Microsoft Intune Compliance Policy

Paing Hein Kyaw 60 Reputation points
2024-03-15T04:23:19.9233333+00:00

Hello,

Now I configure windows device onboarding to Defender portal using Intune. But I faced one issue that first I create compliance policy in my Intune portal with Require the device to be at or under the machine risk score. And then, windows 10 device is joined to Microsoft Entra ID by one user who is M365 user using Business Premium license. When device sync with my compliance policy in Intune, one of policy show non-compliant. Please kindly check the attached photo. I set whether Low, high, medium and clear but isn't working. could you please help me "How to solve this issue in my environment" . Thank You.User's image

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,080 questions
0 comments No comments
{count} votes

Accepted answer
  1. Rahul Jindal [MVP] 10,121 Reputation points MVP
    2024-03-15T04:51:47.89+00:00

    What is the status of the device on the Defender portal?


1 additional answer

Sort by: Most helpful
  1. Crystal-MSFT 48,746 Reputation points Microsoft Vendor
    2024-03-15T05:53:29.1433333+00:00

    @Paing Hein Kyaw, Thanks for posting in Q&A. For the compliance setting "Require the device to be at or under the machine risk score:", Machine risk score is measured by Microsoft Defender for Endpoint.

    User's image

    https://learn.microsoft.com/en-us/mem/intune/protect/compliance-policy-create-windows#microsoft-defender-for-endpoint-rules

    Please check if the device is onboarded to Microsoft Defender for Endpoint. And check the machine risk score on Microsoft Defender for Endpoint to see if it is at or under the score we configure in compliance policy.

    Hope the above information can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.