Courseiva
Manage and maintain devices →mediumMultiple Choice

MD-102 Manage and maintain devices Practice Question

You manage Windows 10 devices with Microsoft Intune. You need to ensure that when a device is marked as noncompliant, the user receives a notification email, and the device is automatically retired after 30 days. The solution must minimize administrative effort. What should you configure?

⚠ Common exam trap

The trap here is thinking that update rings or cleanup rules can enforce compliance actions, when only compliance policies have actions for non-compliance.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

A compliance policy with actions for non-compliance: send email to user at 0 days, and retire device at 30 days.

Compliance policies are the correct tool to automate actions based on noncompliance. You can configure an action to send an email to the user immediately when the device becomes noncompliant, and another action to retire the device after 30 days. This requires only one policy and minimal administrative effort.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    A compliance policy with actions for non-compliance: send email to user at 0 days, and retire device at 30 days.

    Why this is correct

    Compliance policies allow you to configure actions for non-compliance, including sending an email and retiring the device. You can set the email action to trigger immediately when the device becomes noncompliant, and schedule the retire action for 30 days later. This meets the requirement with minimal effort, as it is a single policy configuration.

  • ✗

    A Windows Update ring with a deadline of 30 days and an automatic retirement action.

    Why it's wrong here

    Update rings control update installation but do not include retirement or email actions. They cannot retire a device or send notifications. This option confuses update management with compliance actions. Update rings are solely for update deployment.

  • ✗

    A device configuration profile with a custom OMA-URI to send email and retire the device after 30 days.

    Why it's wrong here

    Device configuration profiles cannot send emails or retire devices. OMA-URI settings are for configuring policies, not for lifecycle actions. There is no OMA-URI that triggers retirement or email. This option misuses configuration profiles for actions that belong to compliance policies.

  • ✗

    An Intune device cleanup rule that retires devices after 30 days of inactivity and sends an email.

    Why it's wrong here

    Device cleanup rules remove inactive devices, but they do not send emails or base retirement on noncompliance. They are based on last check-in time, not compliance state. This option does not meet the requirement to notify the user or retire based on noncompliance.

Go deeper

Related to this question

About these practice questions

Courseiva writes every MD-102 question from scratch — 556 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Microsoft exam blueprint

This MD-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MD-102 exam.