The most valuable feature is its ability to effectively detect threats. It has the EDR feature, endpoint detection and response, and that is very good.
Group IT Security Program Manager at Jotun
Native integration with OS gives it more granular capabilities, but management console needs work
Pros and Cons
- "The most valuable feature is its ability to effectively detect threats. It has the EDR feature, endpoint detection and response, and that is very good."
- "The management console is something that can be improved."
What is most valuable?
What needs improvement?
The management console is something that can be improved.
For how long have I used the solution?
I have been using Microsoft Defender for Endpoint for about two years.
What do I think about the stability of the solution?
It is stable.
Buyer's Guide
Microsoft Defender for Endpoint
May 2025

Learn what your peers think about Microsoft Defender for Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
851,823 professionals have used our research since 2012.
What do I think about the scalability of the solution?
It is scalable.
How was the initial setup?
The initial setup is quite simple because it is built into the operating system.
Which other solutions did I evaluate?
Microsoft Defender has more granular capabilities because of the native operating system that it is built into. It is better integrated into the operating system because both the product and the OS are from Microsoft. That is an advantage.
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Senior System Administrator at Debre Markos University
Easy to use interface, user-friendly, and stable
Pros and Cons
- "The solution has an easy-to-use interface, is always updated, and is user-friendly."
- "The solution could improve by providing more integration."
What is our primary use case?
I use Microsoft Defender for Endpoint protection on my personal computer.
What is most valuable?
The solution has an easy-to-use interface, is always updated, and is user-friendly.
What needs improvement?
The solution could improve by providing more integration.
For how long have I used the solution?
I have been using Microsoft Defender for Endpoint for approximately one year.
What do I think about the stability of the solution?
The solution is stable and secure.
What do I think about the scalability of the solution?
I have found the scalability quite good.
How was the initial setup?
The installation is simple.
What about the implementation team?
I did the implementation of the solution.
What's my experience with pricing, setup cost, and licensing?
The solution is free and comes with Windows.
What other advice do I have?
I rate Microsoft Defender for Endpoint a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Microsoft Defender for Endpoint
May 2025

Learn what your peers think about Microsoft Defender for Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
851,823 professionals have used our research since 2012.
Consultor Senior at a consultancy with 51-200 employees
A free solution that performs well
Pros and Cons
- "It performs well. The stability is seamless."
- "A concern is ransomware, whether people can penetrate and encrypt my data or steal my credit card/banking information."
What is most valuable?
I haven't experienced any problems.
What needs improvement?
They could improve the information about how they are dealing with people who could attack minors. This is my main concern.
Another concern is ransomware, whether people can penetrate and encrypt my data or steal my credit card/banking information.
For how long have I used the solution?
I have been using it since 2019.
What do I think about the stability of the solution?
It performs well. The stability is seamless.
What do I think about the scalability of the solution?
Scalability is not a problem because we don't have servers. We don't do anything more with the computers than use them for studies, reading papers and books, watching movies, and communicating with our family. So, we don't need to scale up.
How are customer service and technical support?
If they could send me more information, then I could evaluate, read more, and give them opinions. For example, if someone tells me about a problem, then I can give solutions and also write to Microsoft regarding this information.
Which solution did I use previously and why did I switch?
From the beginning of the pandemic, we received another kind of software when we had to be at home, but it caused us problems with the performance. So, I decided to quit the other software. Then, I installed Windows Defender on all my computers, including my grandchildren's computers.
I was using Sophos previously, but it was causing problems with the performance. For example, when my grandchildren were trying to assume a session, they opened Excel or Word with a 4 GB computer using Windows 10 and then they always lost the connection or the continuities because the computer slowed down. However, when we decided to quit using Sophos and install all the features of Windows Defender, then those problems were resolved.
How was the initial setup?
The initial setup is very easy and straightforward.
My deployment process: I put some checks in the questions that they have. It was very easy. I read about it in the tutorial. I installed it on my entire family's computers (six computers) in less than half an hour.
What's my experience with pricing, setup cost, and licensing?
It is free.
What other advice do I have?
We are totally satisfied with performance and price. However, there is still the question, "Is it safe and secure enough for home, primary-school-age children, and minors?" Despite having a Masters degree in Computer Sciences and Mathematics, I have not been able to say if Microsoft is doing bad or good things.
Many companies may say that they have the best product, but I recommend always watching the news about what a company is doing. Stay informed. Don't be complacent.
