When provisioning a system with Windows 10/11 Pro, you can join to the Microsoft Azure Active Directory and login with your Azure credentials out-of-the-box.


During the first boot setup, connect to the internet and choose Setup for Organization.

 


Then sign-in with your Microsoft Office365 / Azure AD credentials (example; [email protected]).


This will join the device to Azure AD and enroll in Intune MDM. The first user that logs in is automatically promoted to Local Admin, even if they do not have any admin privileges on the domain.


If the Intune MDM is configured and the user is licensed with the E3 license, then the device will automatically receive the policies and apps from Intune.