Encrypting MacOS Devices in Microsoft 365: Configuration Guide

Encrypting MacOS Devices in Microsoft 365

Question

You have a Microsoft 365 subscription with Microsoft 365 E5 licenses, and manage your devices in Endpoint Manager.

Your devices consist of a mix of Windows 10 and MacOS devices.

You now want to encrypt your MacOS devices.

What should you configure?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

Correct Answer: D

FileVault is macOS's built-in disk encryption feature.

Encryption is done by using 128-bit AES encryption with a 256-bit key.

Configure FileVault by setting up an Endpoint Security - Disk encryption policy.

Microsoft Endpoint Manager admin center

« Home > Apps

A Home

Dashboard

= All services & Search (Ctrl+/) « + add v

5 Apps | App configuration policies

+ FAVORITES
© overview & Search by name
“ vevices All apps Name ty
Apps
HB App: Monitor Whizlabs app protection policy
© Endpoint security
By platform
Reports
I Windows
& users
Bh iosjipados
3S Groups
Gl macos
& Tenant administration
B android
2% Troubleshooting + support
Policy

‘App protection policies

App configuration policies

Option A is incorrect.

Bitlocker is used to encrypt Windows 10 Devices

Option B is incorrect.

Azure Storage Service Encryption used to encrypt Azure storage accounts ; Azure Blob storage and Azure file shares.

Option C is incorrect.

Always Encrypted is used for encrypting Azure SQL data.

Reference:

To know more about encrypting MacOS, please refer to the link below:

The correct answer is D. FileVault.

Explanation: Endpoint Manager is a Microsoft management solution for mobile devices and computers, which includes the ability to manage both Windows and MacOS devices. Microsoft 365 E5 licenses provide access to advanced security features such as device encryption.

In the context of MacOS, device encryption can be achieved using a built-in feature called FileVault. FileVault encrypts the entire hard drive of a Mac device and provides protection against unauthorized access to data in case of theft or loss of the device.

Option A, Bitlocker, is a Windows-only encryption feature that is not available on MacOS devices. Option B, Azure Storage Service Encryption, is a feature that encrypts data stored in Azure storage accounts, and is not related to device encryption. Option C, Always Encrypted, is a feature that encrypts sensitive data in SQL Server databases and is not related to device encryption.

Therefore, the correct answer is D. FileVault, as it is the MacOS built-in encryption feature that can be used to encrypt the hard drive of a Mac device.