Skip to main content
TrustRadius
Microsoft Defender for Endpoint

Microsoft Defender for Endpoint
Formerly Microsoft Defender ATP

Overview

What is Microsoft Defender for Endpoint?

Microsoft Defender for Endpoint (formerly Microsoft Defender ATP) is a holistic, cloud delivered endpoint security solution that includes risk-based vulnerability management and assessment, attack surface reduction, behavioral based and cloud-powered next generation protection, endpoint detection and response (EDR), automatic investigation…

Read more
Recent Reviews
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 7 features
  • Malware Detection (54)
    8.5
    85%
  • Endpoint Detection and Response (EDR) (54)
    8.5
    85%
  • Infection Remediation (53)
    8.2
    82%
  • Centralized Management (54)
    7.9
    79%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

Academic

$2.50

On Premise
per user/per month

Standalone

$5.20

On Premise
per user/per month

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Product Demos

Microsoft Defender for Endpoint Overview

YouTube
Return to navigation

Features

Endpoint Security

Endpoint security software protects enterprise connected devices from malware and cyber attacks.

8.2
Avg 8.4
Return to navigation

Product Details

What is Microsoft Defender for Endpoint?

Presented as an epicenter for comprehensive endpoint security, Microsoft Defender for Endpoint helps users rapidly stop attacks, scale security resources, and evolve defenses across operating systems and network devices.

Rapidly stops threats: Protects against sophisticated threats such as ransomware and nation-state attacks.

Scales security: Puts time back in the hands of defenders to prioritize risks and elevate the organization's security posture.

Evolves the organization's defenses: Goes beyond endpoint silos and mature the organization's security based on a foundation for extended detection and response (XDR) and Zero Trust.

Microsoft Defender for Endpoint Features

Endpoint Security Features

  • Supported: Anti-Exploit Technology
  • Supported: Endpoint Detection and Response (EDR)
  • Supported: Centralized Management
  • Supported: Infection Remediation
  • Supported: Vulnerability Management
  • Supported: Malware Detection

Microsoft Defender for Endpoint Screenshots

Screenshot of blocked activitiesScreenshot of Detects & respondsScreenshot of discovers vulnerabilityScreenshot of Eliminates blind spotsScreenshot of Risk management

Microsoft Defender for Endpoint Video

Microsoft Defender for Endpoint

Microsoft Defender for Endpoint Competitors

Microsoft Defender for Endpoint Technical Details

Deployment TypesOn-premise
Operating SystemsWindows
Mobile ApplicationNo

Frequently Asked Questions

Microsoft Defender for Endpoint (formerly Microsoft Defender ATP) is a holistic, cloud delivered endpoint security solution that includes risk-based vulnerability management and assessment, attack surface reduction, behavioral based and cloud-powered next generation protection, endpoint detection and response (EDR), automatic investigation and remediation, managed hunting services, rich APIs, and unified security management.

CrowdStrike Falcon, Symantec Endpoint Security, and Sophos Intercept X are common alternatives for Microsoft Defender for Endpoint.

Reviewers rate Endpoint Detection and Response (EDR) and Malware Detection highest, with a score of 8.5.

The most common users of Microsoft Defender for Endpoint are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(193)

Attribute Ratings

Reviews

(1-25 of 78)
Companies can't remove reviews or game the system. Here's why
Bhuwan Chandra | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Integration with Other Systems
  • Ease of Use
Microsoft Defender for Endpoint provide IT hygiene , Gives visibility into enabled products on endpoints & also provide strong remote remediation .

