Hello Ian,
With the device actively syncing to SandBlast Mobile Dashboard, open the device details by clicking on the device id.
Go to the severity pulldown menu and select all. Are there any warnings in that area? If so, are they sufficient to company policy to be flagged? If not, then go back into MS Intune Portal and navigate to Device compliance > Policies and select the policy that you want to edit. Under Properties > Settings, select the appropriate MTD level. They are: Secured, Low, Medium, and High.
The definitions are as follows:
Secured: This is the most secure. The device cannot have any threats present and still access company resources. If any threats are found, the device is evaluated as non-compliant.
Low: The device is compliant if only low level threats are present. Anything higher puts the device in a non-compliant status.
Medium: The device is compliant if the threats found on the device are low or medium level. If high level threats are detected, the device is determined as non-compliant.
High: This is the least secure. This allows all threat levels, and uses Mobile Threat Defense for reporting purposes only. Devices are required to have the MTD app activated with this setting.
Select the setting that is most appropriate, I would suggest trying Low.
Best Regards!
Pam