The solution is a nine out of 10.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Associate System Engineer - Security Services at a educational organization with 10,001+ employees
Product has a decent detection rate, but there are some challenges related to reporting
Pros and Cons
- "Within its class I think, it has a high and decent detection rate."
- "There's a lot of manual effort involved to configure what we need."
What is our primary use case?
We use this as our antivirus solution.
What is most valuable?
Within its class I think, it has a high and decent detection rate.
What needs improvement?
There were a few detections that are not picked up, and then Microsoft picks up on that and they update it. That's just a normal thing you go through based on every antivirus solution. You're always going to have viruses and signatures that are coming out.
So, I wouldn't say it's the perfect solution because if you're looking at next-generation behavioral based things, for example, if you're going to use ATP, that's when you can get more methods out of it. With Defender, if you pay more you can get the ATP component, which is sold separately by Microsoft.
We do have some challenges in the reporting aspect of it.
There's a lot of manual effort involved to configure what we need.
There are also a few issues with policies.
For how long have I used the solution?
I've been using this solution for six months.
What other advice do I have?
Defender by itself is not a solution. Defender is basically a functionality.
We have some issues with reporting, but I think it's just the way we've integrated right now, again not using ATP. So, we just use STC MS management. Then it's limited in terms of reporting.
From an operator's perspective, I think there are some policy detection issues where you've got a detection for a signature but how it translates into the FCCM dashboard where it doesn't really categorize that particular model. It picks something up as bad but it's just unknown.
So, I think that's a known issue with this particular thing. Because it doesn't know what it is classified as it doesn't really do anything. For it to do something, the policy has to recognize the category of that number. It could be a trojan horse or whatever it is, but it doesn't really do that. It could be what they call an autonomous detection where the system categorizes it as not recognized and hence it blocks it, but it's not going to let you delete it instantly. Usually, you can say if it's detected you want to block it, that's the first step. The second step is to be able to delete the file or quarantine the file. But it doesn't recognize that, so it doesn't know what it needs to do. Instead, it just blocks it. It only blocks it because it doesn't recognize it as being Malware.
I would rate this product a six out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Security Specialist at Engen
Provides good security features and can be viewed in the central console
Pros and Cons
- "Provides good security features and you can view it in the central console."
- "Lacks some additional integration."
What is our primary use case?
We use this product for our endpoint detection and all the remediation.
What is most valuable?
The solution provides good security features. The key valuable feature for me is that you can view it in the central console.
What needs improvement?
I'd like to see more integration in the next release and the solution should be file protected.
For how long have I used the solution?
I've been using this solution for five years.
What do I think about the scalability of the solution?
The solution is scalable.
How are customer service and support?
I'd like to see a quicker response time from the company's technical support.
How was the initial setup?
The initial setup was straightforward. It didn't take long and was part of the deployment of our endpoints, and part of the integration. We currently have around 3,000 users and no plans to expand. We have four people involved with maintenance.
What other advice do I have?
I recommend this solution and rate it eight out of 10.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Unified Communications Manager at Jouve
Easy to deploy with great cloud provisioning and excellent functionality
Pros and Cons
- "It's a Microsoft product; it's easier to deploy this product than other options."
- "It would be helpful if they offered video tutorial guides."
What is our primary use case?
We're using the solution on our endpoints.
What is most valuable?
The functionality is very important to us.
The cloud provisioning is great.
It's a Microsoft product, therefore, it's easier to deploy this product than other options. It's very important for us to have a simple way to deploy new PCs when we buy the new PCs. We don't want that deployment to be a burden. The easy deployment feature is very helpful.
What needs improvement?
At the moment we are currently testing it. We are not major users of the product, and therefore we have no idea of what it can and can't do just yet.
At this time we don't have any recommendations concerning the Windows product interface.
It would be helpful if they offered video tutorial guides.
For how long have I used the solution?
I've used the solution for three or four months.
What do I think about the stability of the solution?
We are testing it right now and we didn't get into the production state just yet. Therefore, it's hard to gauge the capabilities in terms of stability. So far, however, it has been stable.
What do I think about the scalability of the solution?
The scalability is okay.
How are customer service and support?
Support is always okay. I've always had a positive experience dealing with support.
How was the initial setup?
The deployment is seamless and super simple. It's not complex at all, and that's the main selling point for us.
What's my experience with pricing, setup cost, and licensing?
We did negotiate on the pricing, however, I can't speak to the exact costs involved.
Which other solutions did I evaluate?
