Microsoft 365 Certified Endpoint Administrator (MD-102) Practice Test

Disable ads (and more) with a membership for a one time $4.99 payment

Prepare for the Microsoft 365 Certified Endpoint Administrator exam. Utilize flashcards and multiple choice questions with hints and explanations. Get exam-ready now!

Practice this question and more.


To ensure compliance with a policy requiring encryption on mobile devices, which action should you take?

  1. Create a device compliance policy with the required encryption setting and assign it to all mobile devices

  2. Enroll all mobile devices in Microsoft Intune

  3. Create an Azure AD Conditional Access policy to block access to company data for non-compliant devices

  4. Set up a Mobile Device Management (MDM) policy in Microsoft Endpoint Configuration Manager

The correct answer is: Create a device compliance policy with the required encryption setting and assign it to all mobile devices

Creating a device compliance policy with the required encryption setting and assigning it to all mobile devices is the correct answer because this action directly addresses the specific compliance requirement for encryption. A device compliance policy is designed to enforce organizational requirements, such as encryption, by evaluating whether devices meet those criteria before permitting access to company resources. By assigning this policy to all mobile devices, you ensure that only those devices that are compliant with the encryption requirement can access sensitive information, thereby maintaining the organization's security posture and compliance with regulatory standards. While enrolling all mobile devices in Microsoft Intune is an important step for devices to be managed and monitored, without the specific compliance policy, devices would not have to adhere to the encryption requirement. Simply enrolling devices does not ensure they are compliant with any security policies. Creating an Azure AD Conditional Access policy is also beneficial for controlling access based on device compliance, but it works best in conjunction with a device compliance policy. Without the compliance policy in place to define the encryption requirements, the conditional access policy would not be able to function correctly in enforcing the encryption standard. Setting up a Mobile Device Management (MDM) policy in Microsoft Endpoint Configuration Manager is relevant for managing and securing mobile devices, but it may not directly enforce the compliance requirement for encryption as