Deploy Microsoft Defender ATP for your Android devices

Deploy Microsoft Defender ATP for your Android devices

Microsoft Defender ATP for Android now supports installation on both modes of enrolled devices – the legacy Device Administrator and Android Enterprise modes. However, only Work Profile enrolled devices are supported in Android Enterprise.

I would expect support for other Android Enterprise modes will be announced when they are launched.

Deploying Microsoft Defender ATP to your devices

Launch your Microsoft Endpoint Manager dashboard (http://endpoint.microsoft.com) then go to Apps, Android Apps and click the Add button.

Select Managed Google Play app and press Select

Search for Microsoft Defnder ATP Preview

Click Approve

Please Note

This app has access to:Photos/Media/Files
– read the contents of your USB storage
– modify or delete the contents of your USB storage

Storage
– read the contents of your USB storage
– modify or delete the content of your USB storage

Wifi connection information
– view WiFI connections

Other
– receive data from internet
– view network connections
– draw over other apps
– run at startup
– full network access
– prevent device from sleeping

Select Approve and Done

Select Sync

Microsoft Defender ATP Preview app will now be available and you will need to assign to your require devices.

Once the application is installed on your mobile, just run through the on-screen prompts.

Regards
The Author – Blogabout.Cloud

Preventing applications from being installed on Fully Managed Andriod devices

Preventing applications from being installed on Fully Managed Andriod devices

I recently saw a blog post discussing the challenges of preventing applications being installed on Fully Managed Android devices where the end-user able to install applications from the Public Store. In some very important cases, this can cause security concerns.

So let’s look at one app in particular…

Its has 3.7 million active users since its launch in 2016 and as not only an IT Professional but as a parent I have also had my concerns.

cdn.worldvectorlogo.com/logos/tiktok-icon-black...

Important Note

This process doesnt apply to devices being managed in the following methods;
– Work Profile
– Dedicated
– Device administrator
– Corporate-owned work profile

Browse to the Microsoft Endpoint Management Dashboard https://endpoint.microsoft.com

Select Apps –> Android

Select Add –> Managed Google Play app

Search for the application you would like to block

Select the application

Press Approve

Press Done

Press Sync

Select Properties –> Assignments

For this post I am blocking the application on all devices as shown below

Save the configuration

Now any device that tries to download TikTok from the public Google Play store will not be able to find the application.

Regards
The Author – Blogabout.Cloud