Implementing application protection policies
You cannot use BitLocker to configure and manage non-Windows device encryption. Instead, you need to use application protection policies. This approach comprises rules that ensure data safety within a managed app. This is done through the configuration of Mobile Application Management (MAM) policies in Microsoft Intune.
App protection policies may be configured for apps running on devices that are enrolled either in Microsoft Intune or in a third-party MDM solution. These devices are typically corporate-owned but personal devices can also be enrolled.
To create an app protection policy, go to the Intune admin center, browse to Apps | App Protection policies, and choose Create policy. The options available are shown in the following screenshot:
Figure 7.28: Policy creation options
As there are many different ways you can configure app protection policies, and three OS platforms you can choose from...