Information
This policy setting prevent users from making changes to the Exploit protection settings area in the Windows Security settings.
The recommended state for this setting is: (Enable)
Only authorized IT staff should be able to make changes to the exploit protection settings in order to ensure the organizations specific configuration is not modified.
Solution
To establish the recommended configuration via configuration profiles, set the following Settings Catalog path to (Enable)
Windows Defender Security Center\Disallow Exploit Protection Override
Impact:
Local users cannot make changes in the Exploit protection settings area.