End User Computing

Keeping ~1,000 Users
Productive

Managing a mixed Windows and Mac environment across approximately 1,000 users -- balancing two distinct platforms, unified through Intune, with the tools and processes to keep both productive and secure.

๐Ÿ‘ฅ ~1,000 managed endpoints  ยท Windows & Mac
~1,000
Managed Users & Devices
Mixed
Windows & Mac Environment
Intune
Unified Management Platform
M365
Primary Productivity Platform

Scope of Work

What EUC Looks Like at This Scale

Managing end user computing for approximately 1,000 users across a mixed Windows and Mac environment means maintaining consistent policies, security, and support across two distinct platforms.

๐Ÿ’ป

Device Lifecycle Management

Overseeing procurement, enrollment, and retirement of Windows laptops and MacBooks -- Autopilot for Windows, Jamf for Mac, both managed through Intune.

๐Ÿ“ฆ

Application Deployment

Managing software packaging, distribution, and updates through Intune -- ensuring users have the right tools with minimal disruption.

๐Ÿ”’

Endpoint Security & Compliance

Enforcing device compliance policies, managing EDR across the fleet, and maintaining configuration baselines aligned to security standards.

๐Ÿ†”

Identity & Access Management

User provisioning and deprovisioning, Entra ID group management, MFA enforcement, and Conditional Access policy administration.

๐Ÿ–ฅ๏ธ

Virtual Desktop & Remote Access

Supporting hybrid work through Azure Virtual Desktop and remote access solutions that keep distributed users productive and secure.

๐Ÿ›Ž๏ธ

Tier 2 Support & Escalation

Handling escalated desktop and application issues, working alongside helpdesk teams to resolve incidents and reduce repeat contacts.


Fleet Overview

The Device Landscape

A mixed-platform environment at approximately the 1,000-user scale -- Windows and Mac -- managed through a single Intune tenant with platform-specific configuration profiles.

Device Type Platform Management Notes
Windows Laptops Windows 11 Intune / Autopilot Zero-touch provisioning via Windows Autopilot.
MacBooks macOS (Sequoia) Intune / Jamf Enrolled and managed via Jamf with Intune integration for compliance policies.
Mobile Devices iOS / Android Intune MAM/MDM BYOD and COPE policies enforced via Intune app protection.
Virtual Desktops Windows 11 (AVD) Azure Virtual Desktop Remote and contractor access. Centrally managed session hosts.

Toolchain

The EUC Stack

The platforms and tools that keep approximately 1,000 endpoints managed, secure, and supported.

Device Management
Microsoft Intune Windows Autopilot Jamf Entra ID Fortimonitor
Productivity & Collaboration
Microsoft 365 Microsoft Teams SharePoint Online OneDrive
Virtual & Remote Access
Azure Virtual Desktop Windows 365 Conditional Access
Security & Endpoint Protection
Fortinet MFA / Authenticator Intune Compliance Policies
Support & ITSM
Service Desk Plus Remote Assistance Knowledge Base
Automation & Scripting
PowerShell Power Automate GitHub Claude / Copilot

Operations

What Day-to-Day EUC Looks Like

A snapshot of the recurring operational work that keeps approximately 1,000 endpoints running smoothly.

Daily

Device & Compliance Monitoring

Reviewing Intune compliance dashboards, addressing non-compliant devices, and triaging escalated helpdesk tickets from the EUC queue.

Weekly

Patch & Update Review

Monitoring Windows Update for Business rings and macOS update policies in Intune, reviewing application update deployments across both platforms, and validating patch compliance targets.

Weekly

New Hire Provisioning

Coordinating device setup via Autopilot for Windows and Jamf for Mac, account creation, license assignment, and application access for new employees and contractors.

Monthly

Access Reviews

Reviewing Entra ID group memberships, application assignments, and license utilization -- removing stale access and reclaiming unused licenses.

Monthly

Fleet Reporting

Generating device health, compliance, and software inventory reports for IT leadership and, where applicable, compliance evidence packages.

Quarterly

Lifecycle & Refresh Planning

Identifying devices approaching end of life, coordinating procurement cycles, and planning deployment waves to minimize user disruption.

Ongoing

Policy & Documentation

Keeping device configuration policies, runbooks, and onboarding documentation current as the environment evolves.


Managing a Similar Environment?

Happy to connect with IT teams navigating the complexities of modern endpoint management at scale.

Get in Touch Back to Home