EDIT: By design Apple chose not to allow an MDM profile the ability to
be secured (locked out from being deleted). If you deploy a secure
profile with MDM settings in it, the iOS device will actively refuse it.
Bummer... We are curious about this too...