---
title: Intune Onboarding for MDE (macOS)
description: Quick guide on assigning groups to Intune policies related to macOS Intune MDE onboarding.
---

[Skip to content](https://knowledge.sittadel.com/deploy-macos-intune-policy#main-content)

[![Sittadel-Logo-Icon-Slim-Large-Square-Green-Transparent copy](https://knowledge.sittadel.com/hs-fs/hubfs/Sittadel-Logo-Icon-Slim-Large-Square-Green-Transparent%20copy.png?width=55&height=55&name=Sittadel-Logo-Icon-Slim-Large-Square-Green-Transparent%20copy.png)](https://sittadel.com/)

- [About Sittadel](https://sittadel.com/about/)
- [Capabilities](https://sittadel.com/capabilities/microsoft-office365-azure-security/)
  
  Show submenu for Capabilities

    - [Microsoft Security Architecture](https://sittadel.com/capabilities/microsoft-office365-azure-security/)
    - [Detection & Response](https://sittadel.com/capabilities/managed-detection-and-response/)
    - [Employee Training](https://sittadel.com/capabilities/security-awareness-training/)
    - [Security Risk Advisors](https://sittadel.com/capabilities/virtual-information-security-officer/)
- [Resources](https://sittadel.com/resources/)
- [Knowledge Base](https://knowledge.sittadel.com/)

Open main navigation

Close main navigation

- [About Sittadel](https://sittadel.com/about/)
- [Capabilities](https://sittadel.com/capabilities/microsoft-office365-azure-security/)
  
  Show submenu for Capabilities

    - [Microsoft Security Architecture](https://sittadel.com/capabilities/microsoft-office365-azure-security/)
    - [Detection & Response](https://sittadel.com/capabilities/managed-detection-and-response/)
    - [Employee Training](https://sittadel.com/capabilities/security-awareness-training/)
    - [Security Risk Advisors](https://sittadel.com/capabilities/virtual-information-security-officer/)
- [Resources](https://sittadel.com/resources/)
- [Knowledge Base](https://knowledge.sittadel.com/)
- [Get Sittadel](https://sittadel.com/start/)

[Get Sittadel](https://sittadel.com/start/)

 Find answers to your security questions.

- There are no suggestions because the search field is empty.

1. [Sittadel Knowledge Base](https://knowledge.sittadel.com/?hsLang=en)
2. [Deploy MDE](https://knowledge.sittadel.com/deploy-mde?hsLang=en)
3. [Intune Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#intune-deployment)

# Intune Onboarding for MDE (macOS)

## A guide on assigning groups to Intune policies related to macOS Intune MDE onboarding, ensuring necessary security functionality for the MDE Agent are distributed to desired device groups.

