
- "The features of Microsoft Intune that I appreciate the most are its user-friendly interface and robust security options."
What is our primary use case?
I have been using the enterprise application management features of Microsoft Intune Suite for couple of years now.
How has it helped my organization?
We're deploying security baselines and configuration profiles (GPO) with ease. Tasks that could take much more time if done from the DC.
What is most valuable?
The features of Microsoft Intune that I appreciate the most are its user-friendly interface and robust security options.
I assess the user experience of Microsoft Intune as positive overall.
I think their advanced endpoint analytics help me proactively.
I would assess Cloud PKI for helping me manage the complexity of the certificate infrastructure as beneficial.
What needs improvement?
Microsoft Intune could be improved by enhancing its reporting functionalities (for entry level license).
I would request additional features in the next release of Microsoft Intune.
For how long have I used the solution?
Two years
How are customer service and support?
I would rate their support from 1 to 10 as a solid 8.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Ivanti Landesk, we switched mostly because prior platform was facing EOL.
What was our ROI?
I have not yet had ROI with Microsoft Intune.
I expect to see a return on investment in Microsoft Intune approximately in the next few months.
What's my experience with pricing, setup cost, and licensing?
The pricing licensing model of Microsoft Intune seems competitive.
Which other solutions did I evaluate?
Give our company MS agreement, it was just a no-brainer.
What other advice do I have?
I work for Viscofan S.A. as an Information Technology Modern Workplace Management. My email address is JAURIETAC.
I am interested in being a reference for Microsoft, and they can contact me if they have any questions regarding my review.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 5, 2025
Flag as inappropriateMicrosoft Support Engineer at a tech vendor with 10,001+ employees
It helps consolidate our endpoints, simplifies mobile device management, and provides a smooth user experience
Pros and Cons
- "Intune significantly simplifies application deployment, mobile application management, and policy enforcement, such as restricting user access to specific applications, thereby enhancing overall environment security."
- "Since GMS is unavailable in China, we currently rely on device administrator enrollment for managing Android devices there."
What is our primary use case?
We use Microsoft Intune to manage mobile devices across almost all platforms, including Android, Windows, and Linux, which was recently added just a few months ago.
Previously, we relied on on-premises infrastructure using SCCM to manage mobile devices alongside other tools. Intune is a cloud-based solution that empowers administrators to manage cloud devices, implement policies, and deploy applications. While other MDM platforms exist, Intune is a top choice due to its feature set.
How has it helped my organization?
Microsoft Intune consolidates our endpoint and security management tools into a single platform. While still under development with new security features on the horizon, the current capabilities offer administrators ample tools to fortify the environment.
Intune simplifies mobile device management by consolidating endpoint and security tools into a single platform. This centralized approach enables IT administrators to efficiently manage various aspects, including Windows updates, Wi-Fi and VPN policies, application restrictions, and user account creation, all within the Intune interface, significantly streamlining the overall management process.
The user experience is quite smooth for most users because administrators handle all necessary configurations. Options like Windows Autopilot and zero-touch deployment enrollment significantly simplify the process, minimizing user intervention and effort required to set up and use devices.
I currently support Microsoft admins and have handled numerous cases related to Enterprise Application Management. Many companies utilize this tool to manage their in-house applications. While not all companies employ this method, most larger organizations do. These companies often deploy their enterprise applications using Intune, which offers a feature that allows admins to protect application data through mobile application management policies. To enable MAM, applications must be wrapped with the Intune Software Development Kit to communicate with Intune services. This process is valuable as it empowers admins to safeguard sensitive data. Intune provides SDK options for both iOS and Windows applications.
There are two methods for automatically updating the application: independent updates within the application itself or updates to the application package managed through Intune. The chosen method depends on the enterprise application's configuration. Recently introduced Azure application registration simplifies the process by requiring registration before deployment, enhancing security through authentication.
We utilize advanced endpoint analytics within the Intune suite, and the recent release of Windows Autopilot's version has expanded the range of analytics tools available to administrators. While Intune provides data on devices and users under its management, more in-depth reports can be accessed through Log Analytics or Azure Monitor. However, Intune's analytics are sufficient for gathering reports on managed devices.
The advanced endpoint analytics feature within the Intune suite allows us to access detailed information about our devices. This includes data on device counts, specific settings for bulk administration or devices, and the ability to filter devices based on our needs.
