A cloud-native solution that protects workloads across hybrid and multi-cloud environments with threat detection and security recommendations
Azure VMs are not Intune‑enrolled by default and This is by design. Microsoft confirms that Defender for Servers includes Defender for Endpoint server licensing and does not require Intune for onboarding or protection
Instead of Intune dynamic groups, the recommended approach is:
- Go to security.microsoft.com
- Use:
- Device Groups
- Dynamic Device Tags (Asset Rule Management)
- Device Groups
These work natively for Azure VMs and do not require Intune
If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated.