The main use cases that I had or have with Microsoft Intune include laptop deployments coupled with Autopilot and day-to-day management of laptops, including patching.
Replaces on-premise tools and enables us to almost completely manage a machine
Pros and Cons
- "We were able to deploy about 65 computers in under two weeks to a completely remote user base without touching any of the machines."
- "Every time we call, we get bounced to a new team... there is no cohesive end-to-end support, which is very frustrating and time-consuming."
What is our primary use case?
How has it helped my organization?
We were able to deploy about 65 computers in under two weeks to a completely remote user base without touching any of the machines. This year was a pure cloud environment. We got rid of their Active Directory joins, and they are running purely in a cloud environment.
What is most valuable?
The features that I find the best with Microsoft Intune are its ability to completely replace all the on-premise tools for group policy and similar functions. It now gives the ability to almost fully and completely manage a machine.
When I first started, the user experience was okay, but it has improved significantly over the last few years.
What needs improvement?
Autopilot still leaves room for improvement regarding monitoring deployments and troubleshooting deployments.
Buyer's Guide
Microsoft Intune
May 2026
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
896,387 professionals have used our research since 2012.
For how long have I used the solution?
I have dealt with Microsoft Intune for approximately four and a half to five years.
How are customer service and support?
I would rate Microsoft support as six out of ten. This is a challenging area because every time we call, we get bounced to a new team. This is an area they could improve. Each time you call in, they tell you that it is not their team's responsibility. You get partway through the solution, and then they say that at this point it becomes another team's responsibility, so you have to start over with them. There is no cohesive end-to-end support, which is very frustrating and time-consuming.
Which solution did I use previously and why did I switch?
Before using Microsoft Intune, we were using a fully manual process, and we transitioned from fully manual to fully automated.
How was the initial setup?
It is straightforward in terms of the UI, but it can be complex to set up because you are working blind with everything on the machine.
What's my experience with pricing, setup cost, and licensing?
Microsoft Intune is not cheap. Microsoft has consistently separated features and charges additional fees, which makes it a much steeper climb from a budgeting aspect because you need to buy something new frequently.
Which other solutions did I evaluate?
We did not consider other options. Microsoft Intune was our preferred and first choice, and we were going to look at anything else only if it failed, which it did not.
What other advice do I have?
We are not using Copilot in Microsoft Intune yet. We are just starting to use the advanced endpoint analytics in the Microsoft Intune suite. Initially, we could not use them because we did not have licenses for them, so we are just transitioning over to them. The advanced endpoint analytics are helping us with detecting and remediating anomalies and endpoints. We have used these capabilities to find old certificates and unexpected web browser extensions, but since we are just getting started, I am not sure of its full capabilities.
I would wholeheartedly recommend Microsoft Intune to others but advise being prepared for an ever-growing cost.
I would rate Microsoft Intune an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Enterprise Mobility Engineer at a computer software company with 11-50 employees
Offers ease of use but needs to improve the tunnel gateway
Pros and Cons
- "I have seen a return on investment right from the start of the tool's usage."
- "The tool's tunnel gateway is not very good, making it an area where improvements are required."
What is our primary use case?
My company has over 7,000 devices, including mobile devices, Windows, and Mac. The tool is only used to manage my team's mobile devices.
What is most valuable?
The solution's most valuable features are its ease of use and control of the MAM and MDM policies and configuration. The tool is straightforward and easy to use, while it also integrates with Azure. It has been a good product so far.
The tool has improved the way my team works as it is a cloud-based tool, so we don't have to manage on-prem servers. We also use apps on Microsoft Office 365, which is also one of the main reasons why we use Microsoft Intune.
I use the enterprise application management features of the tool, and my experience with it has been pretty good. Microsoft tells us that there are no bug issues with the updated versions or current versions, so there are no issues in the tool.
I use Microsoft Intune's Cloud PKI, and it helps manage the complexity of certificate management in infrastructure pretty well. There are no issues with certs or updating them.
Microsoft Intune has not affected my IT productivity, but it is not a very Android-friendly tool. We have had a lot of Android issues and compatibility problems with our VPN or tunnel. The tool is not very Android-friendly.
The maintenance of the tool is a lot less now for our company.
With the day to day device management tasks, the tool has been great, and there have rarely been any issues with it.
The mobile application management policies, specifically conditional access policies and app protection policies, are good features for managing diverse mobile environments. The DLP part is very strong.
What needs improvement?
The tool's tunnel gateway is not very good, making it an area where improvements are required. I wish it weren't so Azure's security group-based tool with which you can have local accounts. More personalization should be possible in the tool. One negative about Microsoft Intune is it acts too much as one of Azure's group-based products.
For how long have I used the solution?
I have been using Microsoft Intune for half a year. I am just a customer of the solution.
What do I think about the scalability of the solution?
I think the scalability is pretty easy and a lot easier to manage since we don't have to deal with the on-premises side. We use the cloud for extra storage, so it has been great.
How are customer service and support?
My experience with the solution's technical support has been very good, but for other teams, it has not been very good. I rate the technical support a nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
My company previously had some on-premises tools, but now it is cloud-based, so we save all the money on the network infrastructure and data centers. We don't need servers or storage, and it helps us save money.
How was the initial setup?
When it comes to the product's deployment phase, I have taken part in the mobility side. In our company, we went through a migration, so there is always a lot of planning and testing and all that goes with it. Overall, it is fairly easy to use because it is deployed on a SaaS model.
The solution is deployed using a dedicated SaaS model. I think other teams have deployed it using an on-premises model.
The solution's deployment phase took a year and a half to test and set up everything. There was a lot of stuff involved.
What was our ROI?
In our company, prior to our migration, we already had Office 365 licenses, so it saved us around 4,00,000 for around a year.
I have seen a return on investment right from the start of the tool's usage.
What's my experience with pricing, setup cost, and licensing?
I don't really know how much it costs, as my company pays for a bunch of licenses. The tool is cheaper than our company's other MDM tools.
What other advice do I have?
My company has a few of Microsoft Intune's compliance policies that have helped us with some of the issues with sync interval with the compliance that we have noticed. The sync interval or the turnaround is not as quick as our company would like it to be currently. I understand that we can't control the sync interval.
I rate the tool a seven and a half out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Microsoft Intune
May 2026
Learn what your peers think about Microsoft Intune. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
896,387 professionals have used our research since 2012.
Intune Administrator at Vvolve management consultants
An easy platform for device management, security, and productivity
Pros and Cons
- "Intune saves time, and it is very easy to use. It allows us to manage applications completely."
- "If we could remote into a device, it would be great. Currently, we cannot directly connect to the user device. We have to use other tools such as VMware for connecting to devices."
What is our primary use case?
Intune is a cloud-based platform for mobile application management and mobile device management. We can deploy applications on user devices and enroll user devices. We can enroll devices as per the organization's security policies. The devices comply with all the policies of the organization. We can also change the policies at the backend via Intune.
How has it helped my organization?
Intune helps with enrollments and securities. We can control the access to devices and users. We can specify what users can do. We can give role-based access. For example, a person working as a normal user does not require the same access as a manager. We can give access to users based on their roles. For example, a manager can add users to a particular group, but users cannot do that. We can restrict a user from doing certain activities. For example, we can restrict the user from using a camera or microphone. We can do such a configuration at the backend and deploy it to the user device.
Intune is very helpful for IT and security operations. If Intune is not there, we have to manually connect to user devices and deploy the changes. If we have thousands of devices, doing this manually on each and every device is very difficult. With Intune, we just configure the required settings and deploy them to a thousand devices in a single group. In a single step, we can add devices to a group. We can apply configuration easily. It is very helpful. It saves time. Adding or configuring devices manually takes a few months, whereas the same thing can be done with Intune within minutes.
We have had a very good experience. It is a Microsoft product. Everything related to a user is available. We have user names, user devices' names, and user licenses. We can also check the device compliance. We can see whether the device complies with the company policies or not.
Application updates and patching are available through Intune. We can also change group policy settings and registry settings of a device via Intune. We can change these settings without connecting the device. We can do that by deploying the PowerShell script or configuration profiles. For example, a kiosk device should stay up for hours and hours. It should not go to sleep. You can configure such devices to not go to sleep until 999 minutes. It is a very long time. If we enable such settings and add a particular user device group in the configuration, after the device starts syncing with the policy, no device will go to sleep.
With the Advanced Endpoint Analytics, we can see the application installation status. If we deploy a script to the user, we can see the status. We can see if it is a success or if there is a conflict. We can monitor the changes in user devices and check the compliance status. We can see if any app such as CrowdStrike is not updated.
With the help of Advanced Endpoint Analytics, we can proactively detect and remediate anomalies in endpoints. We can then reach out to users.
Intune saves us a lot of time. If we package an application using virtual packaging or physical packaging, it will take nearly two to three hours to package a single application. If we do this in Intune, it takes just minutes to add applications and deploy users. We can also monitor the particular application status in Intune.
The devices that are linked with Azure Active Directory are automatically linked with Intune. That makes the enrollment and management of BYO devices easy.
Intune has affected IT productivity in our organization. By saving time, it has automatically improved productivity.
Intune certainly saves costs. Without a cloud-based solution like Intune, we would require more IT staff.
What is most valuable?
Microsoft releases updates every second Tuesday. We can deploy those updates from Intune. We can also do patching through Intune. We can do quality updates and feature updates from Intune. We can also monitor the application status in Intune. We can see which applications are installed, pending, or available to install. We can see these things in Intune.
It is user-friendly. We can also troubleshoot any issues.
Intune saves time, and it is very easy to use. It allows us to manage applications completely.
What needs improvement?
If we could remote into a device, it would be great. Currently, we cannot directly connect to the user device. We have to use other tools such as VMware for connecting to devices.
If there are any issues, we should be able to connect through the Intune portal. The administrator should not have to go anywhere from the portal. He should be able to do everything from the portal.
Intune does not show whether a device is online or offline. It just shows the last login. It would be useful to know whether a device is online or offline.
We can see the issue related to updates in the Intune portal, but we cannot do anything from the Intune end. We have to connect to the user's device manually. We also need a better understanding of why the update is not happening on a particular device. It will decrease the time to troubleshoot the issues.
At times, there have been slowness issues with the company portal. It takes time to load and does not show the application status.
It would be great if there is a way to generate a PowerShell script to do certain things. Learning the PowerShell script is not easy, so such a feature would be helpful. Based on what we want, if it can automatically generate a script, it would be helpful.
It is not necessary, but it would be great if they added a messaging system in Intune. For example, when it is a shared device, a number of users log in to the device. In the case of any issue, it would be great to be able to directly message a user from Intune. Currently, there is no option for that, but if it could be done, it would be a very good thing.
For how long have I used the solution?
I have been working with this solution for the last 18 months.
What do I think about the stability of the solution?
It is 100% stable.
What do I think about the scalability of the solution?
It is very scalable.
We have about 12,000 devices and 20,000 users.
How are customer service and support?
So far, I have not raised any questions with them.
Which solution did I use previously and why did I switch?
I have worked with Microsoft SCCM. It is similar to Intune but not as user-friendly as Intune. Intune is very easy to understand. Its framework is very good. Microsoft SCCM is very old.
I have not worked with any other vendor.
How was the initial setup?
I am involved in the deployments, enrollments, troubleshooting errors, and monitoring in Intune. I take care of adding devices, users, and licenses, deploying policies, and configuring policies and scripts.
Its deployment does not require much. We just need a license to operate it. Our management takes care of that. There are a few licenses that are active only for nine hours. After nine hours, the roles are deactivated.
It does not require any maintenance from our end.
What's my experience with pricing, setup cost, and licensing?
Intune is linked with Microsoft. We can deploy the Microsoft E365 license to users by Intune. There are different types of licenses, such as device administrator licenses, E5 licenses for device enrollment manually, and P1 and p2 licenses for device enrollment automatically. These are the licenses required for the administration.
Which other solutions did I evaluate?
I did not evaluate any other option. This was my first project, and I started as an Intune administrator.
What other advice do I have?
It is a very good tool. It is easy to learn. You can expect quick assistance from Intune.
Before using Intune, I would recommend learning about Windows. Learn about the registry, configurations, and group policies. If you know these, it is easy to learn Intune.
You can face enrollment errors if the prerequisites are not met. For example, to upgrade from Windows 10 to Windows 11, you need to have some amount of free space or RAM. If you do not care about the prerequisites and just enroll the device, it causes issues. It will affect the device, and you need to enroll the device again.
I would rate Intune a nine out of ten.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Administrator at PARITY SYSTEMS
Integrates company policies efficiently and has a straightforward setup process
Pros and Cons
- "The solution has significantly improved managing a diverse range of devices. We have observed enhancements across Android, iOS, and Windows devices."
- "There could be more competent processes and improvements in the policy space."
What is our primary use case?
We use the product to enroll devices, install configurations, and manage apps across our infrastructure. We address issues related to app protection policies, conditional access, and custom policies with its help.
How has it helped my organization?
The solution has significantly improved managing a diverse range of devices. We have observed enhancements across Android, iOS, and Windows devices.
What is most valuable?
One of the product's best features is its ability to integrate company policies and configurations into applications directly.
What needs improvement?
There could be more competent processes and improvements in the policy space. If devices follow the rules, it will benefit the company. If they do not, it will lead to non-compliance. We have been able to implement some common policies, such as data sharing, handling rooted devices, and managing cyber-available data. We are working on latency and permissions, including PIN tests and direct access to information, to enhance the overall process.
For how long have I used the solution?
I have four years of experience working with Microsoft Intune.
What do I think about the stability of the solution?
The product is stable. I rate the stability a ten.
What do I think about the scalability of the solution?
I rate the platform scalability a ten.
How are customer service and support?
The technical support services are satisfactory.
How would you rate customer service and support?
Positive
How was the initial setup?
The product can be deployed on the cloud or on-premises.
First, we access the Azure portal by browsing the URL and searching for Intune. Later, we can directly log in to the endpoint management section.
We create and assign licenses to use these tools and then provide users with instructions. Users have to download the company portal and follow the setup steps, which include entering necessary personal information, accepting terms, and managing settings.
Next, we handle the installation process within the company. We need to trust the application by selecting the appropriate option. If applicable, we enable settings on mobile devices. Following that, users must log in and configure settings as required. These options and settings are available through the company portal. The process is straightforward, and it doesn't require maintenance.
What was our ROI?
The product has helped save money. I would estimate that it has saved around 20% of the investment.
What's my experience with pricing, setup cost, and licensing?
The product is expensive.
What other advice do I have?
Microsoft Intune provides everything in one place and streamlines our security operations significantly. It has impacted IT productivity across different devices, including Android, AWS, and Windows.
We use application management within Intune Suite. For instance, on Windows devices, we create and manage applications through a structured process. It involves configuring firewall settings, managing OS types, and ensuring that PC applications are updated regularly. We typically make monthly changes and create and manage application packages to maintain quality and compliance.
Copilot has simplified our operations by streamlining the issue management process. For instance, we can efficiently address and resolve issues when we receive tickets. It assists with authentication and other Intune-related tasks, which helps us handle hardware-related issues more effectively.
Intune helps secure hybrid work environments by managing both company-owned and bring-your-own devices. You can enforce policies to convert personal devices into compliant company devices, ensuring that data is protected regardless of whether the device is company-owned or personal.
Endpoint privilege management is integrated into our endpoint management system. It helps us manage and control permissions for various applications and endpoints. It allows us to enforce least-privileged access, which helps minimize security risks. I use it in my organization to enforce the least privileged access. It involves managing access through various channels and ensuring users sign in and complete necessary audits. The process is designed to act as a mediator.
I recommend it to other users and rate it a ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Helps to manage our computers and users and enforce organizational policies on the computers
Pros and Cons
- "What I like most about the tool is that it's now very easy to set up a device for someone to use. It also helps us tremendously in managing security. Before, we used on-premise management with a domain controller. It was difficult to manage security comprehensively. For example, it was hard to know which computers were updated. We weren't able to do that easily with our previous solution."
- "Applying security recommendations can be difficult in Microsoft Intune. Sometimes, they give you recommendations, but you need a different server to manage the pieces, or you have to go to each device individually. However, it has been improving. Before, there were certain policies you could not implement directly in Intune, but now I see progress. I would like to see more improvement in policy management, similar to how we used group policies on-premises."
What is our primary use case?
We use Microsoft Intune to manage our computers and users and enforce organizational policies on the computers. We wanted to remove our in-house service and move device management from on-premise to the tool. This helped us manage devices for staff who don't come to the office across locations. Before, when we had policy changes, they weren't always applied or enforced for remote staff in time. We needed a better solution, and Microsoft Intune worked well for our needs.
What is most valuable?
What I like most about the tool is that it's now very easy to set up a device for someone to use. It also helps us tremendously in managing security.
Before, we used on-premise management with a domain controller. It was difficult to manage security comprehensively. For example, it was hard to know which computers were updated. We weren't able to do that easily with our previous solution.
Having all our endpoint and security management tools in one place with the product has made things very easy and efficient for us. Before, it was sometimes difficult to know what problems a device had. But now, we can see any issues or vulnerabilities on a device. We can also easily apply any needed updates.
I find the tool's user experience very good for the admin side. It's easy to use—you only need a browser and can work from anywhere. This makes it very convenient for us admins to provide support from any location.
It's now much easier for end users to provision a device. Wherever the person is, we can get them to sign in to their account for the first time. This is a big improvement because previously, the person would have had to be physically in the office to use the organization's domain for the first time. Now, it's become much simpler for them to get set up.
The main benefit of using Microsoft Intune is that we can now provide support from anywhere. One major problem we had before was when we needed to give someone an admin password. Now, we can give the password to the person and then change it immediately. This has been very helpful, especially since we have many people working remotely.
We have situations where people have to use their devices to access organizational resources. One of our issues was when someone had to use a personal device to access organizational resources. How are we sure that the right person is using it? How can we control the resource? Now, if you want to use your device, we don't have any issues. We enroll it, and if we need to wipe our resources, we can do it. So it helps us in that area.
The solution's impact on productivity has been tremendous because now we can manage everything. Before, with the old solution, sometimes our server would give us problems. Now, Microsoft handles all that, so we don't have to spend time fixing server issues. This allows us to focus on specific issues for individual users.
Maintaining servers, backups, and related costs was a huge cost for a small organization. Now, with Microsoft Intune, you scale as needed. We don't need to spend too much on servers and their associated costs, which has been very good for us.
What needs improvement?
Applying security recommendations can be difficult in Microsoft Intune. Sometimes, they give you recommendations, but you need a different server to manage the pieces, or you have to go to each device individually. However, it has been improving. Before, there were certain policies you could not implement directly in Intune, but now I see progress. I would like to see more improvement in policy management, similar to how we used group policies on-premises.
For how long have I used the solution?
I have been using the product for five to seven years.
What do I think about the stability of the solution?
I rate the solution's stability an eight out of ten.
What do I think about the scalability of the solution?
The solution is used in two regions. In Ghana, we have about 100 users; in the second location, we have another 70. It is scalable.
How are customer service and support?
The solution's support is not straightforward. They do not provide the solutions that we expect them to provide.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Before using Microsoft Intune, we used Google for Business. We switched because Microsoft provided us with almost everything in one place, making it easier to manage everything centrally. Using Microsoft alone was more efficient than bringing in Microsoft at some points while using Google.
How was the initial setup?
The tool's deployment is straightforward. We conducted a two-month pilot and then completed the device migration in two weeks with the help of three resources.
What about the implementation team?
One person came with the license, and two resources were in-house.
What was our ROI?
The solution helps to save costs by 20 percent. Implementing Microsoft Intune has made us use less IT software for security. Before, we had to rely on expensive third-party security solutions that didn't consider our size. With the product, we can manage everything at a fraction of the cost, focusing on user licenses. We've seen a return on investment with it, especially during the COVID period, as we could get everything done without issues. Overall, Intune has saved us about 50% in time and resources.
What's my experience with pricing, setup cost, and licensing?
The solution is cost-efficient.
What other advice do I have?
We're not using Microsoft Intune Suite's enterprise application management feature. We're using the business line version, which doesn't have all the features of the enterprise version. However, it provides us with updates on vulnerabilities and recommendations on the security side.
For anyone considering the product, I would tell them to consider it if they want to have peace of mind and be able to give their best. Microsoft Copilot is on our roadmap for next year.
Microsoft 365 and Microsoft security must be integrated for cloud and co-managed devices. This integration makes it easy to apply solutions from one point and have them work across the system. If we were using different systems, we would need to grant permission for them to communicate, which could cause issues. It helps to spend less time getting the work done. As for maintenance, I haven't noticed anything required on my part.
I would recommend Intune, especially if you're not a large enterprise that can afford various tools from various vendors. Microsoft products make it very easy to run your business and have control and visibility. Sometimes, you don't know what's happening in your environment, and Microsoft Intune helps you understand what is happening. Overall, I would rate it a seven out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Intune/System Engineer at a manufacturing company with 11-50 employees
Offers centralized management and ensures security and compliance
Pros and Cons
- "We were trying to solve many issues, mainly the lack of centralized management. Before Microsoft Intune, we had to manually support devices one by one, installing applications and configuring policies individually. When we implemented the tool, it became much easier to manage our devices. We enroll them in Microsoft Intune and can manage all devices with a few clicks. For application management, it's the same process. If we want to deploy applications to hundreds or thousands of devices, we can do it easily with just a few clicks. This also applies to policies."
- "The solution needs to improve reporting. Sometimes, it shows double or triple entries of the same thing, which affects the count's accuracy. Also, some applications onboarded in Microsoft Intune do not get updated. When we look for solutions online, there is often no clear answer."
What is our primary use case?
We use the solution for endpoint management for about 15,000 devices. It helps us ensure compliance and security for our devices according to standards. We also use it for application management, security and compliance, and centralized management from a single point. So, it covers endpoint management, app management, and compliance management and provides centralized control.
What is most valuable?
We were trying to solve many issues, mainly the lack of centralized management. Before Microsoft Intune, we had to manually support devices one by one, installing applications and configuring policies individually. When we implemented the tool, it became much easier to manage our devices. We enroll them in Microsoft Intune and can manage all devices with a few clicks. For application management, it's the same process. If we want to deploy applications to hundreds or thousands of devices, we can do it easily with just a few clicks. This also applies to policies.
I have been using Microsoft Intune and another solution for endpoint management. What I like the most about IT is that it's a cloud-based solution. We don't need any on-premises infrastructure to manage it. It's easy to access the portal from anywhere securely. This setup reduces our workload because Microsoft handles everything related to the infrastructure, including notifications about any downtime. This way, we can inform our customers in advance.
We are currently using different solutions, but all from Microsoft. We use Microsoft Defender for Endpoint Security. it also includes Microsoft Defender. In the future, we might use these tools for security purposes.
The solution's user experience is very good. Compared with on-premises solutions, it deploys applications and policies faster, resolving user queries in less time. Configuring anything is easier; users only need to follow a few basic steps, such as installing the company portal app and logging in with their ID and password, to integrate their device. Unlike on-premises solutions, which can be confusing, the solution allows us to manage various devices, including Linux, mobile devices, and Windows.
It functions similarly to on-premises but offers additional features. For example, we can maintain applications downloaded from the Microsoft Store and onboard them as a solution for user-based deployment. This reduces the need to create manual packages, as most applications are available on the Microsoft resource.
What needs improvement?
The solution needs to improve reporting. Sometimes, it shows double or triple entries of the same thing, which affects the count's accuracy. Also, some applications onboarded in Microsoft Intune do not get updated. When we look for solutions online, there is often no clear answer.
Microsoft Intune has no automatic cleanup option for devices that haven't been used for over 90 days. It would be beneficial for Microsoft to add such a feature.
For how long have I used the solution?
I have been using the product for two years and six months.
What do I think about the stability of the solution?
The solution is stable, but there was one incident where we faced an issue with a security patch. We didn't receive any notification about this problem, which caused significant issues in our infrastructure. Regarding SLA, we now receive multiple notifications from Microsoft about planned downtimes.
What do I think about the scalability of the solution?
The tool is used by users in our environment across various locations, including RU, APAC, China, India, Pakistan, and Germany. It is scalable.
How are customer service and support?
