@HK G, Thanks for posting in Q&A.
From your description, it seems the device is non-compliance due to high risk score. And in MDE portal, the device also shows high risk. To lower the score, you can contact Microsoft Defender for Endpoint support to get help.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.