home

Mobile Endpoint Security

Lookout Product Documentation

Find answers about using and optimizing Lookout products.

Using Lookout Risk Levels to Drive a Compliance Policy in Intune

In a Cloud deployment, you manage compliance policy configuration through Intune. The Intune Administrator chooses the maximum acceptable threat level for a device (High, Medium, Low, Secured). Any device with a higher threat level as determined by the Lookout MES threat classification policy is considered non-compliant.

For testing purposes, it is useful to test new threat configurations against a small subset of users. This presents a chance to see the policy in action and check for unexpected behavior. One way to do this is to create a new compliance policy that specifies a small Entra ID user group for its "managed devices". This can be the same group(s) specified for Lookout MES Enrollment Groups, or a subset of users from that group.

  1. Log in to the Microsoft Intune admin center.
  2. In the left sidebar menu, click Devices.
  3. In the Devices blade, under Policy, click Compliance policies.
  4. Click + Create Policy.
  5. Your exact policy will vary based on the needs of your organization, but you must at least select a threat level for Device Health > Require the device to be at or under the Device Threat Level in order to use Lookout MES threat detection:


  6. Click Next to configure noncompliance actions, then click Next again to apply the policies to selected User Groups.
  7. When you have configured the policy, click Next to review final settings, then click Save.