Microsoft 365 Endpoint Administrator Associate MD-102 Practice Question

You plan to roll out 500 corporate-owned Windows 11 Enterprise laptops. Company policy requires that the operating system volume is automatically encrypted with BitLocker during Autopilot enrollment, that recovery keys are stored in Azure AD, and that users cannot disable BitLocker. In Microsoft Intune, which type of policy should you create to meet these requirements while adhering to Microsoft best practice?

  • Create an Endpoint security Disk encryption policy that uses the Windows 10 and later BitLocker profile.

  • Create an Endpoint security Antivirus policy and enable drive encryption settings.

  • Create a Device configuration profile that uses the Identity protection template.

  • Create a Device compliance policy that marks devices noncompliant if BitLocker is disabled.

Microsoft 365 Endpoint Administrator Associate MD-102
Protect devices
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot