In this course, students will learn how to support the installation tasks associated with Windows 10.  They will develop skills that include learning how to install and customize Windows 10 operating systems.

Students will also learn:

  • about the new Windows servicing model and methods for keeping Windows up to date.
  • how to support the configuration tasks associated with Windows 10.
  • develop skills that include managing storage, files, drivers, and printers as well as how to configure network connectivity for Windows 10.
  • about installing, managing, deploying and troubleshooting Windows 10 and applications.

During this course, students will be introduced to key components of modern management and co-management strategies. They will examine what it takes to incorporate Microsoft Intune into an organization and how to use it to manage modern desktops and devices.

Students will also learn about methods for deployment and management of apps and browser-based applications.


There are no fixed prerequisites for this course. However, it is recommended that you earn your Microsoft 365 Fundamentals certification prior to training for other Microsoft 365 certifications. The candidates should be good in the below-listed skills:

  • Basic understanding of computer networks and hardware concepts.
  • Basic understanding of OS and Application concepts.
  • Experience with using Windows OS

Audience Profile

Candidates for this exam are IT professionals who perform installation, configuration, general local management and maintenance of Windows 10 core services.

Candidates may also be familiar with enterprise scenarios and cloud-integrated services.

The Modern Desktop Administrator role focuses on cloud services rather than on-premises management technologies.

After completing this course, students will be able to:

  • Install Windows
  • Update Windows
  • Troubleshoot files and Apps
  • Deploy Windows 10
  • Manage updates for Windows 10
  • Manage Identity in Azure AD


Windows 10

Deploy Windows

  • Install Windows 10
    • perform a clean installation
    • perform an in-place upgrade (using tools such as WDS, ADK, etc.)
    • select the appropriate Windows edition
  •  Perform post-installation configuration
    • configure Edge and Internet Explorer
    • configure mobility settings
    • customize the Windows desktop
    • troubleshoot activation issues
    • configure printers and external devices
    • configure Windows 10 by using provisioning packages
    • configure Microsoft Store settings
    • configure application settings
    • configure and manage services

Manage devices and data

  • Manage users, groups, and devices
    • manage local groups
    • manage local users
    • manage users, groups, and devices in Active Directory Domain Services
    • manage users, groups, and devices in Azure Active Directory
    • configure sign-in options
  •  Configure devices by using local policies
    • implement local policy
    • troubleshoot group policies on devices
    • configure Windows 10 settings by using group policy
  •  Manage Windows security
    • configure user account control (UAC)
    • configure Windows Defender Firewall
    • implement encryption

Configure storage and connectivity

  • Configure networking
    • configure client IP settings
    • configure mobile networking
    • troubleshoot networking
  •  Configure data access and protection
    • configure NTFS permissions
    • configure shared permissions
    • configure local storage
    • manage and optimize storage
    • configure file and folder permissions
    • configure OneDrive/OneDrive for Business

 Maintain Windows

  •  Configure system and data recovery
    • perform file recovery
    • recover Windows 10
    • troubleshoot startup/boot process
    • create and manage system restore points
  • Manage updates
    • troubleshoot updates
    • select the appropriate servicing channel
    • configure Windows update options
    • plan for Windows updates
    • configure updates by using Windows Update for Business
  • Monitor and manage Windows
    • configure and analyze event logs
    • manage performance
    • manage Windows 10 environment
    • configure local registry
    • schedule tasksConfigure remote connectivity
      • manage Windows 10 remotely by using Windows Admin Center
      • configure remote assistance tools including Remote Assist and Quick Assist
      • manage Windows remotely by using Windows Remote Management and PS remoting
      • configure remote desktop access

Deploy and upgrade operating systems

  • Plan a Windows 10 deployment
    • assess infrastructure readiness
    • evaluate and select appropriate deployment options (Endpoint Manager, MDT)
    • plan upgrade and downgrade paths
    • plan app compatibility
    • plan for user state
  • Plan and implement Windows 10 by using Windows Autopilot
    • choose the method based on requirements
    • create, validate, and assign deployment profile
    • extract device HW information to CSV file
    • import device HW information to cloud service
    • deploy Windows 10
    • troubleshoot deployment
  •  Plan and implement Windows 10 using MDT
    • choose configuration options based on requirements
    • create and manage images
    • deploy images (may include WDS)
    • create and use task sequences
    • manage application and driver deployment
    • monitor and troubleshoot deployment

Manage policies and profiles

  • Implement compliance policies for devices
    • implement device compliance policies
    • manage device compliance policies
    • plan device compliance policies 
  • Configure device profiles
    • implement device profiles; Manage device profiles
    • plan device profiles, Control policy conflicts
    • configure and implement assigned access or public devices
  • Manage user profiles
    • configure user profiles
    • configure Enterprise State Roaming in Azure AD
    • configure sync settings
  • Manage accounts, VPN connections, and certificates on Windows 10
    • secure privileged accounts on Windows 10
    • configure VPN client
    • configure and manage certificates on client devices

Manage and protect devices

  • Implement and manage device, application, and threat protection
    • implement and manage Windows Defender Application Guard
    • implement and manage Windows Defender Credential Guard
    • implement and manage Windows Defender Exploit Guard
    • plan and Implement Microsoft Defender Advanced Threat Protection for Windows 10
    • integrate Windows Defender Application Control
    • protect devices using Endpoint Security
    • manage enterprise-level disk encryption
    • implement and manage security baselines in Microsoft Intune
  • Manage Microsoft Intune devices
    • configure enrollment settings in Microsoft Intune
    • configure Microsoft Intune automatic and bulk enrollment
    • enroll non-Windows devices
    • enroll Windows devices
    • review device inventory
  • Monitor devices
    • monitor devices using Azure Monitor and Desktop Analytics
    • monitor device inventory reports using Endpoint Manager Admin Center
  • Manage updates
    • configure Windows 10 delivery optimization
    • deploy Windows updates using Microsoft Intune
    • monitor Windows 10 updates

Manage apps and data

  • Deploy and update applications
    • assign apps to groups
    • deploy apps by using Microsoft Intune
    • deploy apps by using Microsoft Store for Business/iTunes/Google Play
    • deploy Microsoft 365 Apps for an enterprise using Microsoft Intune
    • enable sideloading of apps into images
    • gather Microsoft 365 Apps readiness data
  •  Implement Mobile Application Management (MAM)
    • implement App Protection policies
    • manage App Protection policies
    • plan App Protection Policies
    • plan and implement App Configuration Policies (Windows Information Protection)