Microsoft support takes time to respond.
How would you rate customer service and support?
Neutral
How was the initial setup?
The installation and implementation were very easy compared to on-premises solutions. We just needed one Azure account to create a tenant and log in to endpoint management. The setup required only a full subscription. On-premises setups, by contrast, need multiple servers, VPNs, and IP configurations, which is much more complicated. Configuring the tool took around 10-20 minutes, and only one person was needed.
What was our ROI?
The solution has reduced manual labor by approximately 15%. Many business applications, such as Google Chrome and VLC Media Player, are available in the Microsoft Store. We still need to manually create packages for a few custom applications used by our organization that aren't available in the Microsoft Store. However, we can onboard the majority of applications without creating manual packages. Being a cloud-based solution, it eliminates the need for multiple on-premises servers and the associated infrastructure. We only need a cloud subscription to manage everything. We can save around 40 percent on costs with Microsoft Intune. It has also helped us save money, time, and resources by 50-60 percent.
What other advice do I have?
We use the workbook to describe data on device compliance. It helps us generate reports and analytics about how many devices are compliant and how many are below the patch compliance deadline for updates. We do use some of the reporting features. For endpoint security, we can check how many devices have been affected by malware and how many have an updated Defender platform.
Microsoft Intune is a cloud solution, so there's no need to maintain servers, patch networks, or configure network info. It provides EDR capabilities. The solution also allows for mobility management, meaning we can manage mobile devices. Additionally, it can manage Chrome OS and Linux devices, though we aren't currently using that feature. The tool offers a centralized solution for deploying policies, compliance policies, application management, and patching servers and workstations.
The product has reduced our costs and centralized management. We can manage all our devices from a single console, which is very effective for reporting.
It simplifies deploying applications. We can push policies to ensure only certain users can access specific applications. Additionally, Intune allows us to create user and device groups.
Currently, we manage privileges through Azure AD. We have groups set up with specific group policies and restrictions. For example, we've assigned certain licenses, such as E5 and Office 365 Copilot licenses, to users through these groups, granting them the necessary privileges to access these features.
The solution supports logging, which helps us easily trace and identify issues. It also provides many reports on device compliance and configuration. This capability helps us reduce the time required to reach out to Azure.
It centralizes the management of users, groups, and applications. In an on-premises setup, we would need multiple teams, such as an AD and application packaging team. With Microsoft Intune, we don't need to create packages for many applications, as they are already available in the line of business.
I would recommend it to other users because it's a cloud solution that centralizes the management of endpoint devices, security, and Azure products. However, I would mention that reporting is an area where the tool could improve, as it's crucial for some organizations. If reporting is a critical need, Microsoft Intune might not fully meet those requirements.
I rate it an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Cybersecurity Administrator at a consultancy with self employed
I like how the solution deploys the policies and makes them customizable
Pros and Cons
- "I like how Intune deploys the policies and makes them customizable. You can deploy it through Intune and forget about it."
- "Sometimes, it takes time to synchronize the policies between the portal and the devices, you don't have a way to estimate how long it will take to deploy. You have some kind of gray area, where it can deploy in 30 minutes or three days."
What is our primary use case?
We use Intune as the MDM platform, and we used to deploy some products connected to Intune.
How has it helped my organization?
Intune has improved productivity somewhat by connecting the AD with Microsoft Defender and the MDM because we can identify the Internet server. That's the main application or port over which we can manage our infrastructure. It streamlines device management.
What is most valuable?
I like how Intune deploys the policies and makes them customizable. You can deploy it through Intune and forget about it.
You can connect Defender for Endpoint to Intune and assign the client to start porting detections and alerts, creating a little security operations center. The integration is easy but tricky for someone who doesn't know how to use it. Once you learn to use it, it's a powerful tool that can condense most of your administrative tasks into one place
Integration with Microsoft 365 and security is critical if you have a Microsoft infrastructure. You want all the tools to be connected and exchanging data so that when you make a change or deploy something, you can make an informed decision and log the errors. You can avoid having different types of configurations and strengthen your policies.
We've been using what they call conditional access in which we set up policies and apply them based on certain conditions and attributes. For example, you can apply some policies to company-owned devices and a different set of policies to devices for personal use.
What needs improvement?
Sometimes, it takes time to synchronize the policies between the portal and the devices, you don't have a way to estimate how long it will take to deploy. You have some kind of gray area, where it can deploy in 30 minutes or three days.
For how long have I used the solution?
I have two years of experience with Intune
How are customer service and support?
I rate Microsoft support nine out of 10. When we raise a ticket, they respond with a solution or guidance on how to fix the problem within 24 hours.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used VMware Workspace ONE and one other MDM. Based on my experience, I think Intune is the most robust because of how easily it can integrate with the other Microsoft tools. You won't need to deal with the process of connecting the Active Directory to Intune. Once you have your account with a subscription and a license, it will connect automatically, and you won't have a big problem with it.
What's my experience with pricing, setup cost, and licensing?
Microsoft offers a license that lets you access all the tools. Purchasing that license will probably be the most cost-effective if you plan to implement a Microsoft-oriented infrastructure. It's cheaper than purchasing all the products separately.
What other advice do I have?
I rate Microsoft Intune eight out of 10.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
End User Computing Architect at a consultancy with 10,001+ employees
Simplifies IT and security operations and enrolling endpoints is a breeze
Pros and Cons
- "A valuable feature is user enrollment, where users can enroll their devices in their organizations themselves."
- "The current Intune reporting functionality could benefit from some improvements."
What is our primary use case?
We use Intune to manage endpoints as a centralized enterprise solution. Instead of relying on Active Directory or an on-premise system, we directly manage employee devices using Microsoft Intune. Intune, a cloud-based SaaS product, simplifies endpoint management. From a user perspective, it's an improvement. Users no longer need to be on the office network. They can set up their devices anywhere with an internet connection, whether at home or another location.
Security is also enhanced. By using Intune as a mobile device management solution, we can implement security controls and restrictions on endpoints. Intune helps us achieve a balance between user experience and security.
How has it helped my organization?
Managing remote employee devices with Microsoft Intune is easy. Intune acts as a central platform for deploying controls, policies, and applications to our endpoints. It simplifies the delivery of these configurations to our remote workforce.
Intune simplifies our mobile application management. Once implemented across the organization, it will eliminate our reliance on on-premises solutions. Previously, managing endpoints required using our System Center Configuration Manager. Now, Microsoft offers a unified solution called Microsoft Endpoint Manager. Intune, a key component of this suite, allows for convenient device enrollment over the internet, streamlining endpoint organization.
Intune helps bring our endpoints and security management tools into one place.
Consolidating endpoints and security management tools simplifies IT and security operations. This unified approach offers a single solution or console for all tasks. Role-based access control ensures each administrator only sees and modifies what's relevant to their role. For example, the security team can access Intune solely for security-related functions, while the patch management team has its own set of permissions. This centralized management is significantly easier to handle than using multiple third-party tools. Intune provides a comprehensive solution where everyone can configure settings – security, endpoints, controls, etc. – within a single platform.
Intune offers endpoint visibility and IT control across various device platforms. It simplifies troubleshooting and device management compared to other solutions. Intune excels in providing a comprehensive solution. We can manage applications, security controls, and patching processes all within Intune. This eliminates the need to rely on three separate solutions. With Intune, everything is consolidated into a single platform, allowing for combined reporting and streamlined issue resolution.
Enrolling endpoints with Intune is a breeze! The overall user experience is excellent, easily a nine out of ten.
There are three critical features of Intune for maintaining our devices' security. Endpoint encryption ensures data on the device is scrambled even if it's lost or stolen. Intune supports BitLocker encryption for Windows devices and file-level encryption for Mac devices. Defender is a comprehensive security solution that helps protect devices from malware, viruses, and other threats. Compliance policies in Intune allow us to define security requirements for devices. These policies can enforce encryption, complex passwords, and other security settings. If a device doesn't meet the compliance policy, it can be restricted from accessing organizational resources. Intune can also send notifications to users or administrators when a device becomes non-compliant.
In the initial stages of migrating from our on-premises solution to Intune, we relied on device compliance policies. We configured these policies to require the latest antivirus signatures, specifically targeting developer devices. This ensured compliance and minimized the risk of non-compliance impacting their work. While compliance policies were initially used, we've since transitioned to Microsoft Defender, which now plays a major role in our device security strategy.
Intune's application deployment feature has significantly improved efficiency in our IT department. As one of its key functionalities, Intune allows deployment of a variety of applications with different extensions, such as .DXE or .MSI files. However, for applications requiring custom license scripts, batch files, or executables, Intune provides its own Windows app deployment toolkit. This toolkit facilitates the conversion of these files into a format compatible with the Intune app store and its update system.
The user interface is easy to navigate. Microsoft provides monthly updates that introduce new features. Previously, they provided pie chart visualizations for complaint and policy control status reports. These have been transitioned to standard chart formats. Overall, the UI continues to improve with each Microsoft update.
Company-owned devices are subject to a different set of policies. These policies may be very strict, restricting certain functionalities, or they may prioritize security above all else. On the other hand, for BYOD programs, we provide users with certain privileges for their mobile devices and laptops. We create a secure, isolated environment in a sandbox to manage the devices within that environment. Security is a major consideration for both BYOD and company-owned devices.
Intune has increased our IT productivity for patching and security by around 15 percent.
Microsoft Intune helps our organization reduce the risk of security breaches by eight percent by deploying zero-day patches in conjunction with Defender and Sentinel.
Intune has helped us consolidate vendors with the driver deployment and onboarding.
We manage configurations for Microsoft 365, co-managed devices, Azure, Defender security controls, and DLP controls within Intune. This centralized platform allows us to configure roughly 80 percent of these services and controls in a single location.
What is most valuable?
A valuable feature is user enrollment, where users can enroll their devices in their organizations themselves. This streamlines the process and saves IT time.
