SlideShare uma empresa Scribd logo
1 de 35
Baixar para ler offline
Windows 10 and the cloud
- Why the future needs hybrid solutions
Alexander Benoit
Head of Competence Center Microsoft @sepago
@ITPirate
Alexander Benoit
Senior Consultant / Head of Competence Center Microsoft
„Future Workplace“, Security
SCCM, Intune, Windows 10, Defender Framework,…
Alexander.Benoit@sepago.de
@ITPirate
http://it-pirate.com/
What forces the enterprise:
Business
Technology
Security
Mobile-first, cloud-first reality
Data breaches
63% of confirmed data
breaches involve weak,
default, or stolen
passwords.
63% 0.6%
IT budget growth
Gartner predicts global IT
spend will grow only 0.6% in
2016.
Shadow IT
More than 80 percent of
employees
admit to using non-approved
software as a service (SaaS)
applications in their jobs.
80%
The current reality
&
Single Device
Business Owned
Corporate Network &
Legacy Apps
Manual
Reactive
High-touch
Classic IT
Multiple Devices
User and Business Owned
Cloud Managed &
SaaS Apps
Automated
Proactive
Self-Service
Modern IT
vs.
WINDOWS 10: DEPLOYMENT CHOICES
Transform new devices so they are
ready for productive use
No imaging required: Lower effort
and lower cost
Existing Windows 7 and 8.1 devices
migrated to Windows 10
Let Windows do all the work,
automatically migrating apps, data,
and settings
Image-based wipe-and-reload
approach for moving from Windows
7 and 8.1 to Windows 10
Higher effort and cost, but necessary
in some scenarios
INTRODUCING
WINDOWS AUTOPILOT
Technology
Hardware Vendor
Harvest Device IDs
Windows AutoPilot Deployment Service
Upload
Device IDs
Configure
Profile
Employee unboxes
device, self-deploys
Ship Deliver direct to Employee
Self
Deploy
IT Admin
Existing Devices
INTRODUCING THE
WINDOWS AUTOPILOT DEPLOYMENT PROGRAM
Device IDs
Windows AutoPilot Demo
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows AutoPilot Configuration
Windows Update for Business
• All devices updated from Windows Update
cloud service
• Additional policies allow for deferral of
updates, control over Active Hours, etc.
• Compliance reporting provided through
Windows Analytics
Mobile Device Management
• Performs most of the configuration work:
• Applying settings
• Installing apps
• Get in touch with Intune!
AutoPilot Azure AD Intune WU for Business
Modern Deployment requires changes
Modern Deployment:
Provisioning Packages
Security
Conditional Access
O365 Installation
On-Premises
Cloud
Windows 10
Enterprise
Device
Windows 10 Management Stack & Supporting Technologies
MDM Client
MSI
Group Policy
Client
Azure AD Join
Microsoft Deployment Toolkit
System Center
Configuration Manager
App-V
Domain Join
Group Policy
User Experience Virtualization
Enterprise State Roaming
User & Device Settings Application
System Center Configuration
Manager
Company
Portal
Software
Center
XenApp
Essentials
UWA
Group Policy
Active Directory
System Center
Configuration Manager
Microsoft Intune
Azure Active Directory Windows Store
Windows Store for Business
Intune Company
Portal App
Operating
System
UE-V Client
Exchange ActiveSync
Workgroup
User Policy
Computer
Policy
AppLocker
Microsoft Desktop Optimization Pack
Work Account
OSD
Identity as the core of enterprise mobility
Single sign-onSelf-service
Simple connection
On-premises
Other
directories
Windows Server
Active Directory
SaaSAzure
Public
cloud
Cloud
Microsoft Azure Active Directory
Identity Choices
Computer joins AD
to establish trust
User signs on using AD
account
Group Policy + System
Center
Computer registers with AD or
Azure AD via Device Registration
to establish trust for remote
resource access
User signs in with a Microsoft
account, associates an Azure AD
account
Microsoft Intune / Mobile Device
Management
Computer joins Azure AD
to establish trust
User signs on using
Azure AD account
Intune/MDM
Settings roaming
Single sign-on to enterprise + cloud-based services
Organization Owned Personally Owned (BYOD)
Azure VM joins AADDS
to establish trust
User signs on using AD or
AAD account
Limited Group Policy
Configuration
Secure Identity: solution overview
On-premises and private cloud
Enabling users
(Active Directory) Federation Services
SaaS
apps
Custom
appsWindows Server
Active Directory
Other apps
Core Identity Management
HR
Other Directories
Sync
OtherDirectories
RBAC, ABAC, B2B, B2C, Reporting, MFA,
IDManagement, Conditional Access, Risk
Reporting
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions
Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions

Mais conteúdo relacionado

Mais procurados

Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
imagazinepl
 

Mais procurados (20)

Patch Management Best Practices
Patch Management Best Practices Patch Management Best Practices
Patch Management Best Practices
 
Securing Your Public Cloud Infrastructure
Securing Your Public Cloud InfrastructureSecuring Your Public Cloud Infrastructure
Securing Your Public Cloud Infrastructure
 
Windows Active Directory Security with IS Decisions
Windows Active Directory Security with IS DecisionsWindows Active Directory Security with IS Decisions
Windows Active Directory Security with IS Decisions
 
Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...
Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...
Webcast Series #1: Continuous Security and Compliance Monitoring for Global I...
 
Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019Ivanti Patch Tuesday for November 2019
Ivanti Patch Tuesday for November 2019
 
Security Whack-a-Mole: SANS 2017 Threat Landscape Survey
Security Whack-a-Mole: SANS 2017 Threat Landscape SurveySecurity Whack-a-Mole: SANS 2017 Threat Landscape Survey
Security Whack-a-Mole: SANS 2017 Threat Landscape Survey
 
Transforming your Security Products at the Endpoint
Transforming your Security Products at the EndpointTransforming your Security Products at the Endpoint
Transforming your Security Products at the Endpoint
 
The New Security Practitioner
The New Security PractitionerThe New Security Practitioner
The New Security Practitioner
 
June Patch Tuesday 2018
June Patch Tuesday 2018June Patch Tuesday 2018
June Patch Tuesday 2018
 
May 2018 Patch Tuesday Analysis
May 2018 Patch Tuesday AnalysisMay 2018 Patch Tuesday Analysis
May 2018 Patch Tuesday Analysis
 
KACE End Point Security Update
KACE End Point Security UpdateKACE End Point Security Update
KACE End Point Security Update
 
Effective Patch and Software Update Management
Effective Patch and Software Update ManagementEffective Patch and Software Update Management
Effective Patch and Software Update Management
 
Qualys Brochure for CISOs
Qualys Brochure for CISOsQualys Brochure for CISOs
Qualys Brochure for CISOs
 
introduction to Azure Sentinel
introduction to Azure Sentinelintroduction to Azure Sentinel
introduction to Azure Sentinel
 
Cyber Tech Israel 2016: Get Your Head in the Cloud
Cyber Tech Israel 2016: Get Your Head in the CloudCyber Tech Israel 2016: Get Your Head in the Cloud
Cyber Tech Israel 2016: Get Your Head in the Cloud
 
December 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday AnalysisDecember 2018 Patch Tuesday Analysis
December 2018 Patch Tuesday Analysis
 
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
Kaspersky Security for Mac - Comprehensive Protection for the Mac OS X Enviro...
 
