SlideShare una empresa de Scribd logo
1 de 35
Descargar para leer sin conexión
Windows 10 and the cloud
- Why the future needs hybrid solutions
Alexander Benoit
Head of Competence Center Microsoft @sepago
@ITPirate
Alexander Benoit
Senior Consultant / Head of Competence Center Microsoft
„Future Workplace“, Security
SCCM, Intune, Windows 10, Defender Framework,…
Alexander.Benoit@sepago.de
@ITPirate
http://it-pirate.com/
What forces the enterprise:
Business
Technology
Security
Mobile-first, cloud-first reality
Data breaches
63% of confirmed data
breaches involve weak,
default, or stolen
passwords.
63% 0.6%
IT budget growth
Gartner predicts global IT
spend will grow only 0.6% in
2016.
Shadow IT
More than 80 percent of
employees
admit to using non-approved
software as a service (SaaS)
applications in their jobs.
80%
The current reality
&
Single Device
Business Owned
Corporate Network &
Legacy Apps
Manual
Reactive
High-touch
Classic IT
Multiple Devices
User and Business Owned
Cloud Managed &
SaaS Apps
Automated
Proactive
Self-Service
Modern IT
vs.
WINDOWS 10: DEPLOYMENT CHOICES
Transform new devices so they are
ready for productive use
No imaging required: Lower effort
and lower cost
Existing Windows 7 and 8.1 devices
migrated to Windows 10
Let Windows do all the work,
automatically migrating apps, data,
and settings
Image-based wipe-and-reload
approach for moving from Windows
7 and 8.1 to Windows 10
Higher effort and cost, but necessary
in some scenarios
INTRODUCING
WINDOWS AUTOPILOT
Technology
Hardware Vendor
Harvest Device IDs
Windows AutoPilot Deployment Service
Upload
Device IDs
Configure
Profile
Employee unboxes
device, self-deploys
Ship Deliver direct to Employee
Self
Deploy
IT Admin
Existing Devices
INTRODUCING THE
WINDOWS AUTOPILOT DEPLOYMENT PROGRAM
Device IDs
Windows AutoPilot Demo
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows Update for Business
• All devices updated from Windows Update
cloud service
• Additional policies allow for deferral of
updates, control over Active Hours, etc.
• Compliance reporting provided through
Windows Analytics
Mobile Device Management
• Performs most of the configuration work:
• Applying settings
• Installing apps
• Get in touch with Intune!
AutoPilot Azure AD Intune WU for Business
Modern Deployment requires changes
Modern Deployment:
Provisioning Packages
Security
Conditional Access
O365 Installation
On-Premises
Cloud
Windows 10
Enterprise
Device
Windows 10 Management Stack & Supporting Technologies
MDM Client
MSI
Group Policy
Client
Azure AD Join
Microsoft Deployment Toolkit
System Center
Configuration Manager
App-V
Domain Join
Group Policy
User Experience Virtualization
Enterprise State Roaming
User & Device Settings Application
System Center Configuration
Manager
Company
Portal
Software
Center
XenApp
Essentials
UWA
Group Policy
Active Directory
System Center
Configuration Manager
Microsoft Intune
Azure Active Directory Windows Store
Windows Store for Business
Intune Company
Portal App
Operating
System
UE-V Client
Exchange ActiveSync
Workgroup
User Policy
Computer
Policy
AppLocker
Microsoft Desktop Optimization Pack
Work Account
OSD
Identity as the core of enterprise mobility
Single sign-onSelf-service
Simple connection
On-premises
Other
directories
Windows Server
Active Directory
SaaSAzure
Public
cloud
Cloud
Microsoft Azure Active Directory
Identity Choices
Computer joins AD
to establish trust
User signs on using AD
account
Group Policy + System
Center
Computer registers with AD or
Azure AD via Device Registration
to establish trust for remote
resource access
User signs in with a Microsoft
account, associates an Azure AD
account
Microsoft Intune / Mobile Device
Management
Computer joins Azure AD
to establish trust
User signs on using
Azure AD account
Intune/MDM
Settings roaming
Single sign-on to enterprise + cloud-based services
Organization Owned Personally Owned (BYOD)
Azure VM joins AADDS
to establish trust
User signs on using AD or
AAD account
Limited Group Policy
Configuration
Secure Identity: solution overview
On-premises and private cloud
Enabling users
(Active Directory) Federation Services
SaaS
apps
Custom
appsWindows Server
Active Directory
Other apps
Core Identity Management
HR
Other Directories
Sync
OtherDirectories
RBAC, ABAC, B2B, B2C, Reporting, MFA,
IDManagement, Conditional Access, Risk
Reporting
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions

Más contenido relacionado

La actualidad más candente

Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
imagazinepl
 

La actualidad más candente (20)

Patch Management Best Practices
Patch Management Best Practices Patch Management Best Practices
Patch Management Best Practices
 
Securing Your Public Cloud Infrastructure
Securing Your Public Cloud InfrastructureSecuring Your Public Cloud Infrastructure
Securing Your Public Cloud Infrastructure
 
Windows Active Directory Security with IS Decisions
Windows Active Directory Security with IS DecisionsWindows Active Directory Security with IS Decisions
Windows Active Directory Security with IS Decisions
 
Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...
Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...
Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...
 
Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019
 
Security Whack-a-Mole: SANS 2017 Threat Landscape Survey
Security Whack-a-Mole: SANS 2017 Threat Landscape SurveySecurity Whack-a-Mole: SANS 2017 Threat Landscape Survey
Security Whack-a-Mole: SANS 2017 Threat Landscape Survey
 
Transforming your Security Products at the Endpoint
Transforming your Security Products at the EndpointTransforming your Security Products at the Endpoint
Transforming your Security Products at the Endpoint
 
The New Security Practitioner
The New Security PractitionerThe New Security Practitioner
The New Security Practitioner
 
June Patch Tuesday 2018
June Patch Tuesday 2018June Patch Tuesday 2018
June Patch Tuesday 2018
 
May 2018 Patch Tuesday Analysis
May 2018 Patch Tuesday AnalysisMay 2018 Patch Tuesday Analysis
May 2018 Patch Tuesday Analysis
 
KACE End Point Security Update
KACE End Point Security UpdateKACE End Point Security Update
KACE End Point Security Update
 
Effective Patch and Software Update Management
Effective Patch and Software Update ManagementEffective Patch and Software Update Management
Effective Patch and Software Update Management
 
Qualys Brochure for CISOs
Qualys Brochure for CISOsQualys Brochure for CISOs
Qualys Brochure for CISOs
 
introduction to Azure Sentinel
introduction to Azure Sentinelintroduction to Azure Sentinel
introduction to Azure Sentinel
 
Cyber Tech Israel 2016: Get Your Head in the Cloud
Cyber Tech Israel 2016: Get Your Head in the CloudCyber Tech Israel 2016: Get Your Head in the Cloud
Cyber Tech Israel 2016: Get Your Head in the Cloud
 
December 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday AnalysisDecember 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday Analysis
 
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
 
A journey from dev ops to devsecops
A journey from dev ops to devsecopsA journey from dev ops to devsecops
A journey from dev ops to devsecops
 
October Patch Tuesday Analysis 2018
October Patch Tuesday Analysis 2018October Patch Tuesday Analysis 2018
October Patch Tuesday Analysis 2018
 
Css sf azure_8-9-17-intro to security in the cloud_mark brooks_al
Css sf azure_8-9-17-intro to security in the cloud_mark brooks_alCss sf azure_8-9-17-intro to security in the cloud_mark brooks_al
Css sf azure_8-9-17-intro to security in the cloud_mark brooks_al
 

Similar a Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions

Microsoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by AtidanMicrosoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by Atidan
David J Rosenthal
 
Identity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor TechnologyIdentity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor Technology
David J Rosenthal
 

Similar a Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions (20)

1 modern desktop - shift to a modern desktop
1   modern desktop - shift to a modern desktop1   modern desktop - shift to a modern desktop
1 modern desktop - shift to a modern desktop
 
Bsm mw10
Bsm mw10Bsm mw10
Bsm mw10
 
Keynote Speaker James Staten, Microsoft
Keynote Speaker James Staten, Microsoft Keynote Speaker James Staten, Microsoft
Keynote Speaker James Staten, Microsoft
 
Microsoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by AtidanMicrosoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by Atidan
 
Introduction to Microsoft 365
Introduction to Microsoft 365Introduction to Microsoft 365
Introduction to Microsoft 365
 
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
 
Introduction to Microsoft 365 Business
Introduction to Microsoft 365 BusinessIntroduction to Microsoft 365 Business
Introduction to Microsoft 365 Business
 
Mobility & security Microsoft SPE5 By Bipeen Sinha
Mobility & security Microsoft SPE5 By Bipeen SinhaMobility & security Microsoft SPE5 By Bipeen Sinha
Mobility & security Microsoft SPE5 By Bipeen Sinha
 
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
 
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
 
Windows 10 Summit Keynote: Real Talk on Windows 10 with Microsoft
Windows 10 Summit Keynote: Real Talk on Windows 10 with MicrosoftWindows 10 Summit Keynote: Real Talk on Windows 10 with Microsoft
Windows 10 Summit Keynote: Real Talk on Windows 10 with Microsoft
 
What is Microsoft Enterprise Mobility Suite and how to deploy it
What is Microsoft Enterprise Mobility Suite and how to deploy itWhat is Microsoft Enterprise Mobility Suite and how to deploy it
What is Microsoft Enterprise Mobility Suite and how to deploy it
 
ECS19 - Jussi Roine - Microsoft 365 Deep Dive
ECS19 - Jussi Roine - Microsoft 365 Deep DiveECS19 - Jussi Roine - Microsoft 365 Deep Dive
ECS19 - Jussi Roine - Microsoft 365 Deep Dive
 
Microsoft IoT Overview, Vision and Roadmap
Microsoft IoT Overview, Vision and RoadmapMicrosoft IoT Overview, Vision and Roadmap
Microsoft IoT Overview, Vision and Roadmap
 
