This issue occurred over the past few days when a new member of Staff joined with a Samsung Mobile running Android 12. For reference, we are using Basic Mobility and Security for Microsoft 365. I performed the steps suggested previously by Intune_Support_Team however, this made no difference. By coincidence however, I later created a new Security Group for users allowed to access resources by mobile devices and added this to MDM Security Policy. However, all of a sudden the troublesome Samsung device was now marked as Compliant. The user in question was not affected by the changes to the Security Groups, we just wanted to get one person out of a Mail-enabled Security Group and created a whole new Security Group for that one person.
Not really sure why this fixed the issue but thought I'd pass this on.