Courseiva
Protect deviceseasyMultiple ChoiceObjective-mapped

MD-102 Protect devices Practice Question

Your organization uses Microsoft Entra ID joined devices with Windows 10. You need to ensure that only compliant devices can access corporate email in Microsoft Outlook for Windows. Which integration should you enable?

⚠ Common exam trap

Many candidates confuse App Protection Policies (which protect data at the app level) with device compliance enforcement, or assume that Intune compliance policies alone block access without a Conditional Access policy to enforce them.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Create a Conditional Access policy in Microsoft Entra ID requiring compliant devices for Exchange Online.

Creating a Conditional Access policy in Microsoft Entra ID that requires compliant devices for Exchange Online is the correct integration because it directly enforces device compliance as a condition for accessing corporate email. This policy evaluates the device's compliance status reported by Intune before granting access to Exchange Online, ensuring only compliant devices can use Outlook for Windows.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Create a Conditional Access policy in Microsoft Entra ID requiring compliant devices for Exchange Online.

    Why this is correct

    Conditional Access integrates with Intune compliance to block non-compliant devices.

  • Enable App Protection Policies for Outlook for Windows.

    Why it's wrong here

    App Protection Policies are primarily for mobile devices.

  • Require all devices to be enrolled in Intune before accessing email.

    Why it's wrong here

    Enrollment is needed but not sufficient to enforce compliance-based access.

  • Configure a compliance policy in Intune to mark devices as non-compliant if not updated.

    Why it's wrong here

    Compliance policy alone does not enforce access; it requires Conditional Access.

About these practice questions

Courseiva writes every MD-102 question from scratch — 942 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This MD-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MD-102 exam.