EPC Group Intune Practice and Capabilities Overview
EPC Group Intune Practice and Capabilities OverviewEPC Group Intune Practice and Capabilities Overview
EPC Group Intune Practice and Capabilities Overview
 
Primend Pilvekonverents - Azure Infrastruktuur
Primend Pilvekonverents - Azure InfrastruktuurPrimend Pilvekonverents - Azure Infrastruktuur
Primend Pilvekonverents - Azure Infrastruktuur
 
Microsoft Enterprise Mobility Suite Launch Presentation - Atidan
Microsoft Enterprise Mobility Suite Launch Presentation - AtidanMicrosoft Enterprise Mobility Suite Launch Presentation - Atidan
Microsoft Enterprise Mobility Suite Launch Presentation - Atidan
 
Identity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor TechnologyIdentity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor Technology
 
Windows 7
Windows 7Windows 7
Windows 7
 
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
 

Último

Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 

Último (20)

Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation Strategies
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 

Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions

  • 1. Windows 10 and the cloud - Why the future needs hybrid solutions Alexander Benoit Head of Competence Center Microsoft @sepago @ITPirate
  • 2. Alexander Benoit Senior Consultant / Head of Competence Center Microsoft „Future Workplace“, Security SCCM, Intune, Windows 10, Defender Framework,… Alexander.Benoit@sepago.de @ITPirate http://it-pirate.com/
  • 3. What forces the enterprise: Business Technology Security
  • 4. Mobile-first, cloud-first reality Data breaches 63% of confirmed data breaches involve weak, default, or stolen passwords. 63% 0.6% IT budget growth Gartner predicts global IT spend will grow only 0.6% in 2016. Shadow IT More than 80 percent of employees admit to using non-approved software as a service (SaaS) applications in their jobs. 80%
  • 6. & Single Device Business Owned Corporate Network & Legacy Apps Manual Reactive High-touch Classic IT Multiple Devices User and Business Owned Cloud Managed & SaaS Apps Automated Proactive Self-Service Modern IT vs.
  • 7. WINDOWS 10: DEPLOYMENT CHOICES Transform new devices so they are ready for productive use No imaging required: Lower effort and lower cost Existing Windows 7 and 8.1 devices migrated to Windows 10 Let Windows do all the work, automatically migrating apps, data, and settings Image-based wipe-and-reload approach for moving from Windows 7 and 8.1 to Windows 10 Higher effort and cost, but necessary in some scenarios
  • 10. Hardware Vendor Harvest Device IDs Windows AutoPilot Deployment Service Upload Device IDs Configure Profile Employee unboxes device, self-deploys Ship Deliver direct to Employee Self Deploy IT Admin Existing Devices INTRODUCING THE WINDOWS AUTOPILOT DEPLOYMENT PROGRAM Device IDs
  • 21. Windows Update for Business • All devices updated from Windows Update cloud service • Additional policies allow for deferral of updates, control over Active Hours, etc. • Compliance reporting provided through Windows Analytics Mobile Device Management • Performs most of the configuration work: • Applying settings • Installing apps • Get in touch with Intune! AutoPilot Azure AD Intune WU for Business Modern Deployment requires changes
  • 26. On-Premises Cloud Windows 10 Enterprise Device Windows 10 Management Stack & Supporting Technologies MDM Client MSI Group Policy Client Azure AD Join Microsoft Deployment Toolkit System Center Configuration Manager App-V Domain Join Group Policy User Experience Virtualization Enterprise State Roaming User & Device Settings Application System Center Configuration Manager Company Portal Software Center XenApp Essentials UWA Group Policy Active Directory System Center Configuration Manager Microsoft Intune Azure Active Directory Windows Store Windows Store for Business Intune Company Portal App Operating System UE-V Client Exchange ActiveSync Workgroup User Policy Computer Policy AppLocker Microsoft Desktop Optimization Pack Work Account OSD
  • 27. Identity as the core of enterprise mobility Single sign-onSelf-service Simple connection On-premises Other directories Windows Server Active Directory SaaSAzure Public cloud Cloud Microsoft Azure Active Directory
  • 28. Identity Choices Computer joins AD to establish trust User signs on using AD account Group Policy + System Center Computer registers with AD or Azure AD via Device Registration to establish trust for remote resource access User signs in with a Microsoft account, associates an Azure AD account Microsoft Intune / Mobile Device Management Computer joins Azure AD to establish trust User signs on using Azure AD account Intune/MDM Settings roaming Single sign-on to enterprise + cloud-based services Organization Owned Personally Owned (BYOD) Azure VM joins AADDS to establish trust User signs on using AD or AAD account Limited Group Policy Configuration
  • 29. Secure Identity: solution overview On-premises and private cloud Enabling users (Active Directory) Federation Services SaaS apps Custom appsWindows Server Active Directory Other apps Core Identity Management HR Other Directories Sync OtherDirectories RBAC, ABAC, B2B, B2C, Reporting, MFA, IDManagement, Conditional Access, Risk Reporting