Skip to content
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot

How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot

Written By Anoop C Nair
Last Updated September 5, 2025
Posted In Intune
SHARE

Let’s discuss how to Get Devices in Noncompliant State with Intune Explorer and Security Copilot. A device is considered Noncompliant in Intune when it doesn’t follow the security standards defined by IT admins. These standards may include having a password, enabling encryption, or running the latest OS version. If the device breaks even one of these rules, Intune automatically marks it as Noncompliant.

In Intune reports, devices can appear in different compliance states: Compliant when they meet all rules, Noncompliant when they fail one or more rules, and Error when the device fails to report its status. By tracking and managing Noncompliant devices, IT teams can protect company data while helping users resolve issues quickly.

Intune Explorer helps you translate natural language requests into predefined query views within Intune. These views are designed to cover common tasks, such as checking device compliance, monitoring app deployments, or reviewing user activity. Based on your query, Explorer may also request additional details, such as the platform, a specific device, or a username, to refine the results.

When IT admins use Intune Explorer and Security Copilot to get a list of devices in a Noncompliant state, the results provide clear visibility into which devices are failing security or compliance rules. This helps organizations in several ways: admins can act quickly to fix issues like missing patches, weak passwords, etc.

Patch My PC

How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot

The query results allow IT teams to guide end users on how to bring their devices back into compliance, ensuring both security and productivity are maintained across the organization. For getting the results follow the steps below.

  • Sign in to the Intune admin center.
  • Go to Explorer tab on the Left side of Intune admin center
  • Select the Compliance as Category
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot - Fig.1
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Fig.1

In Intune Explorer you will get different categories that make it easier to search and manage information. These include App Configuration for managing app settings, App Protection for securing apps and data, and Apps for viewing installed or managed applications.

You also have Compliance to check whether devices meet security rules, Device Configuration to view policies applied to devices, Device Updates to track update status, and Devices to get details about all enrolled devices.

  • Under the Compliance category, I selected the query “Get devices that are in Compliance state.”
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot - Fig.2
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Fig.2

Get devices that are Compliance state query

In the “Get devices that are Compliance state” query, the required field is Compliance. Here, I selected the option “Noncompliant” to get a list of devices that do not meet the compliance rules set in Intune. This helps in quickly finding devices that need attention or fixes.

How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot - Fig.3
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Fig.3

After filling in the required field, the query is ready to fetch devices that are in a Noncompliant state. By clicking the arrow next to the query, Copilot runs it and returns the results as showing 8 items in the list. This query helps Intune admins quickly identify and review devices based on their compliance status.

It filters out only the Noncompliant devices and presents key details such as the device name, device ID, Entra device ID, management agent, ownership, platform, and the last time the device was seen, making it easier to analyze and take action.

How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot - Fig.4
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Fig.4

Other Useful Queries in Intune Explorer

Intune Explorer provides a different types of queries that help IT admins track apps, devices, and user activity more effectively. These queries can be used to identify users with certain apps installed, find devices with specific managed apps, or check apps published by particular vendors etc.

Other Useful QueriesNext steps to consider
Query: Get users with devices on Platform that have discovered app with name containing App Name installed
Reason: This query helps identify users with devices on a specific platform that have a particular app installed, which can be useful for tracking app usage and compliance.
Review the compliance status of the devices returned by the query. This will help you identify non-compliant devices and take necessary actions to bring them into compliance.
Query: Get devices that have the managed app /Managed App installed on platform Managed App Platform
Reason: This query is useful for identifying devices with a specific managed app installed, helping to ensure that critical applications are deployed and managed correctly.
Analyze the management agent and ownership details to understand how devices are being managed and whether they are corporate-owned or personal devices. This information can help in making decisions about device management policies.
Query: Get users that have discovered app with name containing App Name on Platform published by Publisher installed
Reason: This query helps in identifying users with devices that have a specific app from a particular publisher installed, which is useful for managing software compliance and licensing.
Check the last seen date and time to identify devices that may not have checked in recently. This can help in identifying devices that might be offline or not in use, allowing you to take appropriate actions such as decommissioning or reassigning them.
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Table 1
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot - Fig.5
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Fig.5

End Results

When running the query “Get Devices in Noncompliant State” with Intune Explorer and Security Copilot, the results displayed a list of devices that are currently marked as Noncompliant. The below screenshots and table helps you to show more details.

