You have 25 Windows 11 computers enrolled in Microsoft Intune under a Microsoft 365 E5 subscription. To onboard these devices to Microsoft Defender for Endpoint, what should you create in the Microsoft Intune admin center?
Choose an answer
Tap an option to check your answer.
Correct answer: an endpoint detection and response (EDR) policy.
Why this is the answer
To onboard devices to Microsoft Defender for Endpoint, you need to create an Endpoint Detection and Response (EDR) policy in Intune. This policy specifically configures the Defender for Endpoint client on devices, enabling them to report security data and receive commands from the service. An attack surface reduction (ASR) policy helps prevent malware by configuring device settings, but it doesn't onboard devices to Defender for Endpoint. A security baseline applies a recommended set of security configurations but isn't the direct mechanism for onboarding. An account protection policy focuses on identity-related security, like Windows Hello for Business. An antivirus policy manages Microsoft Defender Antivirus settings, which is a component of Defender for Endpoint, but the EDR policy is what integrates the device with the full Defender for Endpoint service.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed