Endpoint Deployment and Management Fundamentals Flashcards
Microsoft 365 Endpoint Administrator Associate MD-102 Flashcards

| Front | Back |
| Android Enterprise Enrollment | Methods for enrolling Android devices into Intune, including work profiles and dedicated devices |
| App Protection Policies | Policies in Intune designed to protect application data on devices |
| Autopilot Deployment Profiles | A preconfigured setup for deploying specific configurations to Windows devices with Autopilot |
| Azure AD Join | A method for devices to be exclusively joined to Microsoft Azure Active Directory |
| BitLocker | A Microsoft encryption tool used to secure data on endpoints |
| Co-management | A scenario where Configuration Manager and Intune both manage devices simultaneously |
| Conditional Access | Policies in Microsoft Azure AD that restrict access to resources based on conditions like location or device compliance |
| Configuration Manager | A tool in Microsoft 365 used for managing on-premises and cloud-connected devices |
| Delivery Optimization | A feature in Windows to manage bandwidth use for downloading updates and apps |
| Desktop Analytics | A cloud-based service that provides insights to optimize Windows update deployments |
| Device Compliance Policies | Rules in Microsoft Intune that assess whether devices meet organizational security requirements |
| Device Enrollment Manager | A special Intune account used for bulk enrollment of devices |
| Dynamic Groups in Azure AD | Automatically organize devices or users based on predefined criteria like device type or location |
| Endpoint Analytics | Insights to improve device and user productivity through proactive identification of issues |
| Enterprise State Roaming | A feature that syncs user settings and data across devices using Azure AD |
| Firmware Management with Intune | Capabilities to manage BIOS or firmware settings on supported devices within Intune |
| Group Policy Migration to Intune | The process of recreating traditional Active Directory Group Policies in Microsoft Intune MDM |
| Hybrid Azure AD Join | A method for devices to be simultaneously joined to both on-premises Active Directory and Azure Active Directory |
| Intune | A Microsoft endpoint management solution for device and application management |
| MDM Policies | Policies in Microsoft Intune to manage and secure devices |
| Microsoft Defender for Endpoint | A security solution to protect endpoints against threats like malware and phishing |
| Microsoft Endpoint Manager | An integrated platform for managing endpoints such as desktops, laptops, and mobile devices |
| OS Deployment Methods | Techniques for deploying Windows operating systems such as WDS or MDT |
| PowerShell Scripts with Intune | The use of PowerShell scripts to automate endpoint configurations via Intune |
| Provisioning Packages | Configuration files used to customize and deploy Windows settings |
| Remote Wipe | A device management feature to erase data from lost or compromised endpoints |
| Role-Based Access Control (RBAC) in Intune | A method to enable granular permission management for Intune administrators |
| Shared Device Mode | Configuration in Intune for managing devices used by multiple users |
| Software Updates in Configuration Manager | Features in Configuration Manager for managing the deployment of patches and updates |
| Windows Autopilot | A cloud-based deployment tool that simplifies the setup and configuration of Windows devices |
| Windows Hello for Business | A biometric authentication system to replace passwords |
| Windows Sandbox | A lightweight virtualized environment for testing applications or files securely |
| Windows Update for Business | A tool for managing Windows updates across devices in an organization |
| Zero-Touch Deployment | A deployment method where IT administrators have minimal manual involvement |
About the Flashcards
Flashcards for the Microsoft 365 Endpoint Administrator Associate exam give you a quick-hit review of modern Windows endpoint deployment and management. Work through key terms such as Windows Autopilot, provisioning packages, zero-touch enrollment, and hybrid Azure AD join so you can recall each process and where it fits in lifecycle operations.
The deck also reinforces Intune and Configuration Manager concepts, covering device compliance, co-management, conditional access, and update strategies like Windows Update for Business. Security features including BitLocker, Microsoft Defender for Endpoint, and role-based access are paired with analytics tools to help you master the policies, scripts, and insights tested on exam day.
Topics covered in this flashcard deck:
- Windows deployment methods
- Intune device management
- Azure AD and identity
- Update and patch control
- Endpoint security tools
- Analytics and reporting