Fixing Data Leak Prevention Gaps on iOS and Android with Intune App Protection Policies

Explore Our Microsoft Intune Training →

ITP Training helps IT admins manage Mobile Application Management (MAM) policies effectively. In this blog post, we will discuss common data leakage issues on iOS and Android devices resulting from MAM policy gaps.

How Intune App Protection Policies Prevent Data Leakage

Intune App Protection Policies (APP) help protect corporate data by applying restrictions to apps, ensuring they comply with your organization’s security policies.

Common MAM Policy Gaps Allowing Data to Leak to Personal Apps

Although Intune APP provides robust protection, certain gaps can still allow data leakage. One common issue is the ability for users to cut, copy, paste, or save corporate data to personal apps.

Configuring Cut, Copy, Paste Restrictions in APP

To prevent this, you can configure cut, copy, and paste restrictions within the Intune APP settings. Follow these steps:

  1. Go to the Azure Portal > Endpoint Manager > Apps > App protection policies.
  2. Select your policy and navigate to the Data Protection section.
  3. Configure the required settings for cut, copy, paste, and Save As restrictions.

Fixing Save As Restrictions Not Working on iOS

Although you can configure Save As restrictions on iOS devices, they may not always work as expected. To ensure the policy applies, test it on enrolled and unenrolled devices.

Testing MAM Policies Using the Intune Diagnostics Tool

Finally, use the Intune diagnostics tool in Company Portal to verify policy application. This can help you quickly identify and fix any issues with your MAM policies.

Explore Our Microsoft Intune Training →

Written by Mohammed Akhter

Founder of ITP Training. 50,000+ students trained across 30+ countries in Microsoft endpoint and cloud security. Learn more →