Microsoft Defender for Endpoint Logo
Microsoft Defender for Endpoint Logo
Microsoft Corporation

Microsoft Defender for Endpoint

8.3 /10
Category
Microsoft Defender for Endpoint
8.3 /10

What is Microsoft Defender for Endpoint?

Microsoft Defender for Endpoint is an enterprise endpoint security platform designed to help enterprise networks prevent, detect, investigate, and respond to advanced threats. Defender for Endpoint customers need to apply for the Microsoft Threat Experts managed threat hunting service to get proactive Targeted Attack Notifications and to collaborate with experts on demand. Experts on Demand is an add-on service. Targeted Attack Notifications are always included after you have been accepted into Microsoft Threat Experts managed threat hunting service.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

Awards & Recognition

Microsoft Defender for Endpoint won the following awards in the Endpoint Protection category

Microsoft Defender for Endpoint Ratings

Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard to access more information on Microsoft Defender for Endpoint.

87 Likeliness to Recommend

1
Since last award

95 Plan to Renew

1
Since last award

86 Satisfaction of Cost Relative to Value

1
Since last award


{y}
{name}

Emotional Footprint Overview

+82 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love Microsoft Defender for Endpoint?

6% Negative
7% Neutral
87% Positive

Pros

  • Respectful
  • Includes Product Enhancements
  • Enables Productivity
  • Reliable

Feature Ratings

Average 79

Endpoint Detection and Response

83

Dynamic Malware Detection

82

Port and Device Control

81

Centralized Management Portal

80

Application Containment Mechanisms

80

System Hardening

79

Cross Platform Integration

79

Kernel Monitoring

78

Cross Platform Support

78

Ransomware Recovery and Removal

78

Host NGFW Functionality

77

Vendor Capability Ratings

Average 81

Ease of IT Administration

92

Usability and Intuitiveness

87

Business Value Created

86

Ease of Customization

83

Quality of Features

83

Breadth of Features

81

Availability and Quality of Training

80

Product Strategy and Rate of Improvement

80

Ease of Data Integration

79

Ease of Implementation

79

Vendor Support

77

Microsoft Defender for Endpoint Reviews

Arjan S.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Development, Integration, and Administration
Validated Review
Verified Reviewer

Submitted Mar 2024

Multiplatform Premium EDR Solution

Likeliness to Recommend

8 /10

What differentiates Microsoft Defender for Endpoint from other similar products?

The integration with the Microsoft XDR platform is great and becomes better over time. Seamless integration with Sentinel and easy of quering with the KQL langiuage

What is your favorite aspect of this product?

KQL language

What do you dislike most about this product?

deploying EDR on server platform

What recommendations would you give to someone considering this product?

start with a small poc, check for performance and detection quality ... built it out in rings from there

Pros

  • Continually Improving Product
  • Inspires Innovation
  • Includes Product Enhancements
  • Security Protects

Cons

  • Vendor Friendly Policies
  • Less Generous

Wesley B.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Development, Integration, and Administration
Validated Review
Verified Reviewer

Submitted Mar 2024

Great integration and easy

Likeliness to Recommend

7 /10

What differentiates Microsoft Defender for Endpoint from other similar products?

The broad scope of what it can be applied to. Along with portals that link with the Microsoft suite.

What is your favorite aspect of this product?

Microsoft integrations!

What do you dislike most about this product?

Probably the bad reputation it has received over the years, Many people are reluctant or hesitant when they hear that we've switched to them.

What recommendations would you give to someone considering this product?

It's great, go for it if you're already a Microsoft house!

Pros

  • Reliable
  • Performance Enhancing
  • Includes Product Enhancements
  • Appreciates Incumbent Status

SMARANIKA H.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: Initial Implementation
Validated Review
Verified Reviewer

Submitted Feb 2024

Strong and comprehensive solution

Likeliness to Recommend

9 /10

What differentiates Microsoft Defender for Endpoint from other similar products?

Wide range of threat protection: Combines antivirus, anti-malware, endpoint detection and response (EDR), and vulnerability management capabilities to protect against various threats. Cloud-based delivery: Eliminates the need for on-premise infrastructure, simplifying deployment and management. Integration with Microsoft 365: Seamless integration with existing Microsoft 365 security tools for centralized management and enhanced threat detection. Machine learning: Leverages advanced machine learning and behavioral analysis to identify and block emerging threats.

What do you dislike most about this product?

Limited platform support: Primarily focuses on Windows devices, with limited native support for macOS and Linux. Potential for false positives: Advanced detection methods might occasionally generate false positives, requiring manual investigation. Customization limitations: While offering some configuration options, advanced users might desire more in-depth customization capabilities. Reporting complexity: Some users report challenges in generating detailed and customized reports. Vendor lock-in: Switching from Microsoft Defender to a different solution might be challenging due to its integration with other Microsoft 365 tools.

What recommendations would you give to someone considering this product?

Microsoft Defender for Endpoint is a strong and comprehensive solution for organizations primarily using Windows devices and invested in the Microsoft 365 ecosystem. Its cloud-based delivery, integration with other Microsoft security tools, and advanced threat detection capabilities make it a compelling option. However, consider the potential limitations for non-Windows platforms, false positives, and customization options before making a decision.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Reliable
  • Enables Productivity

Most Popular Microsoft Defender for Endpoint Comparisons

  • Malwarebytes Endpoint Detection and Response Logo

    Malwarebytes Endpoint Detection and Response

    Compare
  • Trellix Endpoint Security Logo

    Trellix Endpoint Security

    Compare
  • Symantec Endpoint Security Logo

    Symantec Endpoint Security

    Compare
  • Kaspersky Endpoint Security for Business Logo

    Kaspersky Endpoint Security for Business

    Compare
  • Avast Business Security Logo

    Avast Business Security

    Compare
  • Sophos Intercept X Endpoint Logo

    Sophos Intercept X Endpoint

    Compare