### **macOS Intune Policy Deployment**

1. Make sure to fulfill the **following actions below** for **configuration profile assignment** for the following list: 
     1. **Sittadel – macOS Accessibility for MDE**
     2. **Sittadel – macOS Auto-Update for MDE**
     3. **Sittadel – macOS Background Services for MDE**
     4. **Sittadel – macOS Bluetooth for MDE**
     5. **Sittadel – macOS Cloud Protection for MDE**
     6. **Sittadel – macOS Network Filter for MDE**
     7. **Sittadel – macOS Notifications for MDE**
     8. **Sittadel – macOS Onboarding for MDE**
     9. **Sittadel – macOS Scheduled Scans for MDE**
     10. **Sittadel – macOS System Extensions for MDE**
2. Navigate to the [Device Configuration – Intune](https://intune.microsoft.com/#view/Microsoft_Intune_DeviceSettings/DevicesMenu/~/configuration) portal, here we will find **a list of all of the macOS configuration profiles that allow MDE security controls to be enabled without user interaction.** Locate and select the **Sittadel – macOS Accessibility for MDE** profile, this will be leveraged for this example but **make sure to fulfill the steps for all the configuration profiles listed**.  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-21-49-2925-PM.png?width=670&height=354&name=image-png-Aug-26-2024-07-21-49-2925-PM.png)
3. Once opened we will want to scroll down to the **Assignments** section of the **policy** and select **Edit** to create a **group enforcement scope** **for the policy.**  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-22-07-7939-PM.png?width=670&height=354&name=image-png-Aug-26-2024-07-22-07-7939-PM.png)
4. From the **Assignments** section, utilize the **Add groups** button, this will display a pop-out where leveraging the **search bar** you can supply **the name for the desired groups that you wish to have the MDE enforcement on.** Make sure that you select the **checkbox by the returned group** from the list, finalize this selection by hitting **Select.**The **selected group(s) should generate in the list** once the pop-out is terminated. Select **Review** **+ save** to continue to **assignment finalization.**  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-23-32-0794-PM.png?width=670&height=354&name=image-png-Aug-26-2024-07-23-32-0794-PM.png)
5. From the **Review** **+ save** section, we will want to verify from the **Assignments** subsection that the **previous assignment(s)** have been made correctly. If the **desired group(s) is generating**, we will select **Save** to proceed to making the **same assignments** on the rest of the **MDE configuration profiles**.  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-24-55-4781-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-24-55-4781-PM.png)
6. Once **all the necessary assignments have been made for all of the configuration profiles,** we will Navigate to the [Antivirus – Intune](https://intune.microsoft.com/#view/Microsoft_Intune_Workflows/SecurityManagementMenu/~/antivirus) portal, here we will want to locate and select the **Sittadel – macOS Defender AV Policy** to begin the **policy assignment process.**  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-28-07-1404-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-28-07-1404-PM.png)
7. Once opened we will want to scroll down to the **Assignments** section of the **policy** and select **Edit** to create a **group enforcement scope for the policy.**  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-28-21-8569-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-28-21-8569-PM.png)
8. Selecting **Edit** will display the **Basics** section for the selected policy, from this section we will want to select the **Assignments **section.  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-30-12-0223-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-30-12-0223-PM.png)
9. From the **Assignments** section, utilize the **Search** field to supply **the name for the desired groups that you wish to have MDE enforcement on.** **The selected group(s) should generate in the list below.** Select **Next** to continue to the **Review** section for **assignment finalization.**  
   ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-32-55-8512-PM.png?width=670&height=354&name=image-png-Aug-26-2024-07-32-55-8512-PM.png)
10. From the **Review** section, we will want to select the **Assignments** dropdown to **verify that the previous assignment(s)** have been made correctly. If the **desired group(s) is generating**, we will select **Save** to finalize the **Anti-Virus policy **assignment.  
    ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-33-47-8978-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-33-47-8978-PM.png)
11. Once all the necessary **assignments** have been made for the **Anti-virus policy,** we will Navigate to the [All Apps – Intune](https://intune.microsoft.com/#view/Microsoft_Intune_DeviceSettings/AppsMenu/~/allApps) portal, here we will want to locate and select the **Microsoft Defender for Endpoint (macOS)** application to begin the **policy assignment process.**  
    ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-47-28-2369-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-47-28-2369-PM.png)
12. Opening the **application** will display the **Overview** page, we will want to select the **Properties** page under the **Manage** section, from the page we will want to scroll down to the **Assignments** section and select **Edit** to create a **group enforcement scope** for the **application.**  
    ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-48-24-9530-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-48-24-9530-PM.png)
13. From the **Assignments** section, utilize the **Add groups** button, this will display a pop-out where leveraging the **search bar** you can supply **the name for the desired groups that you wish to have the MDE enforcement on.** Make sure that you select the **checkbox by the returned group** from the list, finalize this selection by hitting **Select.** The **selected groups should generate in the list** once the pop-out is terminated. Select **Review** **+ save** to continue to **assignment finalization.**  
    ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-50-52-1204-PM.png?width=670&height=354&name=image-png-Aug-26-2024-07-50-52-1204-PM.png)
14. From the **Review** **+ save** section, we will want to **verify from the Assignments subsection that the previous assignment(s)** have been made correctly by selecting the **Required dropdown**. If the **desired group(s) is generating**, we will select **Save** to finalize the **macOS Policy assignment **process.  
    ![](https://knowledge.sittadel.com/hs-fs/hubfs/image-png-Aug-26-2024-07-51-44-3270-PM.png?width=670&height=353&name=image-png-Aug-26-2024-07-51-44-3270-PM.png)

### Need Assistance?

Reach out to your Customer Success Manager to discuss how a Sittadel cybersecurity analyst can assist in managing these tasks for you. New to our services? [Inquire](https://sittadel.com/start/) about arranging a consultation to explore optimizing your Azure environment for painless management.

- [UserOps](https://knowledge.sittadel.com/userops?hsLang=en#main-content)

    - [Access & Permissions](https://knowledge.sittadel.com/userops?hsLang=en#access-permissions)
    - [Account](https://knowledge.sittadel.com/userops?hsLang=en#account)
    - [Devices](https://knowledge.sittadel.com/userops?hsLang=en#devices)
    - [Document Sharing](https://knowledge.sittadel.com/userops?hsLang=en#document-sharing)
    - [Email](https://knowledge.sittadel.com/userops?hsLang=en#email)
    - [Requests](https://knowledge.sittadel.com/userops?hsLang=en#requests)
    - [Troubleshoot](https://knowledge.sittadel.com/userops?hsLang=en#troubleshoot)
- [TechOps](https://knowledge.sittadel.com/techops?hsLang=en#main-content)

    - [Tenant Foundations](https://knowledge.sittadel.com/techops?hsLang=en#tenant-foundations)
    - [Collaboration Security](https://knowledge.sittadel.com/techops?hsLang=en#collaboration-security)
    - [Email Security](https://knowledge.sittadel.com/techops?hsLang=en#email-security)
    - [Device Security](https://knowledge.sittadel.com/techops?hsLang=en#device-security)
    - [Identity Security](https://knowledge.sittadel.com/techops?hsLang=en#identity-security)
- [SecOps](https://knowledge.sittadel.com/secops?hsLang=en#main-content)

    - [Email SOC](https://knowledge.sittadel.com/secops?hsLang=en#email-soc)
    - [Identity SOC](https://knowledge.sittadel.com/secops?hsLang=en#identity-soc)
    - [Tenant SOC](https://knowledge.sittadel.com/secops?hsLang=en#tenant-soc)
    - [Device SOC](https://knowledge.sittadel.com/secops?hsLang=en#device-soc)
- [Deploy Intune](https://knowledge.sittadel.com/deploy-intune?hsLang=en)
- [Deploy MDE](https://knowledge.sittadel.com/deploy-mde?hsLang=en#main-content)

    - [Overview](https://knowledge.sittadel.com/deploy-mde?hsLang=en#overview)
    - [Intune Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#intune-deployment)
    - [Hands-On Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#hands-on-deployment)
    - [Azure Arc Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#azure-arc-deployment)
    - [RMM Tool Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#rmm-tool-deployment)
    - [MECM/SCCM Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#mecm-sccm-deployment)
    - [GPO Deployment](https://knowledge.sittadel.com/deploy-mde?hsLang=en#gpo-deployment)
- [Deploy Services](https://knowledge.sittadel.com/deploy-services?hsLang=en#main-content)

    - [Cloud Enclave](https://knowledge.sittadel.com/deploy-services?hsLang=en#cloud-enclave)
- [Azure Portals](https://knowledge.sittadel.com/azure-portals?hsLang=en#main-content)

    - [Entra ID](https://knowledge.sittadel.com/azure-portals?hsLang=en#entra-id)
    - [Intune](https://knowledge.sittadel.com/azure-portals?hsLang=en#intune)
    - [Defender](https://knowledge.sittadel.com/azure-portals?hsLang=en#defender)
    - [Purview](https://knowledge.sittadel.com/azure-portals?hsLang=en#purview)
    - [SharePoint Admin Center](https://knowledge.sittadel.com/azure-portals?hsLang=en#sharepoint-admin-center)
    - [Teams Admin Center](https://knowledge.sittadel.com/azure-portals?hsLang=en#teams-admin-center)
    - [Admin Center](https://knowledge.sittadel.com/azure-portals?hsLang=en#admin-center)
    - [Exchange Admin Center](https://knowledge.sittadel.com/azure-portals?hsLang=en#exchange-admin-center)

[![](https://knowledge.sittadel.com/hs-fs/hubfs/Sittadel_LogoH_Color_BlackText.png?width=186&height=55&name=Sittadel_LogoH_Color_BlackText.png)](https://Sittadel.com)

Security for Humans.

Copyright © 2026, Sittadel

<https://www.linkedin.com/company/sittadel> <https://outlook.office365.com/book/StartSittadelcom@sittadel.com/?ismsaljsauthenabled=true> <https://outlook.office365.com/book/StartSittadelcom@sittadel.com/?ismsaljsauthenabled=true>