Intune is a component of Enterprise Mobility + Security (EMS) that manages mobile devices and apps.
Integrates closely with other EMS components like Azure Active Directory (Azure AD) for identity and access control and Azure Information Protection for data protection.
When you use it with Office 365, you can enable your workforce to be productive on all their devices, while keeping your organization's information protected.
Works by using the protocols or APIs that are available in the mobile operating systems (iOs, Android, Microsoft)
Key tasks
Enrolling devices into management so your IT department has an inventory of devices that are accessing corporate services
Configuring devices to ensure they meet company security and health standards
Providing certificates and Wi-Fi/VPN profiles to access corporate services
Reporting on and measuring device compliance to corporate standards
Removing corporate data from managed devices
App management taks
Assigning mobile apps to employees (push)
Configuring apps with standard settings that are used when the app runs
Controlling how corporate data is used and shared in mobile apps
Removing corporate data from mobile apps
Updating apps
Reporting on mobile app inventory
Tracking mobile app usage
App Security - app protection policy
Keeping personal information isolated from corporate IT awareness
Restricting the actions users can take with corporate information such as copy, cut/paste, save, and view
Removing corporate data from mobile apps, also known as selective wipe or corporate wipe
IT has control of corporate data while the end user maintains control and privacy over personal data.
Slides - Empowering Enterprise Mobility
Video: Microsoft Intune - How it works
Video: Enroll your mobile device in Microsoft Intune for corporate access