DeviceManagement AgentOwnershipCompliancePlatformLast seen date Time
LENOVO-HTMD-1MDMCompanyNoncompliantWindows06/15/2025, 06:01 AM
LAPTOP-9MP8HAVJMDMPersonalNoncompliantWindows08/24/2025, 04:25 PM
Snehasis’s MacBook AirMDMPersonalNoncompliantMacOS08/09/2025, 11:17 PM
HTMD_VIDYAMDMPersonalNoncompliantWindows08/29/2025, 10:21 AM
HTMD-VIDEOMDMPersonalNoncompliantMacOS08/29/2025, 06:21 PM
CPC-Vaish-17N4AMDMCompanyNoncompliantWindows08/29/2025, 04:21 PM
DESKTOP-399D291MDMCompanyNoncompliantWindows06/14/2025, 10:55 PM
DESKTOP-QAJ4HBCMDMCompanyNoncompliantWindows08/23/2025, 05:58 PM
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Table 2
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot - Fig.6
How to Get Devices in Noncompliant State with Intune Explorer and Security Copilot – Fig.6

Need Further Assistance or Have Technical Questions?

Join the LinkedIn Page and Telegram group to get the latest step-by-step guides and news updates. Join our Meetup Page to participate in User group meetings. Also, join the WhatsApp Community to get the latest news on Microsoft Technologies. We are there on Reddit as well.

Author

Anoop C Nair has been Microsoft MVP for 10 consecutive years from 2015 onwards. He is a Workplace Solution Architect with more than 22+ years of experience in Workplace technologies. He is a Blogger, Speaker, and Local User Group Community leader. His primary focus is on Device Management technologies like SCCM and Intune. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security, Career, etc.

Written by

Anoop C Nair is Workplace Technology solution architect with 25+ years of experience in global enterprise organizations such as JP Morgan, Capgemini, etc. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He also conducts Intune and modern workplace tech training for enterprise organizations. He is Blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security.

Discussion

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

Intune

Simplify Windows Devices to Run Only the Required Applications using Intune

Key Takeaways Hey, let’s learn about Simplify Windows Devices to Run Only the Required Applications using Intune. This policy lets administrators replace the default windows shell with a custom or lightweight shell. it improves performance by using system resources and is useful for devices that run a dedicated application. If the policy is disabled or […]

AC Anoop C Nair 8 min read
Intune

Enhance macOS Compliance with Custom Security and Compliance Checks to Improve Device Security using Microsoft Intune

Key Takeaways In this post we are discussing about Enhance macOS Compliance with Custom Security and Compliance Checks to Improve Device Security using Microsoft Intune. Microsoft has announced the general availability of Custom Compliance Settings for macOS in Microsoft Intune. The feature helps organizations strengthen security controls while supporting many types of macOS management scenarios. […]

AC Anoop C Nair 4 min read
Intune

Manage Samsung Galaxy Firmware Versions to Improve Security and Compliance using Microsoft Intune

Key Takeaways In this post we are discussing Manage Samsung Galaxy Firmware Versions to Improve Security and Compliance using Microsoft Intune. Microsoft Intune has received a new update that expands firmware management capabilities for Samsung Galaxy devices through Firmware Versionsintegration. This enhancement gives IT administrators more control over firmware and operating system updates, helping them […]

AC Anoop C Nair 4 min read
Intune

MS Intune Adds Windows Registry Data Collection to Device Inventory for Single Values All Key Values and Subkeys

Key Takeaways Microsoft Intune 2607 introduces Windows Registry Data collection in Device Inventory, allowing IT admins to verify actual device configurations without relying on custom discovery or remediation scripts. Using the Properties Catalog, admins can collect registry information through Single Value, All Values Under a Key (Non-Recursive), or Same Value Across Subkeys. MS Intune Adds […]

AC Anoop C Nair 5 min read