Bitlocker Encryption report in Intune

Murphy, Ciaran 1 Reputation point
2021-02-22T21:49:45.687+00:00

Hello,

do our on-prem AD managed Win10 devices need to be hybrid domain joined before we can get Bitlocker encryption report in Intune endpoint manager?

From my understanding we need the following but please correct if wrong

  • win 10 hybrid domain joined
  • migrate the management of MBAM to configuration manager
  • enable Microsoft Defender for Endpoint
  • deploy defender ATP

I was hoping to get this capability prior to hybrid domain joining through just ATP telemetry.

all feedback welcomed

Regards

Ciaran

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,760 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Jenny Feng 14,081 Reputation points
    2021-02-23T02:56:59.877+00:00

    @Murphy, Ciaran
    Hi,
    Intune provides a built-in encryption report that presents details about the encryption status of devices, across all your managed devices. After Intune encrypts a Windows 10 device with BitLocker, you can view and manage BitLocker recovery keys when you view the encryption report.
    You could refer to the following official article as your reference:
    https://learn.microsoft.com/en-us/mem/intune/protect/encrypt-devices
    https://techcommunity.microsoft.com/t5/microsoft-endpoint-manager-blog/managing-bitlocker-with-microsoft-endpoint-manager/ba-p/1582523
    Hope above information can help you.

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

  2. Murphy, Ciaran 1 Reputation point
    2021-02-23T08:41:51.4+00:00

    Hi Jenny,

    thanks for your response.

    is there any way I can report on Bitlocker encryption status using ATP security center? (Without 'managing' Bitlocker with Endpoint manager?) so for devices using MBAM

    I found an article from 2018 that illustrates it is/was possible to report on Bitlocker encryption status but I cannot find any Bitlocker analytics in our ATP security center portal.

    Regards

    Ciaran