I've been reading up on the recent changes to secure boot certification updates. It seems like Microsoft takes care of these updates for home users, but for devices managed by companies, those updates aren't deployed automatically. Each company has to figure out its own plan to update these certificates. Is there any way we can have Microsoft treat our company devices like home devices and handle the certificate updates for us?
2 Answers
Have you thought about using Autopatch? If it’s only deploying Microsoft regular updates, then you’ll still need to tackle secure boot updates manually. The thing I wonder is, if we just sit back and do nothing, will Microsoft eventually upgrade our company devices by themselves? That's what I'm unsure about.
There's a ton of guidance out there to help manage the secure boot updates. However, since you're dealing with company devices, you're right that the updates won’t roll out automatically like they do for home users. Your IT team will need to develop a deployment strategy for this. In my experience, I've handled updates myself at work, but that's because I'm in IT. Usually, for BYOD setups, companies rely on users to manage their own updates, which can get messy. That’s why we prefer managing company-owned devices to avoid these kinds of hassles.

Related Questions
Can't Load PhpMyadmin On After Server Update
Redirect www to non-www in Apache Conf
How To Check If Your SSL Cert Is SHA 1
Windows TrackPad Gestures