Microsoft 365 Certified Endpoint Administrator (MD-102) Practice Test

Disable ads (and more) with a membership for a one time $4.99 payment

Prepare for the Microsoft 365 Certified Endpoint Administrator exam. Utilize flashcards and multiple choice questions with hints and explanations. Get exam-ready now!

Practice this question and more.


Which type of profile should you configure in Intune to prevent users from using USB storage devices on Windows 10?

  1. Device restrictions

  2. Endpoint protection

  3. Compliance policy

  4. Device configuration

The correct answer is: Device restrictions

The correct choice involves configuring a device restrictions profile in Intune. This profile type allows administrators to manage various device settings and features, including the ability to control user access to USB storage devices. By employing device restrictions, an admin can define rules that disable or limit the functions of removable storage, effectively preventing users from using USB drives on Windows 10 systems. While other profile types, such as endpoint protection and compliance policies, also play important roles in device management, they are focused on different aspects. Endpoint protection, for example, typically deals with security settings and malware protection rather than specific user access controls like USB device usage. Compliance policies are more oriented toward ensuring devices meet specific requirements, such as security configurations or software installations, rather than directly managing hardware access. Device configuration profiles are broader and can include various settings but do not explicitly target USB storage control like device restrictions do. Thus, the device restrictions profile is specifically designed for the task of managing user access to USB storage devices, making it the most appropriate choice for this scenario.