@Jason , For our affected devices, if they are Android Fully managed, dedicated, and corporate-owned work profile devices, we can enable Google Play Protect with Intune via the device configuration :Threat scan on apps under Device restrictions > System security.
https://learn.microsoft.com/en-us/mem/intune/configuration/device-restrictions-android-for-work#system-security
https://techcommunity.microsoft.com/t5/security-compliance-and-identity/manage-google-play-protect-with-microsoft-intune/ba-p/250444
Hope it can help.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.