End-User Steps on How to enroll Android ‘BYOD’ to Intune?

Intune lets you manage the devices and apps on how they access your company’s data and to us this MDM the devices must first need to be enrolled in the Intune service so that an MDM certificate is issued which is then used to communicate with Intune service.

In this blog, we will see the end-user process on how to enroll the devices with Intune.


  1. Intune must have been set up with MDM enabled.
  2. Setup an App Protection Policy in Intune.
  3. Microsoft Intune or Microsoft 365 E3 and above license are required to setup Intune.

Once the Android App Policy is assigned to all the users, there will be some restrictions (as per your Org. requirements) and without enrolling the devices, users won’t be able to access corporate data.

To enroll the mobile devices with Intune, please follow the below screenshots.

  1. When you try to access any Microsoft App, like Outlook, Teams, etc. you will be asked to install the Microsoft Intune Company Portal App.

  2. Click on “Go to Store”. You will redirected to Google Playstore to install Company Portal App.

  3. Install the Application and then Click on Sign In with the Work Account.

  4. After you Sign, you will see the list of all the devices. Unmanaged devices will be highlighted as shown in the screenshot below.

  5. Click on the mobile device, you are tyring to enrol. The devices will be shown as Unmanaged. Click on “This device is unmanaged”.

  6. You will be asked to setup the device through 3 stage starting from creating a Work profile. Click on Begin.

  7. Provide the App permission by clicking on Continue.

  8. It will then Set up your work profile. Click on  Accept and Continue.

  9. Click on Continue once the Work Profile setup is completed.

  10. It will then Activate the work profile and will also update device settings. Click on Done.

  11. You device is now enroled and ready to access the corporate data.

Share Story :