Microsoft Defender for Endpoint assist the customer in Full endpoint event collection & collects log for further analysis for ATP & Sandbox. According Gartner magic Quadrant for EPP Microsoft Defender for Endpoint score high in ability to execute & forward learning organizations.
Marko Simonovic | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
It was influenced by several aspects, first of all, we needed a product capable of integrating easily with our Microsoft 365 environment, The comprehensive threat detection and response capabilities were important for enhancing our cybersecurity.
We also have been using the reporting capabilities and analytics features integrated that offered better visibility in our security team interface. We have been also trusting Microsoft products and it does not disappoint us at all. This amazing product has been helpful overall.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
My decision to get Microsoft Defender for Endpoint was influenced by performance impact to other processes and applications. Also that cost and RIO benefits from using Microsoft Defender for Endpoint and utilizing other functionalities that are available with Defender. For example, vulnerability detection is available and DLP for data loss prevention.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
Our IT environment is basically based on Microsoft products. Hence, it was beneficial to use Microsoft Defender for Endpoint as the product for endpoint protection. It can easily get integrated with Microsoft Intune which was a big plus for us. Furthermore, being cloud based helped us in covering the remote devices also.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
  • Ease of Use
Being a majority Microsoft Services shop currently, the integration and ease of information access via the entire Microsoft Defender for Endpoint family to manage and maintain through a single portal - security.microsoft.com, including Defender for Exchange, O365/Cloud, Servers, Identity and the rest of the family allowed our Security team to decrease response time, and increase the number of managed responses.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
  • Ease of Use
I think that it is easy to use and manage and supports a wide variety of devices. We also wanted something that was cloud based so we did not have to have the database on our physical machines and could manage it from anywhere. Its also very easy to upgrade or uninstall if needed.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
The biggest factors for us revolved around the need to have a product that was compatible with both windows and mac endpoints. In addition, we wanted a tool that provided more than just traditional AV scanning and gave us more vulnerability reporting as well as security recommendations. Finally, we wanted it to be cloud based as well.
Score 8 out of 10
Vetted Review
ResellerIncentivized
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
  • Ease of Use
Device Threat Analysis and Score: Microsoft Defender antivirus software collects underlying system data used for threat analysis and the device's Microsoft Security Score. This will provide your organization's security team with more meaningful information, such as recommendations and opportunities to improve your organization's security posture.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • Other
I wasn't one of the decision makers were the purchase overall that goes through our CIO organization. But as a user though, I would say it was a good decision. Trying to think how to word that in a sense. Well, from a decision not involved in the purchase process, I would say I didn't have a decision to use it, but I'm glad that they made the decision that we can use it.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
  • Ease of Use
In this case, it was ease of deployment. Now, we don't buy it per se. We actually manage it for customers. Since most Microsoft subscriptions are bought by the customers themselves, we manage them, but we don't buy them and then resell them. We don't work like that.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • Other
The fact that it's basically included with our licenses. We have it already and it was seamless to install. It didn't impact us. The fact that it worked in all the operating systems. It was easy to install within Intune and deploy it. It's all positive.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
  • Other
Because Microsoft Defender for Cloud, the good thing they have is that they work with compliance. You have N, you have sis, you have compliance, I don't know the word in English, but like compliance format. So I can see myself if I can't, I dunno how to say it, but you have nist SI or other PCI and I can see myself if I can get those compliance in N score, you guys have a score for those compliance. That's really helpful for us for those.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • Other
Good reputation and functionality? I wouldn't have bought it five years ago, but it's been improved a lot. I want to make sure if it's got a high detection rate, it is easy enough to manage as distributor so we can distribute it out to distributed management. Well-based source, it does all those.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Other
The most important factor was getting the complete suite of Microsoft products available in the A five licensing. And the most important factor was just our money went a lot further. One thing I guess I'm not sure it's in this question, but that I am a little unhappy with is now we're finding there are add-ons that are not part of it, especially as Microsoft moves into artificial intelligence, it's like, nope, that's not included.
Conrad Nyamache | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
  • Ease of Use
  • Other
It's ease of implementation especially in the initial setting up process and the awesome customer support we got from the technical team really made it stand out from others.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
  • Cloud Solutions
  • Scalability
  • Integration with Other Systems
Before we chose to move forward with Microsoft Defender for Endpoint, we had three different platforms that were performing the tasks of vulnerability scanning, antivirus/antimalware and SIEM. Now, with Microsoft Defender for Endpoint, we've been able to integrate these into one platform and seamlessly integrate with other Microsoft security applications for even greater insight.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
  • Integration with Other Systems
Our biggest influence was selecting a product that works well with our current product portfolio and the ease of implementation. It has also been fairly easy to manage after getting past some of the initial setup tasks. Overall, this has been a lot easier to setup and use than any other endpoint protection software.
Return to navigation