We have deploy new windows clients using Autopilot and MS Intune.
We have existing WSUS server for managing Windows updates.
How can we make use of the existing WSUS server to manage/deployment of Windows Update to autopilot clients?
Can this be done

2 Spice ups

WSUS is deprecated, you should look at your options.

If you’re using Intune and autopilot, why aren’t you using the update rings feature?

But to specifically answer your question, your clients wont see WSUS because it’s on-prem and your devices are not domain joined, so GPO wont apply, even if it did or you could use WSUS, you’d need a VPN on your clients to see it or make your WSUS internet facing, this then means you have to consider the security of it and you will also use up more internet when you deploy updates.

It makes more sense to either patch with the 365 tools you have or use a native cloud managed updating solution, such as previously mentioned Vendors > Action1

Remaining with legacy products when your setup is mostly modern isn’t practical.

1 Spice up

Windows Updates for Business managed by Intune would be my suggestion here…OP would have to create GPO’s and define OU’s for WSUS to work, and defeat Intune’s intended purpose…

As already told by everyone, since you’re using Autopilot and Intune, it’s best to avoid integrating WSUS and instead follow these steps:

Use Intune Update Rings: Set up update rings in Intune to manage quality and feature updates. This aligns with your cloud-first environment and gives you better control.

Avoid WSUS for Modern Devices: WSUS requires domain join, GPOs, or VPN access. Making WSUS internet-facing introduces security risks and defeats the purpose of using Intune.

Leverage Windows Update for Business: It’s designed for cloud-managed devices like yours and integrates directly with Intune for seamless update management.

1 Spice up