2026 Best Software Awards are here!See the list

Microsoft Defender for Endpoint Reviews & Product Details

Profile Status

This profile is currently managed by Microsoft Defender for Endpoint but has limited features.

Are you part of the Microsoft Defender for Endpoint team? Upgrade your plan to enhance your branding and engage with visitors to your profile!

Value at a Glance

Averages based on real user reviews.

Time to Implement

3 months

Return on Investment

16 months

Microsoft Defender for Endpoint Integrations

(6)
Integration information sourced from real user reviews.

Microsoft Defender for Endpoint Media

Microsoft Defender for Endpoint Demo - Protection history
View the latest protection actions and recommendations from Windows Security
Microsoft Defender for Endpoint Demo - Possible lateral movement
Multi- stage incident involving Execution & Collection on multiple endpoints reported by multiple sources.
Microsoft Defender for Endpoint Demo - Microsoft Defender Vulnerability Management Dashboard
Microsoft Defender Vulnerability Management Dashboard
Microsoft Defender for Endpoint Demo - Secure Mobile
Secure Mobile
Microsoft Defender for Endpoint Demo - Device configuration management
Device configuration management
Microsoft Defender for Endpoint Demo - Device Inventory
Device Inventory
Product Avatar Image

Have you used Microsoft Defender for Endpoint before?

Answer a few questions to help the Microsoft Defender for Endpoint community

Microsoft Defender for Endpoint Reviews (307)

View 3 Video Reviews
Reviews

Microsoft Defender for Endpoint Reviews (307)

View 3 Video Reviews
4.4
307 reviews

Review Summary

Generated using AI from real user reviews
Users consistently praise the ease of use and robust protection offered by Microsoft Defender for Endpoint, highlighting its seamless integration with the Microsoft ecosystem. Many appreciate its real-time threat detection and comprehensive security features, which help organizations effectively manage vulnerabilities. However, some users note that the setup can be complex, particularly for those unfamiliar with the Microsoft environment.

Pros & Cons

Generated from real user reviews
View All Pros and Cons
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
Verified User in Financial Services
AF
Mid-Market (51-1000 emp.)
"Room to Improve"
What do you like best about Microsoft Defender for Endpoint?

What I like best about Microsoft Defender for Endpoint is its strong integration with the Microsoft ecosystem and its visibility. It provides actionable insights through real-time threat detection, advanced investigation, and automated response capabilities. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

In more complex environments, advanced configuration and troubleshooting is less intuitive and certain features require navigating multiple portals or having deep Microsoft expertise to use effectively. The real issue is knowing where to go to create a policy. Between Entra, Intune, Defender, and Perview, I have a hard time knowing where to go or how to keep track of my policies. Most significantly though, I've seen way to many tests/comparisons on how Defender performs on Zero Day or viruses and I'm not sure if they are bias or not but Microsoft does not fair well in blocking these attacks. Review collected by and hosted on G2.com.

Muhammad A.
MA
Sr. System Administrator
Non-Profit Organization Management
Mid-Market (51-1000 emp.)
"Deep Microsoft 365/Azure Integration with In-Depth Telemetry and Automated Response"
What do you like best about Microsoft Defender for Endpoint?

We like that Microsoft Defender for Endpoint is tightly integrated with Microsoft 365, Azure, and Defender XDR. For organizations already running a suite of Microsoft cloud products, it delivers in-depth telemetry, supports automated response, and enables a more unified investigation experience across the environment. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

Detection quality on macOS and Linux is improving, but it still lags behind Windows. Also, some of the more advanced response capabilities require E5 licensing, which can be a limitation depending on your setup. Review collected by and hosted on G2.com.

Naresh C.
NC
Sr Network Administrator
"Unified Protection, Limited Integration"
What do you like best about Microsoft Defender for Endpoint?

I appreciate the deep integration of Microsoft Defender for Endpoint with the Microsoft ecosystem. This integration enhances its automated response capabilities, which is invaluable in providing a comprehensive defense strategy. The solution effectively correlates signals across various services such as endpoints, identities, cloud applications, and email. This unified signal sharing system ensures prompt detection and action, such as instantly connecting the dots when a phishing email detected in Outlook is associated with lateral movement attempts on an endpoint. Moreover, the initial setup of Microsoft Defender for Endpoint was smooth and posed no specific challenges, which makes the onboarding process efficient and hassle-free. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

I find challenges with third-party integration on non-Microsoft platforms. Additionally, the licensing complexity and limitations in centralized management are areas that I believe need improvement. Review collected by and hosted on G2.com.

