Your responsibilities

You have the following responsibilities during onboarding.

General responsibilities

  • Provide any enhancements and integrations to your Enterprise Mobility + Security (EMS) tenant beyond the configurable options listed here.

  • Provide overall program and project management of your resources.

  • Provide end-user communications, documentation, training, and change management.

  • Provide helpdesk documentation and training.

  • Produce any reports, presentations, or meeting minutes that are specific to your organization.

  • Create architectural and technical documentation specific to your organization.

  • Design, procure, install, and configure hardware and networking.

  • Procure, install, and configure software.

  • Manage, configure, and apply security policies beyond those created for your EMS services baseline configuration and functionality.

  • Enroll user accounts beyond those used to test the Microsoft Azure Active Directory EMS services baseline configuration and functionality.

  • Manage network configuration, analysis, bandwidth validation, testing, and monitoring.

  • Manage a technical change management approval process and creating supporting documentation.

  • Modifying your operational model and operation guides.

  • Set up on-premises multi-factor authentication.

  • Decommission and remove previously used source environments and services.

  • Construct and maintain your test environment.

  • Install service packs/cumulative updates (CUs) and other required updates on infrastructure servers.

  • Provide and configure any public Secure Sockets Layer (SSL) certificates.

  • Set up or upgrade Configuration Manager to the minimum requirements for Microsoft Intune integration with Configuration Manager.

  • If needed for deploying Wi-Fi and VPN profiles with Intune, provide and configure certificate authority, Wi-Fi and VPN infrastructures as needed.

  • Write the organization’s Terms of Use (TOU) statement to be configured and displayed on the Microsoft Intune company portal that end users can access.

  • Upgrade Configuration Manager site server and Configuration manager clients to the latest build versions (when needed).

  • Sign up for 3rd party subscriptions like Mobile Threat Defense, Telecom expenses, etc. when integration with Microsoft Intune is needed.

  • Sign up for Team Viewer, Mobile Threat Defense and Telecom expense management solution subscriptions.

  • Sign up for Windows Defender Advanced Threat Protection licenses. (Windows E5 or Microsoft E5 licenses).

Initiate phase

  • Work with the FastTrack team to begin onboarding of eligible services.

  • Participate in the engagement kick-off meeting, manage and lead participants from your organization, and confirm remediation timelines.

Assess phase

  • Identify appropriate stakeholders (including a project manager) to complete the necessary assessment activities.

  • Share your screen with the FastTrack team if guidance is needed when running evaluation tools against your environment, EMS, or its individual cloud service subscriptions (if you choose to).

  • Participate in the meetings to create the remediation checklist and to contribute to the overall plan, including infrastructure, network, administration, directory synchronization preparation, network security, and federated identity topics.

  • Participate in the meetings to outline the user-provisioning approach.

  • Participate in the meetings to plan online service configuration.

  • Create a support plan for migration readiness.

Remediate phase

  • Perform required steps to complete remediation activities identified in the Assess phase.

  • Participate in checkpoint meetings.

Enable phase

  • Share your screen with the FastTrack team if guidance is needed when running evaluation tools against your environment, EMS, or its individual cloud service subscriptions (if you choose to). Manage resources as needed.

  • Configure network-related items per guidance from the FastTrack team.

  • Perform directory readiness and configure directory synchronization per guidance from the FastTrack team.

  • Configure an authentication method, such as managed or federated.

  • Configure security-related infrastructure (like firewall ports) per guidance from the FastTrack team.

  • Implement the appropriate client infrastructure.

  • Implement a user-provisioning approach per guidance from the FastTrack team.

  • Enable various services per guidance from the FastTrack team.

Note

Want to learn more? See Enterprise Mobility + Security

See also