A journey from dev ops to devsecops
A journey from dev ops to devsecopsA journey from dev ops to devsecops
A journey from dev ops to devsecops
 
October Patch Tuesday Analysis 2018
October Patch Tuesday Analysis 2018October Patch Tuesday Analysis 2018
October Patch Tuesday Analysis 2018
 
Css sf azure_8-9-17-intro to security in the cloud_mark brooks_al
Css sf azure_8-9-17-intro to security in the cloud_mark brooks_alCss sf azure_8-9-17-intro to security in the cloud_mark brooks_al
Css sf azure_8-9-17-intro to security in the cloud_mark brooks_al
 

Semelhante a Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions

Microsoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by AtidanMicrosoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by Atidan
David J Rosenthal
 
Identity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor TechnologyIdentity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor Technology
David J Rosenthal
 

Semelhante a Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions (20)

1 modern desktop - shift to a modern desktop
1   modern desktop - shift to a modern desktop1   modern desktop - shift to a modern desktop
1 modern desktop - shift to a modern desktop
 
Bsm mw10
Bsm mw10Bsm mw10
Bsm mw10
 
Keynote Speaker James Staten, Microsoft
Keynote Speaker James Staten, Microsoft Keynote Speaker James Staten, Microsoft
Keynote Speaker James Staten, Microsoft
 
Microsoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by AtidanMicrosoft Enterprise Mobility Suite Presented by Atidan
Microsoft Enterprise Mobility Suite Presented by Atidan
 
Introduction to Microsoft 365
Introduction to Microsoft 365Introduction to Microsoft 365
Introduction to Microsoft 365
 
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
 
Introduction to Microsoft 365 Business
Introduction to Microsoft 365 BusinessIntroduction to Microsoft 365 Business
Introduction to Microsoft 365 Business
 
Mobility & security Microsoft SPE5 By Bipeen Sinha
Mobility & security Microsoft SPE5 By Bipeen SinhaMobility & security Microsoft SPE5 By Bipeen Sinha
Mobility & security Microsoft SPE5 By Bipeen Sinha
 
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
 
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
ECMDay2015 - Nico Sienaert – Enterprise Mobility Suite – What it’s all about?
 
Windows 10 Summit Keynote: Real Talk on Windows 10 with Microsoft
Windows 10 Summit Keynote: Real Talk on Windows 10 with MicrosoftWindows 10 Summit Keynote: Real Talk on Windows 10 with Microsoft
Windows 10 Summit Keynote: Real Talk on Windows 10 with Microsoft
 
What is Microsoft Enterprise Mobility Suite and how to deploy it
What is Microsoft Enterprise Mobility Suite and how to deploy itWhat is Microsoft Enterprise Mobility Suite and how to deploy it
What is Microsoft Enterprise Mobility Suite and how to deploy it
 
ECS19 - Jussi Roine - Microsoft 365 Deep Dive
ECS19 - Jussi Roine - Microsoft 365 Deep DiveECS19 - Jussi Roine - Microsoft 365 Deep Dive
ECS19 - Jussi Roine - Microsoft 365 Deep Dive
 
Microsoft IoT Overview, Vision and Roadmap
Microsoft IoT Overview, Vision and RoadmapMicrosoft IoT Overview, Vision and Roadmap
Microsoft IoT Overview, Vision and Roadmap
 
EPC Group Intune Practice and Capabilities Overview
EPC Group Intune Practice and Capabilities OverviewEPC Group Intune Practice and Capabilities Overview
EPC Group Intune Practice and Capabilities Overview
 
Primend Pilvekonverents - Azure Infrastruktuur
Primend Pilvekonverents - Azure InfrastruktuurPrimend Pilvekonverents - Azure Infrastruktuur
Primend Pilvekonverents - Azure Infrastruktuur
 
Microsoft Enterprise Mobility Suite Launch Presentation - Atidan
Microsoft Enterprise Mobility Suite Launch Presentation - AtidanMicrosoft Enterprise Mobility Suite Launch Presentation - Atidan
Microsoft Enterprise Mobility Suite Launch Presentation - Atidan
 
Identity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor TechnologyIdentity and Access Management from Microsoft and Razor Technology
Identity and Access Management from Microsoft and Razor Technology
 
Windows 7
Windows 7Windows 7
Windows 7
 
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
 

Último

Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Último (20)

How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 

Experts Live Europe 2017 - Windows 10 and the cloud - why the future needs hybrid solutions

