TrustRadius Insights for Microsoft Defender for Endpoint are summaries of user sentiment data from TrustRadius reviews and, when necessary, third party data sources.
Pros
Centralized Reporting: Users have consistently praised the product's centralized reporting feature as the best they have encountered, making it easy to develop punch lists, prioritize tasks, and efficiently tackle issues.
Endpoint Activity Detection: Reviewers find the product's capability in detecting endpoint activities excellent, especially in tracking user actions and identifying malicious programs that interact with email accounts.
Anomaly Detection and File Sensitivity: The anomaly detection and sensitivity to files being sent outside the company are highly valued by users for providing valuable intelligence. Smooth Operations: Users appreciate the product for being simple to install, responsive, and non-intrusive to end-user experience, ensuring smooth operations.
It's endpoint protection tool looks after us from virus protection and malware, etcetera. And that's pretty much it really.
Pros
It doesn't slow down your machine when it's working. That's sort of the main thing that it does really well.
Cons
I'd like to see it extract threat intel from more than one source.
Likelihood to Recommend
Likely to email where you might be downloading a product and then you're getting some sort of scan happen or you don't want to get any malware onto your laptop. I don't know where it's less appropriate. I think it's appropriate everywhere. You got to have some sort of protection.
Our use to protect our end users device to avoid attack, avoiding ware, avoid virals and other kind of malwares. So help us to reduce the risk, the cyber risk, bringing by our end users.
Pros
The products can protect and avoid attackers to gain access to the machines, virus that compromise end user's assets. And the products also give us some alerts and reports that we make sure that our environment is safe.
Cons
I think the integration with other products that give us visibility for all the environment is one of them. For instance, how can I connect the hazards, the property with a cyber risk management tool to help us to manage the other risks, the cyber risks in a globally view.
Likelihood to Recommend
It's well suited for all the machines that's running Windows and the Mac, the Apple OS, the Mac OS, and it's not run very well in Linux environment.
VU
Verified User
Manager in Information Technology (10,001+ employees)
We use this product for an endpoint security just to protect the endpoints and the servers.
Pros
Protects users, behaviors, protects for threats on points.
Cons
Just in terms of management, that needs to be improved because it's all over. The configuration is separate from Intune which is in some different portal, so just have it in a single place.
Likelihood to Recommend
Always because it integrates with the Microsoft ecosystem. It's really good. I would say just the management side, there's multiple parts to manage it to the solution.
VU
Verified User
Administrative Assistant in Information Technology (201-500 employees)
Usually we are deploying Defender for Endpoint as an endpoint XDR tool. We're replacing an existing tool, so that is going to be a deployment in passive mode first, which is easy. Then we uninstall the legacy tool and we move this one to active mode and it takes over as your XDR. The reasons we're doing that is cost. Sometimes it is just better protection.
Pros
I would say it detects threats very well on the endpoints. Quarantine threats communicates with other instances of the endpoint agent across your organization, so you can more quickly quarantine threats that are perhaps spreading through your agents.
Cons
I would say moving it from passive to active mode. In some cases, depending on the tool that's there can be challenging because sometimes the legacy tool does not want to go into a passive mode, so you have to uninstall it and that can cause issues depending on the size of the organization and whether their apps are there.
Likelihood to Recommend
I would say organizations that are primarily Windows based, definitely very appropriate where they're moving from a legacy antivirus solution or older XDR tool to a more modern one, definitely well suited. Where it's more challenging is where you've got a mixed environment of let's say a lot of Mac users, a lot of Linux users, and although those platforms are supported by Defender for Endpoint, it's harder to deploy. Depending on the quantity of Mac in a client environment for example, sometimes it's a lot more challenging to deploy than if you have like 10,000 Windows PCs and 100 Mac, that's easy, but if you have 5,000 Macs, it's a lot harder.
VU
Verified User
Director in Information Technology (10,001+ employees)
We use it for endpoint detection, investigations, business problems, or just to have visibility into the endpoint.
Pros
I'd say the alerts are good for custom detections. We have lots of custom detections that we've created and based on purple team activities, that's probably the best thing that I've seen it being used for.
Cons
I think the level one tickets or anything low could maybe through some kind of AI agent, which I'm interested in if Microsoft is going to do that in the future, just to take some of that workload off our plate.
Likelihood to Recommend
I guess just for detections.
VU
Verified User
Employee in Information Technology (1001-5000 employees)
We're using it for endpoint protection. We have 120 endpoints companies, so we install it for protection and to protect our data and to track some suspicious activity from our employees.
Pros
Ukraine has a lot of cyber attacks right now, so it's good to have some protection and we're using it every day to monitor. Actually it blocks pretty well, some suspicious activities.
Cons
It's hard to answer because I'm not a direct user of these products.
Likelihood to Recommend
It works in our company and it's protecting somehow.
Microsoft Defender for Endpoint ensures the security against endpoints across all the systems by protecting from the ransomware and malware attacks. It has AI capable detect and block the threats quickly. It implement network protection and folder access across the organisation. It automatically trigger the alert to the IT teams. It supports remote systems as well.
Pros
Minimize the application downtime.
Unified management by integrating with Microsoft sentinel.
Automated investigation and response.
Cons
Little bit difficult to integrate in old systems.
Sometimes face latency.
Licensing and cost needs to be reduced.
Likelihood to Recommend
Unified security across the premises. It has cloud native protection with zero trust policies. It supports all security compliance. Beast for Microsoft ecosystem
It is providing a way to secure our device across multiple platforms like windows Linux and iot devices it scan all the files and protect against the harmful and suspicious virus it automatically monitor and analyse the files and protect our system it acts as a antivirus to the system which increases the platform efficiency.
Pros
Protect devices from the virues
Support multi platform
Monitor and analyse end point activity
Cons
Well suited for antivirus
Easy to use
Provide fast response against the threads
Likelihood to Recommend
It is a well and advance tool for protecting our device from the virues and also helps to investigate the threads which helps us to fixing the problem as soon as possible without getting crash also it provides immediate response and alerts to the user if anything found in the system along with that they support multiple platforms which is very good part of this software
VU
Verified User
Project Manager in Information Technology (201-500 employees)