Microsoft Defender for Endpoint. All around XDR product.
July 14, 2025
Microsoft Defender for Endpoint. All around XDR product.

Score 10 out of 10
Vetted Review
Verified User
Overall Satisfaction with Microsoft Defender for Endpoint
We are an MSP and have Microsoft Defender for Endpoint P2 deployed at various sites. Aside from the actual AV/XDR platform, the biggest problem it solves is management and monitoring. The ability to view a network holistically has become invaluable and has helped greatly with the ability to secure our managed sites.
Pros
- AV protection is excellent without bogging down the system
- Management and Alerting is clear and concise.
- Ability to map out an investigation and determine scope of any issues is key.
Cons
- Would like to see a better automatic integration with Intune. While it does connect the device to the console it doesn't provide the full experience.
- As it becomes more feature complete, should be moved from the security panel in 365 to a more purpose built XDR panel.
- further granularity of emailed alerts would be welcome.
- further customization of emailed alerts would also be welcome.
- Is less expensive than other comparable products while keeping most of the functionality.
- Licensing being tied to users has greatly simplified licence management as device count becomes (almost) irrelevant.
- Integration with the 365 suite (Intune, EntraID, Defender for Cloud, etc) has made management of devices more streamlined due to single console for all.
- Integration with Other Systems
- Ease of Use
Primarily was based on strength of XDR product combined with ease of managing licensing.
AV/XDR running on desktop/laptops/servers. Management of vulnerabilities and updates through consoles. 24x7 alerting via MS email alerting.
We have approximately 200 seats of Microsoft Defender for Endpoint spread out across 10 different sites. 90% would be Windows desktops with the remaining 10% split between MacOS devices and Windows Server 2019/2025 (running Defender for Server licensing).
Crowdstrike is the more feature complete product but licensing model and cost does not work well with the small business model. ESET PROTECT is considerably more complicated from a licensing perspective but once operational is a fine product.
Do you think Microsoft Defender for Endpoint delivers good value for the price?
Yes
Are you happy with Microsoft Defender for Endpoint's feature set?
Yes
Did Microsoft Defender for Endpoint live up to sales and marketing promises?
Yes
Did implementation of Microsoft Defender for Endpoint go as expected?
Yes
Would you buy Microsoft Defender for Endpoint again?
Yes

Comments
Please log in to join the conversation