Courseiva
mediumMultiple Choice

MD-102 Practice Question: A company uses Microsoft Intune to manage Windows…

A company uses Microsoft Intune to manage Windows 10 devices. The security team reports that several devices are missing critical security updates. You need to ensure that devices install updates within 7 days of release. What should you configure?

⚠ Common exam trap

A common mix-up: candidates confuse compliance policies (which only report on update status) with update rings (which enforce installation deadlines), leading them to choose Option A instead of B.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Create an update ring for Windows 10 with a deadline of 7 days.

Update rings in Microsoft Intune allow you to configure Windows Update for Business settings, including a deadline for feature and quality updates. Setting a deadline of 7 days ensures that devices must install released updates within that timeframe, directly addressing the requirement for timely installation of critical security updates.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Create a compliance policy for Windows 10 update compliance.

    Why it's wrong here

    A compliance policy only evaluates and reports device state against conditions, marking devices non-compliant; it cannot trigger update installation within seven days. It is tempting because compliance policies can flag missing updates and gate Conditional Access, and would be correct when the goal is reporting or blocking access, not remediation.

  • ✓

    Create an update ring for Windows 10 with a deadline of 7 days.

    Why this is correct

    An update ring's deadline setting forces installation within a defined window after release; setting it to 7 days directly satisfies the stem's requirement that devices install critical updates within 7 days, without relying on user-initiated checks.

  • ✗

    Create a device configuration profile for Windows 10 updates.

    Why it's wrong here

    Device configuration profiles deliver settings such as update rings and restart behaviour, but they do not themselves schedule or enforce installation deadlines for quality updates. It is tempting because configuration profiles are the general Intune mechanism for device settings, and would be correct for configuring Defender or firewall options.

  • ✗

    Configure a Windows Update for Business policy in Group Policy.

    Why it's wrong here

    Group Policy applies only to domain-joined devices connected to on-premises Active Directory; cloud-managed Intune devices without that binding never receive the setting. It is tempting because Windows Update for Business policies are the right control, and would be correct in a hybrid environment managed through Group Policy rather than Intune.

Go deeper

Related to this question

About these practice questions

This MD-102 question is part of Courseiva's 556-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This MD-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MD-102 exam.