Skillplan M365 Checklist
2026-07-20 19:32
M365
Checklist Sécurité Microsoft 365
de
en
fr
it
Système En ligne
← Retour aux sections
Mesures de mitigation · Section 14 sur 17
Intune — Endpoint Management
Progression de l'évaluation
0
/ 136 éléments
0%
Conformité jusqu'à présent
0
/ 0 contrôles
0%
Expliquer ce contrôle
Enforce a device compliance policy that requires BitLocker, Secure Boot, antivirus, and a current OS build.
Non remplie
Remplie
Accepté
Require Conditional Access to consume Intune device compliance signals (no access for non-compliant devices).
Non remplie
Remplie
Accepté
Enroll all Windows devices via Autopilot; eliminate manual on-the-box administrator provisioning.
Non remplie
Remplie
Accepté
Apply App Protection Policies (MAM) requiring a PIN, blocking copy/paste to unmanaged apps, and wiping on jailbreak.
Non remplie
Remplie
Accepté
Deploy Defender for Endpoint via Intune; do not rely on user-driven onboarding.
Non remplie
Remplie
Accepté
Enable Endpoint Privilege Management to grant just-in-time local-admin elevation for approved actions.
Non remplie
Remplie
Accepté
Apply ASR rules and Controlled Folder Access via the Intune Endpoint Security blade.
Non remplie
Remplie
Accepté
Maintain a corporate-device wipe policy for retired or lost devices and exercise it quarterly.
Non remplie
Remplie
Accepté
Enregistrer et continuer →