Event details
 Ensuring that a platform is healthy and trustworthy is a fundamental vertical in today’s zero trust approach, and this has become one of the keys focuses of recent times. Pre-OS boot continues to rem...
Heather_Poulsen
Updated Dec 27, 2024
taavie
Oct 27, 2022Copper Contributor
Are there any plans on adding additional capability to Intune to resolve various device health configuration issues? Understandably detecting changes is important, but it seems quite tedious right now to actually bring machines up to a state where measuring those changes becomes important. 
As a more concrete example, Intune's Device Health report saying that a machine has Early-Launch AntiMalware or Data Execution Prevention disabled is good, but are there plans on adding a way to trivially these machines into the correct state? Security Baselines can't even configure all ASR rules, so those are out of the question.