Overall a good product if a bit confusing at times.
Use Cases and Deployment Scope
very large encompassing product with a lot of configurations and controls. Easy to get lost in the licensing though for features you want to use. I use this for general systems management and the defender for endpoint suite. With the toolsets you have access to in depth reporting and some analysis is available within a few minutes of the incident and can start generating automated actions.
Pros
- Endpoint Logging
- Integrated alerts
- Machine lock downs
Cons
- License clarity
- Alert tuning
- Slow console actions without notification of complete.
Return on Investment
- Low overhead for setup and machine configurations
- Automated alerting with backed in knowledge base.
- Easy update cycles
- Updates can cause negative results and are hard to track


