Posted in

Support tip: Resolve device noncompliance with Mobile Thr…

Step-by-step guidance to restore Intune device compliance when Mobile Threat Defense partner apps are missing or disconnected. Covers installing, activating, refreshing, and reinstalling MTD apps, iOS simplified remediation, Android data reset when sign-out is blocked, and compliance status checks.

Using Mobile Threat Defense (MTD) with Microsoft Intune now includes clarified troubleshooting for MTD-related noncompliance. The guidance focuses on restoring the MTD signal to Intune so devices regain access to work resources.

Main feature/change and impact

Intune documentation adds a stepwise troubleshooting workflow for devices flagged noncompliant due to missing MTD signals. The change standardizes steps: install or activate the partner app, refresh sign-in, and reinstall if needed. This reduces time-to-resolution and lowers helpdesk churn by providing repeatable actions administrators and users can follow immediately.

Practical implications

Administrators must verify device enrollment, account access, and connectivity before troubleshooting. Users follow Company Portal flows to install or open the MTD app and wait up to 30 minutes for Intune updates. iOS admins can enable simplified remediation to automate guided fixes, while Android instructions include clearing app data when sign-out is blocked.
“Install and activate partner app: The device needs the [MTD app] installed and activated to restore access to work or school resources.”
Follow these steps to restore compliance: confirm Company Portal enrollment and network access, install or open the MTD app, sign in with work credentials, and wait up to 30 minutes for Intune to update. If the app is already installed, sign out and sign back in to refresh the connection. If refresh fails, uninstall, restart, reinstall, and sign back in to re-establish the signal. For platform-specific handling, enable the iOS/iPadOS simplified remediation workflow to reduce user steps and support load. On Android, clear Defender app data from the work profile when sign-out is restricted, then sign in again to push updated device signals to Intune. Next steps for administrators include enabling the iOS simplified remediation option where appropriate and documenting these standard steps in internal support guides. Monitor compliance status updates and adjust user guidance based on observed failure modes.

Key points from the article:

  • Verify device is enrolled in Intune Company Portal before troubleshooting.
  • Install and activate the MTD partner app and sign in with work account.
  • After changes, wait up to 30 minutes for Intune compliance status to update.
  • Enable iOS simplified remediation to streamline user remediation within Defender app.
  • On Android, clear Defender app data if sign-out is blocked to refresh connection.
  • Related Coverage:

    From the Intune Customer Success articles