Supporting Mobile Users - technet.microsoft.com
Half of my users are joined to my local domain, and the other half (who dont come in the office) Ive joined to Azure Active directory instead.  I would like to eliminate the local AD completely if possible for PCs (not servers).  I have a series

Half of my users are joined to my local domain, and the other half (who don't come in the office) I've joined to Azure Active directory instead.  I would like to eliminate the local AD completely if possible for PCs (not servers).  I have a series of questions related to this senario.  Also, if there is a document that provides a summary overview of how to accomplish the items below, please send me a link.  

1. Yes, what you say is possible. However, you can use Windows 10 Autopilot to AAD join your devices and also designate that the first user should be a standard user. So you can now make sure the user is a std user. You are right that all AAD tenant admins are added as local admins to the PC. But this is a configurable setting in Azure AD. you could change the users that are added as admins. 

2. Intune is the management tool from Microsoft that uses MDM to manage devices from the cloud. Azure AD premium is the premium version of the Microsoft identity offering. Intune depends on Azure AD for identity. So think of Azure AD as the identity plane on which Intune is built on. You will need Azure AD premium if you would like to auto enroll into Intune as part of AAD join and use Autopilot

task-based training- trains the user to carry out a specific routine activity, such as filling in an on-screen data entry form or operating an EPOS checkout

skills-based training-aims to give the user transferable skills that can be used in a variety of ways to perform a range of functions.

e-commerce website will make it easy for customers to find out the information they need, choose their goods and place their orders.

Half of my users are joined to my local domain, and the other half (who don't come in the office) I've joined to Azure Active directory instead.  I would like to eliminate the local AD completely if possible for PCs (not servers).  I have a series of questions related to this senario.  Also, if there is a document that provides a summary overview of how to accomplish the items below, please send me a link.  

1. Yes, what you say is possible. However, you can use Windows 10 Autopilot to AAD join your devices and also designate that the first user should be a standard user. So you can now make sure the user is a std user. You are right that all AAD tenant admins are added as local admins to the PC. But this is a configurable setting in Azure AD. you could change the users that are added as admins. 

2. Intune is the management tool from Microsoft that uses MDM to manage devices from the cloud. Azure AD premium is the premium version of the Microsoft identity offering. Intune depends on Azure AD for identity. So think of Azure AD as the identity plane on which Intune is built on. You will need Azure AD premium if you would like to auto enroll into Intune as part of AAD join and use Autopilot

task-based training- trains the user to carry out a specific routine activity, such as filling in an on-screen data entry form or operating an EPOS checkout

skills-based training-aims to give the user transferable skills that can be used in a variety of ways to perform a range of functions.

e-commerce website will make it easy for customers to find out the information they need, choose their goods and place their orders.

Official Microsoft Learning textbook designed for the academic classroom that covers the topics and skills in the 70-272 exam.

Installing, Configuring, and Administering Microsoft® Windows® XP Professional (70-270), Second Edition
Supporting Users and Troubleshooting a Microsoft® Windows® XP Operating System (70-271)

Half of my users are joined to my local domain, and the other half (who don't come in the office) I've joined to Azure Active directory instead.  I would like to eliminate the local AD completely if possible for PCs (not servers).  I have a series of questions related to this senario.  Also, if there is a document that provides a summary overview of how to accomplish the items below, please send me a link.  

1. Yes, what you say is possible. However, you can use Windows 10 Autopilot to AAD join your devices and also designate that the first user should be a standard user. So you can now make sure the user is a std user. You are right that all AAD tenant admins are added as local admins to the PC. But this is a configurable setting in Azure AD. you could change the users that are added as admins. 

2. Intune is the management tool from Microsoft that uses MDM to manage devices from the cloud. Azure AD premium is the premium version of the Microsoft identity offering. Intune depends on Azure AD for identity. So think of Azure AD as the identity plane on which Intune is built on. You will need Azure AD premium if you would like to auto enroll into Intune as part of AAD join and use Autopilot

511hFxwJj9L