Extended Checks for Screen Lock and Antivirus
Overview
Sprinto’s enhanced integration with Microsoft Intune now supports automated monitoring of two additional compliance checks:
Screen lock — Verifies that devices automatically lock after a defined period of inactivity.
Antivirus — Detects the presence of antivirus protection on Windows devices.
This improvement enables real-time compliance tracking and eliminates the need for manual evidence submissions.
This article explains how to configure your Microsoft Intune account to enable these new checks and how to re-integrate Intune with Sprinto to ensure these changes take effect.
Prerequisites
Before enabling extended checks, ensure that:
You have admin access to your Microsoft Intune account.
You can create or edit compliance policies for both Windows and macOS devices.
You can update your Sprinto–Intune integration connection.
Step 1 – Configure Antivirus Requirement in Intune (Windows Devices Only)
Sprinto detects antivirus compliance using the System security settings in your Intune compliance policies.
You can configure antivirus checks in either of the following ways:
Encryption → Antivirus field — Set to Require.
Defender — Set the Defender field to Require.
Ensure that one or both settings are enabled in the compliance policy for your Windows devices.
Step 2 – Configure Screen Lock Requirement in Intune
Sprinto checks for screen lock compliance by reading the Maximum minutes of inactivity before password is required setting in your Intune compliance policy.
To modify an existing compliance policy:
For Windows:
In Intune, go to Devices → Compliance.
Select your Windows compliance policy.
Go to Properties → Compliance settings → Edit.
Under System security, locate Password settings.
Set Maximum minutes of inactivity before password is required to 15 minutes or less.
Save the changes.
For macOS:
Repeat the same steps as above for your Mac compliance policy.
To create a new compliance policy:
In Intune, go to Devices → Compliance.
Select Create policy.
Choose the platform (Windows or macOS) and select Create.
Under System security → Password, set Maximum minutes of inactivity before password is required to 15 minutes or less.
Save the policy.
Step 3 – Re-integrate Microsoft Intune with Sprinto
After updating your Intune compliance policies:
In Sprinto, go to Settings → Integrations → Active Integrations.
Search for Microsoft Intune and select it.
Click Manage → Update Connection.
Ensure you connect to the same account as before. Sprinto will update the existing connection details automatically.
How Sprinto Tracks Antivirus
Sprinto verifies antivirus protection on Windows devices by reading compliance status from the settings configured in your Intune compliance policies. If the policy requires antivirus and a device meets the requirement, the check will pass.
Next Steps
Once your configuration is complete:
New Screen Lock and Antivirus monitors will appear in your Staff Devices section in Sprinto.
Any non-compliant devices will be flagged automatically.
Remediation tasks will be created where applicable.
Compliance status will update in real time based on Intune’s device reports.