We use MWD for detecting malware, viruses and protect from Ransomware.
Provides real-time security, but requires time to understand how it works
Pros and Cons
- "Its real-time security is the most valuable."
- "I would like to see online updates for patches for this solution. I would also like to see online information about what is trending in the market in terms of spams, viruses, or trojans. It takes some time to understand how this solution works. A few things are unclear at the beginning, such as whether it actually restricts the virus or spam at the initial stage, or when there is a security update, how will we come to know and how will it get synchronized. It would be really helpful if there is some kind of knowledge base in the form of video, audio, or document that can explain in a user-friendly way the setup, features, risks, and process to mitigate the risks. Currently, I have installed endpoint security for every individual system. I could not install it like other endpoint solutions where we have a server and a client. It would be really helpful if Microsoft Windows Defender has a server-client based model so that I can save some bandwidth when it downloads or uploads features. It will be helpful if we have a LAN-based or WAN-based controlling system."
What is our primary use case?
How has it helped my organization?
We don't have third party software for EPS. We have started using Windows defender which is inbuilt one with windows to safeguard our systems from malware. It actually works as an anti-spyware program built to fight unauthorized access and protect our Windows computers from unwanted traffic.
What is most valuable?
Its a complete free version which came as in-built with windows and has no impact on our system performance. We don't need an extra software to be installed for security concerns and virus a such. It is very easy to use comparing to other available software's in the market.
What needs improvement?
I would like to see online updates for patches for this solution. I would also like to see online information about what is trending in the market in terms of spams, viruses, or trojans.
It takes some time to understand how this solution works. A few things are unclear at the beginning, such as whether it actually restricts the virus or spam at the initial stage, or when there is a security update, how will we come to know and how will it get synchronized. It would be really helpful if there is some kind of knowledge base in the form of video, audio, or document that can explain in a user-friendly way the setup, features, risks, and process to mitigate the risks.
Currently, I have installed endpoint security for every individual system. I could not install it like other endpoint solutions where we have a server and a client. It would be really helpful if Microsoft Windows Defender has a server-client based model so that I can save some bandwidth when it downloads or uploads features. It will be helpful if we have a LAN-based or WAN-based controlling system.
Buyer's Guide
Microsoft Defender for Endpoint
June 2025

Learn what your peers think about Microsoft Defender for Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
859,957 professionals have used our research since 2012.
For how long have I used the solution?
I have been using Microsoft Windows Defender for the last six months.
What do I think about the stability of the solution?
In my experience, Microsoft Windows Defender has never caused any issues as such. It is pretty much stable and has not affected the system resources as per my observation.
What do I think about the scalability of the solution?
The solution is easily scalable. I'm always trying to increase the usage to maximize the capabilities of the product offering. As soon as new capabilities appear I will expand usage to include them.
How are customer service and support?
We never contacted their technical support. Indeed Microsoft technical support has always been great.
Which solution did I use previously and why did I switch?
I used to use McAfee & Norton as a different solution in my previous Organization.
How was the initial setup?
Its initial setup is fine. I did not find it too complex. We just installed and enabled it on all the systems.
What about the implementation team?
We implemented in-house.
What's my experience with pricing, setup cost, and licensing?
I pay for it through the Windows Professional or Standard license. It is a one-time cost for me, and I use the same license.
Which other solutions did I evaluate?
No
What other advice do I have?
I would really recommend this solution because it is an in-built Microsoft product, and it is at the OS level. We don't require a new layer to install it as a software application.
I would rate Microsoft Windows Defender a seven out of ten.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Assistant Manager IT Infrastructure at a manufacturing company with 501-1,000 employees
Stable threat protection with good support but it's expensive and has license restrictions
Pros and Cons
- "It shows us the risky sign-ins, and if a user's password has been compromised."
- "I am not sure if I will be using this product in the future because of the price."
What is our primary use case?
We are using this solution for threat detection.
What is most valuable?
It shows us the risky sign-ins, and if a user's password has been compromised.
What needs improvement?
While have been using this solution for two years, I am not completely knowledgable.
Due to license restrictions, we cannot use all of the features that are offered.
I am not sure if I will be using this product in the future because of the price.
I would like to see better pricing for this solution in the future.
For how long have I used the solution?
I have been working with Microsoft Defender ATP for two years.
We are always using the latest version because it's on the cloud.
What do I think about the stability of the solution?
With what we have seen, it's a stable solution.
What do I think about the scalability of the solution?
We are not using it widely because of the licensing limits.
We have three users only for Defender ATP, and if we are using the Microsoft ATA it applies to 500 users.
How are customer service and technical support?
Technical support is good.
Which solution did I use previously and why did I switch?
We did not use another solution previous to Microsoft Defender ATP.
How was the initial setup?
The initial setup is straightforward. It's included with the Windows 10 Operating System.
There is no time taken for deployment as it is included with the operating system.
What about the implementation team?
We completed the installation ourselves.
We have 15 administrators to deploy and maintain this solution.
What's my experience with pricing, setup cost, and licensing?
