Defender for Endpoint Device App Execution Restriction Work Instruction

This work instruction will allow an administrator to initiate an app execution restriction on a device registered through Intune.

This article is intended for employees of organizations that use Sittadel's security. Additionally, there are some actions that can only be accomplished by those with administrative privileges.

Procedure Scope: Administrators

Required Group Membership: Admin.SecurityIncident

  1. Navigate to the Device Inventory – O365 Defender, select the device in question.
  2. Select the three dots, locate the Restrict App Execution option.
  3. A prompt will be generated asking for finalization on the app restriction action, select Confirm to complete device app restrictions.

You're Finished!

You should have initiated an app execution restriction on the specified device, this will be enforced until the restriction is uplifted by administration. For any other problems or questions, reach out to us!