I have experience with several MDM solutions. While Microsoft Intune is excellent for managing thousands of user devices, it may not be ideal for specific use cases like bulk printer or Jabra device management, which could present challenges. However, Intune shines in organizations with large numbers of users, especially when integrated with existing on-premises infrastructure or SCCM. This integration can streamline operations and reduce staffing needs. For example, a ten-person IT team might only require two to five people dedicated to Intune management with on-premises support. While I cannot provide a full sales pitch, I confidently recommend Intune to anyone seeking a robust MDM solution.
Copilot in Intune is valuable when integrated with back-end data, such as our existing tools and libraries. This integration empowers administrators to assess information effectively. However, the tool's effectiveness hinges on the quality of data input and query formulation. As users are still familiarizing themselves with Copilot, its adoption varies across environments, with some users enabling it and others disabling it.
Copilot in Intune simplifies IT operations by quickly responding to inquiries about integrated systems. Users won't need to search for specific details as Copilot offers a variety of solutions.
Intune offers more than device management; it also aids in user management. Regardless of the platform, Intune provides various options for device enrollment. Intune prevents mixing personal and corporate data, whether using a corporate or personal device. It also offers robust security features, enabling granular control over user access to applications, resources, and other tools.
In a hybrid environment, security management depends on whether devices are co-managed and how policies are configured in Intune. Intune offers various features, including remote actions, to address these scenarios. However, I discovered an issue with BYOD devices on iOS: wiping an enrolled device deletes all data, not just corporate data. This is a problem that needs to be addressed internally.
With the endpoint privilege management feature, the admin can create an EPM policy. If a user tries to access a resource, the admin will be prompted to grant or deny access based on the policy.
Suppose I need to access data, logs, or files on a Windows device that a global administrator restricts or requires approval for. In that case, I can configure an EPM policy to remind users that additional authorization is necessary. For instance, I encountered cases where users frequently mistakenly assigned test applications to production environments. To prevent this without restricting access or privileges, we configured an EPM policy to prompt users specifically when assigning that application to a production environment. This approach demonstrates how EPM policies can be tailored to address various requirements.
EPM provides an additional layer of authentication for accessing a resource, application, or permission. For ASR, we can define rules by which users can access the resources.
Intune has significantly improved productivity by simplifying tasks like certificate authority restoration. For example, using a deployed CA server certificate, I've set up a Wi-Fi profile with auto-authentication. Previously, expiring certificates required manual reissuance, but Intune automates this process by revoking certificates when they approach their expiration threshold. This threshold, configurable within the certificate profile, can be set as a percentage of the certificate's lifespan. A revocation request is triggered when the threshold is reached, ensuring a new certificate is issued for the device or user profile before the old one expires.
Intune's integration with Microsoft 365 and Microsoft Security for both cloud and co-managed devices is beneficial because it offers a centralized platform. We can directly assign licenses within Intune instead of using the separate M365 admin portal to create users, simplifying the process. Intune synchronizes features and functions from M365, streamlining management. However, purchasing new licenses still requires accessing the admin center. Despite this, Intune effectively synchronizes information to endpoints.
What is most valuable?
While conditional access isn't solely limited to Intune, we can also effectively implement and manage conditional access policies through Azure. However, Intune significantly simplifies application deployment, mobile application management, and policy enforcement, such as restricting user access to specific applications, thereby enhancing overall environment security. Furthermore, Intune automates numerous tasks previously requiring manual configuration by administrators, streamlining the process by creating simple policies for desired outcomes.
What needs improvement?
There are specific devices we can focus on. For example, due to GMS restrictions in China, we face limitations. However, BlackBerry UEM can enroll Android devices as Android Enterprise, though the exact method is unclear. We could explore whether Intune can replicate this functionality. Since GMS is unavailable in China, we currently rely on device administrator enrollment for managing Android devices there. This suggests potential opportunities to develop solutions or collaborate with Chinese partners to create new features within Intune for managing Android devices in the Chinese market.
For how long have I used the solution?
I have been using Microsoft Intune for three years.
What do I think about the stability of the solution?
While some specific tenants experience occasional outages and bugs, our monitoring team is actively tracking an upcoming issue affecting certain tenants in specific regions. Both the support and broader teams are diligently working to resolve this. Aside from this, Microsoft Intune is demonstrating overall stability.
