how can I identify that "any" policy is a part of "MDM/MAM/Secuirty/Protection" ?

Dave D 61 Reputation points
2020-12-04T06:23:55.223+00:00

Hello,

I see there is an "App Protection Policy" - which sounds like part of "Security and Protection" but it also comes under "Intune" so it will be part of MAM ? which is the base of MDM ? And therefore It's quite confusing to understand policies categorization at the first place.

Can you please clarify, how can I identify that "any" policy is a part of "MDM/MAM/Security/Protection" ? I assume device compliance would come under protection so I have not mentioned word "Compliance"!

Note: Please do not provide the definition of the App protection policy, I only require to understand, how can I quickly identify that any policy comes under "MDM/MAM/Security/Protection" area based on it's name?

Thanks,

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,893 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,053 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Lu Dai-MSFT 28,401 Reputation points
    2020-12-04T09:21:29.877+00:00

    anonymous userD-1603 For MDM, it means mobile device management. For MAM, it mean mobile application management, Microsoft Intune is a cloud-based service that focuses on MDM and MAM.

    For device management, there are polices like device compliance policy, device configuration profiles.
    45157-image.png

    For app management, there are policies like app protection policies, app configuration polices in Intune portal.
    45147-image.png

    Meanwhile, there are also some Endpoint security policies which configure device security and to manage security tasks for devices.
    45097-image.png

    For app protection policy, it is used to protect the data within app. It needs to deploy to user group and can apply to Intune-managed device (Which we can see it under Devices in Intune portal) or not managed device. (Which only register into Intune but not shown under devices in Intune portal) .We can see more details in the following link:
    https://video2.skills-academy.com/en-us/mem/intune/apps/mam-faq

    We can find the policy setting according its usage. For example, if we want to configure a computer setting, we can find it under Device Configuration policy.

    Hope my explanation can help you understand Intune policy well. If there’s still anything unclear, feel free to let us know.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

  2. Dave D 61 Reputation points
    2020-12-07T06:30:14.657+00:00

    Hi @Lu Dai-MSFT

    Thank you for the response!

    If you see there are security/protection policies here as well under Security and Compliance center - https://protection.office.com/datalossprevention

    How the security and protection policies which you have explained from the Intune differ from the "Security and Compliance center"?

    Thanks,


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.