No more typing reviews! Try our Samantha, our new voice AI agent.
Microsoft Defender for Endpoint Logo

Microsoft Defender for Endpoint pros and cons

Vendor: Microsoft
4.1 out of 5
Badge Ranked 1

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Microsoft Defender for Endpoint is integrated with Microsoft Windows, offering seamless protection without requiring additional installations.
The integration capabilities with Microsoft products enhance threat detection and vulnerability management.
It consistently updates with new virus definitions, maintaining high levels of security.
Its built-in advanced analytics and threat intelligence features provide comprehensive threat protection.
Automated responses and proactive measures enhance organizational security efficiency.

CONS

Microsoft Defender for Endpoint has issues with customer service, which is described as difficult and ineffective.
The update process is slow, with necessary updates not exiting preview in a timely manner, hindering development.
There are problems with memory management during scanning, potentially causing device freezes.
The software lacks behavior analytics and behavior-based protection for devices and endpoints.
Integrating with third-party tools and providing adequate reporting and troubleshooting information remain challenges.
 

Microsoft Defender for Endpoint Pros review quotes

Robert Arbuckle - PeerSpot reviewer
Security Analyst III at a healthcare company with 10,001+ employees
Nov 19, 2025
I find the entire Microsoft Defender for Endpoint valuable because it finds not just definition-based threats but also behaviors.
JT
Solutions Architect at Marco
Nov 19, 2025
The main thing I like about Microsoft Defender for Endpoint is that you can integrate it with or deploy it with Intune, so it's really easy to deploy without needing to bring in any third-party solution.
UsmanFarooqi - PeerSpot reviewer
Assistant Director, Hybrid Infrastructure & Operations at a insurance company with 501-1,000 employees
Nov 18, 2025
Microsoft Defender for Endpoint has helped free up our SOC team to work on other projects or tasks.
Learn what your peers think about Microsoft Defender for Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,244 professionals have used our research since 2012.
MM
Security Architect at a insurance company with 5,001-10,000 employees
Mar 25, 2026
Microsoft Defender for Endpoint has helped free up my SOC team to work on other projects or tasks because it has automated some things and allowed them to use that time to focus on other areas.
Riccardo Benetazzo Pagnin - PeerSpot reviewer
Cybersecurity Operation Manager at Arsenalia
Nov 18, 2025
Integration is my favorite feature because it is easy to have all insights and all alerts in one platform.
SC
Principal Consultant - Cloud Security at a outsourcing company with 201-500 employees
Nov 18, 2025
The attack surface reduction capabilities stand out as the feature I appreciate most, particularly the manner in which they can be customized to organizational functions, such as having separate policy elements and provisions for finance versus IT versus standard end users.
reviewer2778771 - PeerSpot reviewer
Director, Network & Cloud Infrastructure at a legal firm with 501-1,000 employees
Nov 20, 2025
Microsoft Defender for Endpoint has been leading the field in EDR, and there are so many benefits to how that is managed versus the traditional products; that's huge.
Christopher Hippensteel - PeerSpot reviewer
Director, Information Technology at New Resources Consulting
Nov 18, 2025
The features of Microsoft Defender for Endpoint that I like the most are that it is not a very intrusive product, so it is not using up a lot of compute.
reviewer2811318 - PeerSpot reviewer
Vice President, Sales, Cybersecurity at a computer software company with 51-200 employees
Mar 24, 2026
The quantitative impact this has had on my organization's security is that definitely the secure score has improved, which obviously helps on the insurance side as well as showing our customers that their data is secured with us.
Matthew Pearon - PeerSpot reviewer
Server & , Cis 2 Cloud Infrastructure Specialist at a financial services firm with 1,001-5,000 employees
Nov 20, 2025
Microsoft Defender for Endpoint has helped free up my SOC team to work on other projects and tasks, and the automated reporting and dashboarding has saved them a lot of time, amounting to several man-hours.
 

Microsoft Defender for Endpoint Cons review quotes

Robert Arbuckle - PeerSpot reviewer
Security Analyst III at a healthcare company with 10,001+ employees
Nov 19, 2025
We have had issues where the urgency level of the Microsoft support is not as high as ours, especially during a data breach or potential data breach situation.
JT
Solutions Architect at Marco
Nov 19, 2025
When you get the right person that knows what you are asking the first time, it is excellent. However, when you get someone who may be new or just switched into that role, it can be less effective.
UsmanFarooqi - PeerSpot reviewer
Assistant Director, Hybrid Infrastructure & Operations at a insurance company with 501-1,000 employees
Nov 18, 2025
We were not happy that Microsoft Defender for Endpoint, as a Microsoft product, along with Intune to manage devices, charges this much and still does not provide the information that we are looking for.
Learn what your peers think about Microsoft Defender for Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,244 professionals have used our research since 2012.
MM
Security Architect at a insurance company with 5,001-10,000 employees
Mar 25, 2026
For us, Microsoft Defender for Endpoint can be improved by providing better visibility into our developers' environments, especially as we try to integrate a lot of the AI coding environments, such as Windows Services for Linux v2.
Riccardo Benetazzo Pagnin - PeerSpot reviewer
Cybersecurity Operation Manager at Arsenalia
Nov 18, 2025
I would appreciate agentic protection as an additional feature in the next release to protect the agents that the business creates.
SC
Principal Consultant - Cloud Security at a outsourcing company with 201-500 employees
Nov 18, 2025
There is some functionality that is not quite there yet.
reviewer2778771 - PeerSpot reviewer
Director, Network & Cloud Infrastructure at a legal firm with 501-1,000 employees
Nov 20, 2025
What I think can be improved on Microsoft Defender for Endpoint is that the whitelisting abilities are pitiful, and the understanding of how you go about doing that by the support techs that you speak with is really bad, so that I think is an area where Microsoft Defender for Endpoint needs improvement; the understanding and support of that and what actually works is pretty buggy.
Christopher Hippensteel - PeerSpot reviewer
Director, Information Technology at New Resources Consulting
Nov 18, 2025
Sometimes it is a little lacking, but for the most part, they are able to provide exactly what I need.
reviewer2811318 - PeerSpot reviewer
Vice President, Sales, Cybersecurity at a computer software company with 51-200 employees
Mar 24, 2026
From an improvement standpoint, the only thing I will mention is the cost.
Matthew Pearon - PeerSpot reviewer
Server & , Cis 2 Cloud Infrastructure Specialist at a financial services firm with 1,001-5,000 employees
Nov 20, 2025
More hooks and more reporting would be beneficial. More proactive reporting would be ideal.