What do I think about the scalability of the solution?
If an organization has the budget, they can easily scale Microsoft Intune.
How are customer service and support?
Microsoft's technical support for Microsoft Intune and the broader Microsoft environment consists of several tiers. Customers can choose between broad commercial support, Pro support, or Premier support, the latter including dedicated Customer Success Account Managers and Incident Managers to facilitate access to specialized engineers. Support engineers are categorized into levels one, two, and three. We collaborate weekly with global subject matter experts to address ongoing issues and cases. For complex or backend problems, we engage the product group using a specific request form. While Microsoft previously employed support staff primarily in the US and Canada, they now utilize vendors in India and the Philippines, offering varying levels of expertise. To enhance support quality, Microsoft should invest in training these engineers and consider opportunities for full-time employment, rather than incurring the costs of recruiting and training new staff.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
How was the initial setup?
An organization migrating to the cloud typically requires an Azure subscription as a starting point. While our FastTrack Team offers full migration solutions, IT administrators can also independently move operations to the cloud by purchasing an Azure subscription, tenant, and licenses and configuring policies, privileges, and workloads. Existing on-premises infrastructure can be synced to the cloud using Azure AD Connect, enabling management within a hybrid or pure Azure AD environment. The ease of migration depends on the administrator's experience, and Microsoft support is available for those requiring assistance.
One to two solution architects are enough for the deployment.
Several factors influence the time required for deployment. For instance, with a user base of 100, deployment can be achieved within a week. However, environments with thousands of users and devices, especially on-premises setups, present greater challenges. Customers or administrators migrating to the cloud and adopting Intune often follow a phased approach. They typically start by deploying and testing a subset of policies to assess manageability and feasibility before proceeding with application deployment. As a result, the overall deployment timeline varies significantly across organizations and can extend to several weeks.
What's my experience with pricing, setup cost, and licensing?
Microsoft services are slightly more expensive than competitors but offer advantages and disadvantages. Even if they charge a premium, they aim to provide equal value.
Which other solutions did I evaluate?
I have experience with SOTI MobiControl, Jamf Pro, and AirWatch. SOTI MobiControl excels at managing specific devices, offering a list of compatible models upon request. Intune, however, struggles with printer management and Zebra device compatibility. Its network security features are limited due to ongoing development, and it lacks in-built policies for third-party applications, hindering compatibility and communication with external devices and manufacturers. While custom policies can be implemented, comprehensive built-in options would be beneficial.
What other advice do I have?
I would rate Microsoft Intune eight out of ten.
Intune requires no maintenance after initial deployment, but ongoing subscriptions are necessary for each user as individual licenses are needed monthly. Microsoft continually updates the service to support the latest operating systems and applications, so ensuring our environment is up-to-date is crucial for optimal performance.
Microsoft Intune is a good tool, and to simplify operations, I recommend a full cloud environment over a hybrid environment.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2025
Product Categories
Unified Endpoint Management (UEM) Configuration Management Remote Access Enterprise Mobility Management (EMM) Microsoft Security SuitePopular Comparisons
Microsoft Defender for Endpoint
Microsoft Entra ID
Microsoft Defender for Office 365
Microsoft Defender for Cloud
Microsoft Sentinel
Microsoft Purview Data Governance
Microsoft Defender XDR
Azure Key Vault
Microsoft Configuration Manager
Workspace ONE UEM
Red Hat Ansible Automation Platform
Azure Front Door
Microsoft Remote Desktop Services
Azure Firewall
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Microsoft Intune and VMware AirWatch; Which do you recommend?
- What is lacking in comparison with AirWatch?
- What are the benefits of Microsoft Intune for IT Admin?
- What do you think of the integration of Azure AD Services, Defender for Endpoint, and Intune as comprehensive security solutions?
- What are the main differences between Jamf Pro and Microsoft Intune for Mac management?
- Which solution is better for an educational organization: Google Workspace or Microsoft Intune?
- What are the differences between MobileIron UEM and Microsoft Intune?
- What are the pros and cons of Microsoft Intune?
- How does Microsoft Intune compare with ManageEngine Desktop Central?
- Is it worth migrating from WS1 to Intune if we have Microsoft 365 E3 available?