  • 1. Windows 10 and the cloud - Why the future needs hybrid solutions Alexander Benoit Head of Competence Center Microsoft @sepago @ITPirate
  • 2. Alexander Benoit Senior Consultant / Head of Competence Center Microsoft „Future Workplace“, Security SCCM, Intune, Windows 10, Defender Framework,… Alexander.Benoit@sepago.de @ITPirate http://it-pirate.com/
  • 3. What forces the enterprise: Business Technology Security
  • 4. Mobile-first, cloud-first reality Data breaches 63% of confirmed data breaches involve weak, default, or stolen passwords. 63% 0.6% IT budget growth Gartner predicts global IT spend will grow only 0.6% in 2016. Shadow IT More than 80 percent of employees admit to using non-approved software as a service (SaaS) applications in their jobs. 80%
  • 6. & Single Device Business Owned Corporate Network & Legacy Apps Manual Reactive High-touch Classic IT Multiple Devices User and Business Owned Cloud Managed & SaaS Apps Automated Proactive Self-Service Modern IT vs.
  • 7. WINDOWS 10: DEPLOYMENT CHOICES Transform new devices so they are ready for productive use No imaging required: Lower effort and lower cost Existing Windows 7 and 8.1 devices migrated to Windows 10 Let Windows do all the work, automatically migrating apps, data, and settings Image-based wipe-and-reload approach for moving from Windows 7 and 8.1 to Windows 10 Higher effort and cost, but necessary in some scenarios
  • 10. Hardware Vendor Harvest Device IDs Windows AutoPilot Deployment Service Upload Device IDs Configure Profile Employee unboxes device, self-deploys Ship Deliver direct to Employee Self Deploy IT Admin Existing Devices INTRODUCING THE WINDOWS AUTOPILOT DEPLOYMENT PROGRAM Device IDs
  • 21. Windows Update for Business • All devices updated from Windows Update cloud service • Additional policies allow for deferral of updates, control over Active Hours, etc. • Compliance reporting provided through Windows Analytics Mobile Device Management • Performs most of the configuration work: • Applying settings • Installing apps • Get in touch with Intune! AutoPilot Azure AD Intune WU for Business Modern Deployment requires changes
  • 26. On-Premises Cloud Windows 10 Enterprise Device Windows 10 Management Stack & Supporting Technologies MDM Client MSI Group Policy Client Azure AD Join Microsoft Deployment Toolkit System Center Configuration Manager App-V Domain Join Group Policy User Experience Virtualization Enterprise State Roaming User & Device Settings Application System Center Configuration Manager Company Portal Software Center XenApp Essentials UWA Group Policy Active Directory System Center Configuration Manager Microsoft Intune Azure Active Directory Windows Store Windows Store for Business Intune Company Portal App Operating System UE-V Client Exchange ActiveSync Workgroup User Policy Computer Policy AppLocker Microsoft Desktop Optimization Pack Work Account OSD
  • 27. Identity as the core of enterprise mobility Single sign-onSelf-service Simple connection On-premises Other directories Windows Server Active Directory SaaSAzure Public cloud Cloud Microsoft Azure Active Directory
  • 28. Identity Choices Computer joins AD to establish trust User signs on using AD account Group Policy + System Center Computer registers with AD or Azure AD via Device Registration to establish trust for remote resource access User signs in with a Microsoft account, associates an Azure AD account Microsoft Intune / Mobile Device Management Computer joins Azure AD to establish trust User signs on using Azure AD account Intune/MDM Settings roaming Single sign-on to enterprise + cloud-based services Organization Owned Personally Owned (BYOD) Azure VM joins AADDS to establish trust User signs on using AD or AAD account Limited Group Policy Configuration
  • 29. Secure Identity: solution overview On-premises and private cloud Enabling users (Active Directory) Federation Services SaaS apps Custom appsWindows Server Active Directory Other apps Core Identity Management HR Other Directories Sync OtherDirectories RBAC, ABAC, B2B, B2C, Reporting, MFA, IDManagement, Conditional Access, Risk Reporting