Another key benefit is zero-day productivity. During enrollment, the user has access to the applications and settings the organization needs them to have, making them ready to work immediately. Intune essentially pre-configures the device based on the user and organization during enrollment.
Finally, Intune offers easy patch management for various endpoints, including Windows 10, 11, and Macs. Deploying upgrades and monthly patches is significantly simpler compared to other solutions, both from Microsoft and third-party vendors.
What needs improvement?
The current Intune reporting functionality could benefit from some improvements. Specifically, a report that tracks patch deployment status would be valuable. Ideally, I'd like a report that provides device-level details on applications and controls deployed. However, it seems like other organizations might be more interested in control-centric reports, showing details like what control was deployed, the number of devices affected, and other relevant device data. Overall, reporting is the area where we're encountering the most challenges with Intune.
For how long have I used the solution?
I've been using Microsoft Intune as a comprehensive solution for the past six years. While I had some experience with it before 2019, it was limited to mobile device management. Since 2019, I've been managing the full Intune suite as an administrator, overseeing Windows endpoints, Mac endpoints, Android and iOS.
What do I think about the stability of the solution?
I would rate the stability of Microsoft Intune eight out of ten.
What do I think about the scalability of the solution?
Microsoft Intune excels in scalability, earning it a nine out of ten rating. It empowers organizations to migrate to the cloud and manage all their endpoints seamlessly. This includes a wide range of platforms like Windows, macOS, mobile devices, and even Linux. Intune simplifies endpoint management by offering a centralized solution for all these platforms.
How are customer service and support?
The response time and technical knowledge of the support team is not what it used to be.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We previously used an on-premises solution, Microsoft Endpoint Manager, to manage our devices. The pandemic necessitated a shift to the cloud.
How was the initial setup?
The initial deployment of Intune can be complex because it is linked to Microsoft Entra, which itself is a complex product. This complexity depends on the desired outcome. Intune's deployment complexity hinges on whether users will enroll their devices themselves or if the IT team will enroll them and grant access. A proper pre-assessment is crucial to determine if Intune's complexity aligns with our desired outcome.
Our deployment took two months to complete because of the internal security approvals we required.
Three administrators were required for the deployment.
What's my experience with pricing, setup cost, and licensing?
The price for Intune is fair.
What other advice do I have?
I would rate Microsoft Intune eight out of ten. There are some improvements concerning the reports and there are other design-related concerns that we are looking at in Intune.
We don't have the tunnel option because we primarily work in a restricted computer environment. Our organization uses Microsoft Intune to manage applications within a dedicated sandbox environment. We perform frequent updates to ensure everything is current.
During the initial onboarding process, we encountered some challenges, and multiple teams were involved in resolving them. For example, users from India might experience issues like broken URLs or restricted access due to their ISPs. Similarly, in China, certain URLs might be blocked by some internet service providers. To address these issues, we initially involved additional administrators from each region on the administrative side. However, we've since transitioned to a centralized management structure with a core team of five to six members overseeing the entire organization.
We maintain a separate development Intune environment for User Acceptance Testing specific to the Asia Pacific region. Since our production environment is also located in Asia Pacific, we essentially have two Intune instances: one for development and one for production. We also have around 290,000 devices.
We have a team of five Intune administrators. The only maintenance required for Intune is the updates.
I recommend Microsoft Intune.
Based on the number of users and devices you're enrolling, I recommend having separate UAT and production Intune environments for larger deployments. For simpler environments, a single Intune license is sufficient to manage your devices and integrate with your Enterprise and Microsoft 365 solutions.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2026
Product Categories
Unified Endpoint Management (UEM) Configuration Management Remote Access Enterprise Mobility Management (EMM) Microsoft Security SuitePopular Comparisons
Microsoft Defender for Endpoint
Microsoft Entra ID
Microsoft Defender for Cloud
Microsoft Defender for Office 365
Microsoft Sentinel
NinjaOne
Microsoft Purview Data Governance
Microsoft Defender XDR
Microsoft Configuration Manager
Red Hat Ansible Automation Platform
WhatsUp Gold
Workspace ONE UEM
Azure Key Vault
VMware Aria Automation
Buyer's Guide
Download our free Microsoft Intune Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Microsoft Intune and VMware AirWatch; Which do you recommend?
- What is lacking in comparison with AirWatch?
- What are the benefits of Microsoft Intune for IT Admin?
- What do you think of the integration of Azure AD Services, Defender for Endpoint, and Intune as comprehensive security solutions?
- What are the main differences between Jamf Pro and Microsoft Intune for Mac management?
- Which solution is better for an educational organization: Google Workspace or Microsoft Intune?
- What are the differences between MobileIron UEM and Microsoft Intune?
- What are the pros and cons of Microsoft Intune?
- How does Microsoft Intune compare with ManageEngine Desktop Central?
- Is it worth migrating from WS1 to Intune if we have Microsoft 365 E3 available?