We did not really compare this solution to other options. The advantage is that this solution is available on mobile devices, and we needed something that covered everything, from desktops and laptops to mobile. Therefore, we didn't really consider anything else.
What other advice do I have?
We are Microsoft customers. We don't have a special relationship with the organization.
We are using the latest version of the solution.
It's a good product overall. I would rate it an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Information Security Engineer at a financial services firm with 1,001-5,000 employees
Has good stability but they update the platform too frequently
Pros and Cons
- "It's pretty easy to scale."
- "In terms of improvement, they update the platform it seems quite a bit. Every month something is in a new spot or something changed somewhere. There should be less of that."
What is our primary use case?
We use the most up-to-date version.
Our primary use case is for basic EDRs for simple interfaces.
What needs improvement?
In terms of improvement, they update the platform it seems quite a bit. Every month something is in a new spot or something changed somewhere. There should be less of that.
For how long have I used the solution?
I have been using Microsoft Defender for Endpoint for a couple of months.
What do I think about the stability of the solution?
It seems stable.
What do I think about the scalability of the solution?
It's pretty easy to scale.
A handful of people with each in charge of different areas are involved in the maintenance of the solution. It's people in system admin.
How are customer service and technical support?
I have dealt with tech support a couple of times. They're usually pretty responsive. The first person might not know what the deal is, but they usually are able to get us to the right person, get a resolution for us, and answer our questions pretty quickly.
Which solution did I use previously and why did I switch?
We used CrowdStrike but we switched to Microsoft because of the price. It's cheaper. There were other major differences.
How was the initial setup?
The initial setup was pretty complex in the way the various tools integrate. Trying to figure out permissions and getting access to certain things is complex.
Global admin uses the tool, but then you have to get additional roles for the data loss stuff.
What other advice do I have?
Make sure you read the documentation and understand what else is required before you get started.
I would rate it a seven out of ten.
I don't think that another tool is doing anything better, or this one doesn't. It's just about using it and seeing where to find the stuff.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical Manager at SAPEC
Light on resources, easy installation, and reliable
Pros and Cons
- "One of the main features is the solution is very light on resources and we do not have any problems with it."
- "There is room to improve the security of the solution."
What is our primary use case?
We use this solution for business security protection.
What is most valuable?
One of the main features is the solution is very light on resources and we do not have any problems with it.
What needs improvement?
There is room to improve the security of the solution.
We have plans to add an email security solution because this solution does not provide us with what we want.
For how long have I used the solution?
I have been using this solution for approximately three years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
I have found the scalability of the solution good.
Which solution did I use previously and why did I switch?
We were previously using the Avast security solution.
How was the initial setup?
The installation is very easy, it takes only one day.
What about the implementation team?
We did the implementation ourselves. We have approximately 10 engineers able to do the deployments and maintenance.
What's my experience with pricing, setup cost, and licensing?
There is not a license required for this particular solution.
What other advice do I have?
I would recommend this solution to others.
I rate Microsoft Defender Antivirus an eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Buyer's Guide
Download our free Microsoft Defender for Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2025
Product Categories
Endpoint Protection Platform (EPP) Advanced Threat Protection (ATP) Anti-Malware Tools Endpoint Detection and Response (EDR) Microsoft Security SuitePopular Comparisons
CrowdStrike Falcon
Microsoft Intune
Fortinet FortiEDR
Microsoft Defender for Office 365
Microsoft Sentinel
Microsoft Entra ID
Microsoft Defender for Cloud
SentinelOne Singularity Complete
Microsoft Defender XDR
Cortex XDR by Palo Alto Networks
Microsoft Purview Data Governance
Fortinet FortiClient
Elastic Security
Symantec Endpoint Security
Azure Firewall
Buyer's Guide
Download our free Microsoft Defender for Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Compare Microsoft Windows Defender and Symantec Endpoint Protection. How Do I Choose?
- Which product would you choose: Microsoft Defender for Endpoint vs Cortex XDR by Palo Alto Networks?
- What do you think of the integration of Azure AD Services, Defender for Endpoint, and Intune as comprehensive security solutions?
- CrowdStrike Falcon vs Microsoft Defender ATP: Comparison of features and performance
- How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
- Running Carbon Black Defense Along with Windows Defender
- How is Cortex XDR compared with Microsoft Defender?
- Which offers better endpoint security - Symantec or Microsoft Defender?
- How does Microsoft Defender for Endpoint compare with Carbon Black CB Defense?
- How would you compare between Microsoft Defender for Endpoint and Tanium EDR?