Windows Information Protection

Occasional Contributor



I want to configure Windows Information Protection for our BYOD users. I created a App Protection Policy with WIP configured without enrollment . This seems to be working fine. The question is, how can we be sure all Windows devices are enforced to use WIP?  What kind of Conditional Access Policy do I use?

1 Reply

@Angelo Lelieveld 


Hey Angelo,


WIP will be enforced when the Windows devices if they are workplace-joined (that is, added by using Settings > Email & accounts > Add a work or school account)

You can enforce CA polices to ensure that whenever Corporate Data is accessed the devices need to be workplace-joined for personal devices.

Take a look at this link, Please use the below link as guideline only