Skip to main content
TrustRadius
Microsoft Defender for Endpoint

Microsoft Defender for Endpoint
Formerly Microsoft Defender ATP

Overview

What is Microsoft Defender for Endpoint?

Microsoft Defender for Endpoint (formerly Microsoft Defender ATP) is a holistic, cloud delivered endpoint security solution that includes risk-based vulnerability management and assessment, attack surface reduction, behavioral based and cloud-powered next generation protection, endpoint detection and response (EDR), automatic investigation…

Read more
Recent Reviews

Secure workstations with MDE

8 out of 10
November 03, 2023
Microsoft Defender for Endpoint offers exceptional threat insight and protection. Its KQL powered Advanced Hunting provides deep analysis. …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 7 features
  • Malware Detection (52)
    8.5
    85%
  • Infection Remediation (51)
    8.2
    82%
  • Anti-Exploit Technology (50)
    8.0
    80%
  • Centralized Management (51)
    7.9
    79%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

Academic

$2.50

On Premise
per user/per month

Standalone

$5.20

On Premise
per user/per month

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Product Demos

Microsoft Defender for Endpoint Overview

YouTube
Return to navigation

Features

Endpoint Security

Endpoint security software protects enterprise connected devices from malware and cyber attacks.

8.2
Avg 8.4
Return to navigation

Product Details

What is Microsoft Defender for Endpoint?

Presented as an epicenter for comprehensive endpoint security, Microsoft Defender for Endpoint helps users rapidly stop attacks, scale security resources, and evolve defenses across operating systems and network devices.

Rapidly stops threats: Protects against sophisticated threats such as ransomware and nation-state attacks.

Scales security: Puts time back in the hands of defenders to prioritize risks and elevate the organization's security posture.

Evolves the organization's defenses: Goes beyond endpoint silos and mature the organization's security based on a foundation for extended detection and response (XDR) and Zero Trust.

Microsoft Defender for Endpoint Features

Endpoint Security Features

  • Supported: Anti-Exploit Technology
  • Supported: Endpoint Detection and Response (EDR)
  • Supported: Centralized Management
  • Supported: Infection Remediation
  • Supported: Vulnerability Management
  • Supported: Malware Detection

Microsoft Defender for Endpoint Screenshots

Screenshot of blocked activitiesScreenshot of Detects & respondsScreenshot of discovers vulnerabilityScreenshot of Eliminates blind spotsScreenshot of Risk management

Microsoft Defender for Endpoint Video

Microsoft Defender for Endpoint

Microsoft Defender for Endpoint Competitors

Microsoft Defender for Endpoint Technical Details

Deployment TypesOn-premise
Operating SystemsWindows
Mobile ApplicationNo

Frequently Asked Questions

Microsoft Defender for Endpoint (formerly Microsoft Defender ATP) is a holistic, cloud delivered endpoint security solution that includes risk-based vulnerability management and assessment, attack surface reduction, behavioral based and cloud-powered next generation protection, endpoint detection and response (EDR), automatic investigation and remediation, managed hunting services, rich APIs, and unified security management.

CrowdStrike Falcon, Symantec Endpoint Security, and Sophos Intercept X are common alternatives for Microsoft Defender for Endpoint.

Reviewers rate Endpoint Detection and Response (EDR) and Malware Detection highest, with a score of 8.5.

The most common users of Microsoft Defender for Endpoint are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(180)

Attribute Ratings

Reviews

(1-25 of 59)
Companies can't remove reviews or game the system. Here's why
Conrad Nyamache | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Tenable Security Center was a fantastic exposure detection tool but there was always a lag and servers would hang alot when being scanned causing resource traffic. Microsoft Defender for Endpoint on the other hand does not use up most resources soo there is usually noo lag during scanning and it also provide more detailed insights on the network. Also Microsoft Defender for Endpoint integration power has helped us up our security game by delivering a smooth secure network.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
Bitdefender was a great platform, but didn't provide as much network insight that Microsoft Defender for Endpoint does. It did not work well as an Endpoint Detection and Response platform. Tenable Security Center was great for vulnerability scanning of the devices on our network, but was a resource hog and the server would lock up a lot. It would also cause certain servers to lockup when they were being scanned. Microsoft Defender for Endpoint does not consume as many resources and does not lockup the devices when they are being scanned. It also provides a lot of useful insight into the devices on our network.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We have reviewed/used ESET and find Defender much better for Endpoints.
We have also used McAfee on Servers and have since migrated to Defender on Servers.