Microsoft Defender ATP is expensive.
What other advice do I have?
Because of my lack of knowledge or experience with the solutions full capacity, I cannot recommend this solution or offer any advice.
I would rate this solution a five out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Microsoft Defender for Endpoint
June 2025

Learn what your peers think about Microsoft Defender for Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
859,957 professionals have used our research since 2012.
Manager Cyber Defense Operations Centre at a tech services company with 201-500 employees
Affordable and straightforward without much to improve for personal use
Pros and Cons
- "It is easy to install and use requiring little maintenance but applying updates."
- "It is inexpensive but could be cheaper like anything else."
What is our primary use case?
I installed Windows Defender for personal use for my protection of my personal PC. I use it as an antivirus system so that I do not have any exposure to viruses on my PC. Obviously, I do not want to leave my PC open to virus threats. I have only used it on my personal PCs with the license I got for Office 365. I keep my patches and descriptions updated on my PC.
Defender is installed only one one of my laptops. I am sure I will continue using it there as long as the licensing is valid.
What is most valuable?
I really have not really worked with it that much to be able to customize my approach with it or anything like that. It pretty straightforward to install and use.
What needs improvement?
I do not find that there is very much about it that needs to be improved. Everything can be cheaper I am sure. So, it could be less expansive.
For how long have I used the solution?
It has been about six months now since I started using Microsoft Windows Defender.
What do I think about the stability of the solution?
It is stable.
What do I think about the scalability of the solution?
I am sure it is a scalable product.
Which solution did I use previously and why did I switch?
I was just using or trying to get a personal PC secure using a product I got as part of the Office 365 package. There was no previous product installed.
How was the initial setup?
I found that it was pretty straightforward to install and use. You install it and it is working almost immediately.
What's my experience with pricing, setup cost, and licensing?
I think that the product is affordable. At least it was for me. It is part of the Office 365 package.
What other advice do I have?
I have used it enough to be sure that I could recommend it for home use on a PC.
On a scale from one to ten (where one is the worst and ten is the best), I would rate Defender as a nine-out-of-ten based on my experience.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Good with vulnerability assessment and integrates well with Office 365 and Azure
Pros and Cons
- "Provides good vulnerability assessment."
- "The GUI is very complex and could be more user friendly."
What is our primary use case?
This is an endpoint security product. It helps detect and prevent attacks and is very good when it comes to vulnerability assessment. It automatically detects attacks. It provides support for all the end devices, whether it is a Mac OS, Windows, mobiles, Android and iOS, it has support for all. I mostly deal with smaller and medium sized companies, I don't deal much with enterprises. I'm a customer of Microsoft and I work as a solution architect.
What is most valuable?
The product is very good when it comes to vulnerability assessment. It's a Microsoft flagship product and it integrates with Office 365. If my customers are using Office 365 or Azure or a Windows server, it helps to use Defender. Other products like Symantec or McAfee don't have that kind of integration with Microsoft products. In terms of identifying the attacks, it's far superior to Symantec.
What needs improvement?
The GUI is very complex, particularly for normal users who work on it. It could be more user friendly. For future improvements, I'd be looking at internet security which we don't have as Microsoft does not distinguish whether a site is malicious or not. Kaspersky is very good at that but not Microsoft. It would be a big advantage for them if they were to include it.
For how long have I used the solution?
I've been using this solution for seven months.
What do I think about the stability of the solution?
It's a stable product. Microsoft only recently entered this market and nobody believed that Microsoft antivirus would be good. They are now trying to prove everyone wrong in that sense by having a good security product.
What do I think about the scalability of the solution?
Scaling in or out is very easy. Scalability is really about licensing so you just have to request a registration license.
How are customer service and technical support?
Ninety-nine percent of the time, I'm able to solve the problem. I do not have access to Microsoft support so if I go to their open support page and try to login a request, it takes up to 24 hours for the support agent to get back to me. It's pretty average. If you have the premium support or if you're a support partner of Microsoft, they respond back in one or two hours, something like that.
Which solution did I use previously and why did I switch?
I tested the difference between Symantec and Defender by taking a malware from the internet and downloading it. Symantec allowed me to do it, even though it shouldn't have, but Defender, gave me notification and wouldn't allow me to do it. That said, Symantec is a very stable product that's been on the market for a long time. They have more expertise in endpoint protection than Microsoft. Symantec is not a cost-effective product for most customers. It's integrated with third party companies and is good in protecting endpoint. Because my customer base is companies that use Office 365 and Microsoft Azure so Microsoft integration with these products is very good.
How was the initial setup?
The initial setup is very simple, you just have to attach it to the user's email address. Once the user logs in, it automatically downloads and starts working. I do the implementation. In terms of maintenance, sometimes my engagement with the client is one time but sometimes, I do maintenance as well. This is a subscription-based, cloud-based product. They have to call me every year to renew.
What other advice do I have?
I would suggest that if you're already using Microsoft products, then I think it makes sense to go with Microsoft Defender over any other product.
