Microsoft Secure Tech Accelerator
Apr 03 2024, 07:00 AM - 11:00 AM (PDT)
Microsoft Tech Community
SOLVED

Secure Score - Mobile Device

Brass Contributor

Good morning, in the score it reports me many implementations to be done on mobile devices; have any of you been able to achieve the scores?

 

Ensure that mobile devices require complex passwords (type = alphanumeric)

Ensure that devices lock after a period of inactivity to prevent unauthorized access

Ensure that mobile devices are set to erase on multiple access errors to avoid brute force compromise

Ensure that users cannot connect from jailbroken or rooted devices

8 Replies

@micheleariis to achieve the score for your mobile devices, you need to enroll them into Intune and apply configuration profile and compliance policies on them. 

 

You can define the complex password minimum requirements, lock after a period of inactivity to prevent unauthorized access, block jail broken devices, etc .....

 

Also create Conditional Access policies to block legacy authentication and to apply policies that are related to the identity protection. 

 

Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily.

 

Many of these criteria have already been applied but the score remains the same.
When did you applied your remediations policies ?
A week or so ago.
For many policies I cannot find the scopes on all devices; for example:
Ensure that users cannot connect from jailbroken or rooted devices

@micheleariis 

 

I have the same issue.

All the rules are intune for all of the recently added security metrics, but they are not being registered in Security centre.

It is as if they are only looking at the values located in the non-Intune enabled areas.

 

@martyvdb  Did you ever find any solution for this as even after enabling the suggested controls for the mobile devices, they keep on appearing on secure score.

@KashifKloudy  It was never resolved. I ended up flagging them as alternate mitigation so I got the score for them, which is unfortunate.

1 best response