MD-102 Manage and maintain devices Practice Question
A user's device is marked as 'Noncompliant' in Microsoft Intune due to missing required updates. The device is configured with a compliance policy that requires a minimum OS version. The user claims the device is up-to-date. What should you verify first?
⚠ Common exam trap
The trap here is that candidates may jump to verifying policy assignment or connectivity, overlooking that the most direct and immediate verification is the actual OS version on the device, which is the specific attribute being evaluated by the compliance policy.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The current OS version on the device.
The first step in troubleshooting a noncompliant device due to a missing minimum OS version is to verify the actual OS version currently installed on the device. The user's claim that the device is up-to-date may be based on a misunderstanding of what version is required, or the device may have pending updates that have not been applied. Intune compliance policies evaluate the OS version reported by the device during check-in, so confirming the exact build number against the policy requirement is the logical starting point.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
The current OS version on the device.
Why this is correct
The compliance policy enforces a minimum OS version, so the reported build must be compared against that threshold. Verifying the actual OS version first confirms whether the device genuinely meets the minimum or the policy is misjudged.
- ✗
The user's license status.
Why it's wrong here
Licence status governs Intune enrolment and policy delivery, not the OS build number evaluated by the minimum-OS compliance rule. It is tempting because unlicensed users do hit compliance errors, and checking licensing would be right when a device fails to enrol or receive any policies at all.
- ✗
The compliance policy is assigned to the device.
Why it's wrong here
An unassigned policy would leave the device without any compliance state, yet it is explicitly marked Noncompliant, proving assignment occurred. It is tempting because assignment gaps commonly cause unexpected results, and verifying assignment would be correct when a device shows 'Not evaluated' rather than Noncompliant.
- ✗
The device is connected to the internet.
Why it's wrong here
Internet connectivity affects check-in timing, but the device already reported Noncompliant, so the OS version data reached Intune. It is tempting because stale check-ins cause outdated compliance states, and connectivity would be the right first check when a device shows no recent sync at all.
Go deeper
Related to this question
Learn chapter
Troubleshooting Device Enrollment and Management
Key term
General Data Protection Regulation
A European Union law that gives individuals control over their personal data and sets strict rules for how organizations collect, store, and process that data.
Key term
Microsoft Intune
Microsoft Intune is a cloud-based service that helps organizations manage employee devices, apps, and security policies without needing to own or control the physical hardware.
About these practice questions
This MD-102 question is part of Courseiva's 556-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This MD-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MD-102 exam.