We have found Defender to work very well in most of our application purposes.
Yash Mudaliar | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
I found CrowdStrike to be confusing and complex when it comes to managing assets and incidents around endpoints. While it provides quality intelligence, it lacks a more admin-friendly way of presenting that information. Hence, as I have mentioned in the previous points as well, Microsoft Defender for Endpoint solves this problem by a big difference by giving a very intuitive and easy to access options which proves to be super useful especially when time is of essence.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
in an overall protection sentinelone is providing better protection for us, but as it comes with subscription's limitation, we have to be really careful in managing the licenses, the MS Defender for endpoint is providing us a decent protection which we are not complaining about, why we chose them ? as mentioned, this is coming with our subscription
Score 8 out of 10
Vetted Review
Verified User
Incentivized
I feel that Microsoft Defender for Endpoint is much better in protecting our Windows based devices as it is developed by Microsoft itself. However, it comes with a little price hike.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Trend Micro's Apex One offers a comprehensive endpoint security solution, including advanced threat protection and vulnerability management.
Martin Venter | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
  • Webroot Antivirus + Internet Security Complete (SecureAnywhere)
For me personally, I can not really compare the two against each other, as they are both really good. For us as a business specializing in MS products, it is a logical choice to have followed.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
It excels in detecting unusual behavior on endpoints, offering valuable insights into potential attack paths, and it operates with remarkable speed and responsiveness.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We choose Microsoft Defender for Endpoint as an additional solution to fill gaps and also to keep more of our solutions under one pane of glass (Microsoft 365).
Score 5 out of 10
Vetted Review
Verified User
Incentivized
Enterprise Endpoint Protection: Microsoft Defender for Endpoint is well suited for large organizations with numerous endpoints, such as desktops, laptops, and servers, as it provides centralized management and monitoring of security across the entire network. Microsoft Ecosystem Integration: Organizations heavily invested in the Microsoft ecosystem, using products like Microsoft 365 and Azure, will benefit from the seamless integration offered by Defender for Endpoint, allowing for more efficient threat detection and response.Threat Detection and Remediation: It is effective for organizations looking to improve their ability to detect and respond to advanced threats and security incidents, thanks to its advanced threat analytics and EDR capabilities.
Bhuwan Chandra | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
CrowdStrike Falcon EDR is one the Best solution available in Market ,However, I think they are lack in Threat visibility and Vulnerability assessment& Management for application versions & configurations .
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We have evaluated other products, such as Sophos, Trend Micro, and others. The advantage of Microsoft Defender for Endpoint is having a single subscription with Office 365 full packet, antivirus, and one drive with backup all in one subscription. Very easy to manage.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We found products with similar capabilities considering our needs. The opoortunity to test was crucial, and also the fact that Microsoft Defender for Endpoint is a Microsoft tool, since we are running a Microsoft environment for this project. There are a few differences among the providers, one of them was pricing, but overall they seemed to be very similar.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Microsoft Defender gels very well with the rest of the M365 suite of products. The security Dashboard gives one view for Email Security and Endpoint Security. The security events can be generated while getting integrated with SIEM solution or can use its own SIEM offering.
September 21, 2023

Easy and Reliable to Use

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We never went beyond pilot testing these other platforms when it comes to Avast and Bitdefender, but it was an easy decision to go with Microsoft Defender for Endpoint in regards to cost, ease of installation, configuration, and deployment, and usage on a daily basis. The interface of MDE is very intuitive and required a very small learning curve. Microsoft Advanced Threat Analytics, on the other hand, was discontinued.
September 21, 2023

Good basic security.

Score 7 out of 10
Vetted Review
Verified User
Incentivized
This product does do a very good job of providing basic security protection for our client endpoints. We decided to go with this product because of the ease of setup and integration into the Windows server environment. We have not had any complaints from any of our clients using this product.
Rahul Deshmukh | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Microsoft Defender for Endpoint is east to deploy, hence safed lot of efforts in implementation and management. When I evaluated CrowdStrike I found that not all threats are identified in it, which was a matter of concern for us. We also had issues with configuration and troubleshooting. In Trend Micro we could find many threats but ease of configuration is better in Microsoft Defender for Endpoint.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
We have used McAfee/Trellix solution before Microsoft Defender for Endpoints with similar experience. There were organization reasons to switch from Trellix to another solution, and Microsoft Defender for Endpoints was a good choice in our case.
Return to navigation