Defender on macOS

Kelvin Rodriguez 21 Reputation points
2022-09-14T14:35:23.987+00:00

Is there a way in Intune for Defender on macOS to do the following:

  1. The user cannot uninstall Defender on macOS
  2. If the user uninstalls Defender then the macOS is in non-compliance.
  3. If the user uninstalls Defender then intune can install it again.

Thanks for your help

Microsoft Security | Intune | Enrollment
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Jarvis Sun-MSFT 10,231 Reputation points Microsoft External Staff
    2022-09-15T08:45:50.85+00:00

    Hi @Kelvin Rodriguez Thanks for posting in our Q&A.

    For our questions, I have done some research.
    Q1: The user cannot uninstall Defender on macOS
    A1: Currently Intune can't prevent users from uninstalling macOS apps, it's by design.

    Q2: If the user uninstalls Defender then the macOS is in non-compliance.
    A2: The answer is not possible now. we can restrict apps, if they exist in the device, it will be marked non-compliant. But this is different from what you looking for.
    https://learn.microsoft.com/en-us/mem/intune/protect/compliance-policy-create-mac-os

    Q3: If the user uninstalls Defender then Intune can install it again.
    A3: Push the Defender as Lob apps and set the assignment type as Required. Intune will automatically reinstall, update, or remove a required app within 24 hours. Please refer to:
    https://learn.microsoft.com/en-us/mem/intune/apps/apps-add#installing-updating-or-removing-required-apps

    We recommend to use Intune User Voice to create or look for existing topic.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.