AN
Software Engineer
Information Technology and Services
Enterprise (> 1000 emp.)
"Effortless Management and Robust Threat Protection"
What do you like best about Microsoft Defender for Endpoint?

It's easy to manage across our organization, it offers strong protection against malware and cyber threats with advanced threat detection. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

The setup and configuration can be complex, especially for new users. Otherwise it's all good. Review collected by and hosted on G2.com.

Waqas F.
WF
Sales Specialist - Microsoft D365/Business Central
Information Technology and Services
Mid-Market (51-1000 emp.)
"Microsoft Defender - Most preferred for Endpoint users"
What do you like best about Microsoft Defender for Endpoint?

It comes built-in with your Microsoft Windows OS so no need for additional program installation. Not only that, is has also become one of the most preferred endpoint for the users as it detects the threats very quickly. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

Too many notifications which makes it dislikable and also if you are using any linux based system you will not able to configure it with full support. Review collected by and hosted on G2.com.

Verified User in Manufacturing
AM
Enterprise (> 1000 emp.)
"Endpoint security solution that includes EDR, ASR, Email Security and more"
What do you like best about Microsoft Defender for Endpoint?

We use Microsoft Defender for Endpoint on a very large deployment and most of the endpoints were previously running Cortex XDR. Defender provides high level of protections against cyber treats. Our GSOC team investigates incidents and deploys security policies via the Microsoft Defender portal. We were able to detect and stop cyber attacks in the very early stages and this helps us keep the environment clean. So far we haven't had any major incidents. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

It takes a lot of training and constant learning, managing the security policies for all protection modules is a complex process. There is no Linux support at this time. Review collected by and hosted on G2.com.

SG
Engineer - System & Security
Mid-Market (51-1000 emp.)
"High Accurate Security Solution with Zero Hour Prevention"
What do you like best about Microsoft Defender for Endpoint?

Microsoft provides security for endpoints , Office 365 apps , Servers etc. Their providing zero hour prevention to all of the endpoint which are configured with Microsoft endpoint security. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

the deployment process is very complex when configuring security for IOS device. Review collected by and hosted on G2.com.

Akshat V.
AV
Information Security Analyst
Mid-Market (51-1000 emp.)
"Comprehensive Enterpirse Security Solution"
What do you like best about Microsoft Defender for Endpoint?

It provides endpoint protection against cyber threats. It has a combination of machine learning , behavioural analytics and the best part which I personally like is that it has cloud-based security intelligence to detect and response to the threats in real-time. It is seamlessly works with Windows, Mac.

The best thing about the EDR is that it can analyze the behavior patterns and trriger alerts when unusual or malicious activities are detected. Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

There are two, three things I want to mention about the EDR which I personally felt to mention is that it's complex liscensing model it can be confusing to the new user and for thr intermidiate as well , defender for endpoint is included in different packages and organizations may need help understanding which features are included in which package.

And the last thing I want to mention is intensive resource utilization on certain devices , perticularly on the older devices the software can be resource-intensive which may cause trouble in performance degradation, mainly during scans. Review collected by and hosted on G2.com.

Verified User in Computer & Network Security
UC
Enterprise (> 1000 emp.)
"Industry leading endpoint protection capabilities"
What do you like best about Microsoft Defender for Endpoint?

The integration into the MS Defender ecosystem and the ease of use of the Defender portal Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

Incidents are often lackluster with details. Additional context pulled into the incidents would be nice Review collected by and hosted on G2.com.

GI
Senior Security Consultant
Computer & Network Security
Mid-Market (51-1000 emp.)
"Protect our computer againts Malware"
What do you like best about Microsoft Defender for Endpoint?

We like of Microsoft Defender for Endopint, system license that permit have 2 choise and the price that is competitive in the market, console cloud is another plus and multiple support different operating system. Defender is easy to use and easy to implement and with api is very easy to integrate with SIEM Review collected by and hosted on G2.com.

What do you dislike about Microsoft Defender for Endpoint?

Support is not the best and take a long time to respond to service request Review collected by and hosted on G2.com.

Pricing Insights

Averages based on real user reviews.

Time to Implement

3 months

Return on Investment

16 months

Average Discount

13%

Microsoft Defender for Endpoint Comparisons
Product Avatar Image
Sophos Endpoint
Compare Now
Product Avatar Image
SentinelOne Singularity Endpoint
Compare Now
Product Avatar Image
Tenable Vulnerability Management
Compare Now
Microsoft Defender for Endpoint Features
Compliance
Web Control
Application Control
System Isolation
Firewall
Endpoint Intelligence
Automated Remediation
Incident Reports
Behavioral Analysis
AI Text Generation
AI Text Summarization
Product Avatar Image
Microsoft Defender for Endpoint