I would rate this solution an eight out of 10.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Founder & CEO at Pathbreaker Pty Ltd
Free, integrated with Windows, and no installation needed
Pros and Cons
- "Microsoft Defender for Endpoint comes pre-installed in Microsoft Windows."
- "Microsoft Defender for Endpoint should have more transparency. In the latest edition of Windows, Windows 11, it is a compulsory requirement to connect to a Microsoft account, which in turn has implications for Defender. This should be removed."
What is our primary use case?
Microsoft Defender for Endpoint is a basic endpoint protection solution. If you do not combine it with another solution then you will leave yourself open to vulnerabilities. I used Microsoft Defender for Endpoint in conjunction with other solutions, such as Cylance.
What needs improvement?
Microsoft Defender for Endpoint should have more transparency. In the latest edition of Windows, Windows 11, it is a compulsory requirement to connect to a Microsoft account, which in turn has implications for Defender. This should be removed.
For how long have I used the solution?
I have been using Microsoft Defender for Endpoint for a few years.
How are customer service and support?
I have not called Microsoft technical support.
How was the initial setup?
Microsoft Defender for Endpoint comes pre-installed in Microsoft Windows.
What's my experience with pricing, setup cost, and licensing?
The solution comes as part of Microsoft Windows.
What other advice do I have?
I wouldn't call Microsoft Defender for Endpoint a solution, I'd call it part of a solution. I don't think I would be going around recommending it.
I rate Microsoft Defender for Endpoint an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Chief Technology Officer at a financial services firm with 1-10 employees
Easy to use, good support, but more visibility is needed
Pros and Cons
- "The most valuable features of Microsoft Defender for Endpoint are the ease of use and it was available within the operating system."
- "The biggest issue I had with Microsoft Defender for Endpoint was the antivirus and ransomware. I wanted central visibility over all the machines that we operate."
What is our primary use case?
We use Microsoft Defender for Endpoint for threat protection.
What is most valuable?
The most valuable features of Microsoft Defender for Endpoint are the ease of use and it was available within the operating system.
What needs improvement?
The biggest issue I had with Microsoft Defender for Endpoint was the antivirus and ransomware. I wanted central visibility over all the machines that we operate.
For how long have I used the solution?
I have used Microsoft Defender for Endpoint within the past 12 months.
What do I think about the scalability of the solution?
We have approximately 10 to 15 people using the solution in my organization.
How are customer service and support?
The technical support from Microsoft is good.
How was the initial setup?
The initial installation could have been easier.
What's my experience with pricing, setup cost, and licensing?
There is an annual license required.
What other advice do I have?
I rate Microsoft Defender for Endpoint a seven out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Systems Administrator at The Port Authority of Jamaica
It's a cost-effective solution for Microsoft shops
Pros and Cons
- "We are a Microsoft shop, and Defender is a Microsoft solution that provides some security at a reasonable cost."
- "I want Microsoft Defender to have the ability to deal with some issues automatically, so I don't need to address that issue manually."
What is our primary use case?
We use Defendor for endpoint monitoring. It alerts us when a machine has issues, and we take the necessary steps to resolve them.
What is most valuable?
We are a Microsoft shop, and Defender is a Microsoft solution that provides some security at a reasonable cost.
What needs improvement?
I want Microsoft Defender to have the ability to deal with some issues automatically, so I don't need to address that issue manually.
For how long have I used the solution?
We started testing our endpoints and preparing to deploy Microsoft Defender about two months ago.
What do I think about the scalability of the solution?
I would say yes, it is.
How are customer service and support?
Microsoft support is excellent.
How was the initial setup?
Deploying Microsoft Defender took some time because we had to push it through. You can install Symantec using the GUI, but we have to use the GPO to push the agent. It would be nice if Defender streamlined that.
Defender isn't 100 percent deployed yet, but it's working for some employees. When a machine comes on board, Defender will deploy an agent on that device when the script runs. A person logs on, the agent installs, and the device is onboarded.
What other advice do I have?
I rate Microsoft Defender for Endpoint eight out of 10. It's a cost-effective solution for Microsoft shops.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
IT RM at KNV
It runs in the background
Pros and Cons
- "Defender works in the background monitoring the traffic for viruses."
- "Defender could be more secure and stable."
What is our primary use case?
Defender is an antivirus solution deployed on all Microsoft PCs. Thousands of employees at my company use it.
What is most valuable?
Defender works in the background monitoring the traffic for viruses.
What needs improvement?
Defender could be more secure and stable.
For how long have I used the solution?
We've been using Microsoft Defender for a couple of years.
How was the initial setup?
Setting up Defender is straightforward. My administrator takes care of all that.
What other advice do I have?
I rate Microsoft Defender eight out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free Microsoft Defender for Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Endpoint Protection Platform (EPP) Advanced Threat Protection (ATP) Anti-Malware Tools Endpoint Detection and Response (EDR) Microsoft Security SuitePopular Comparisons
CrowdStrike Falcon
Microsoft Intune
Fortinet FortiEDR
Microsoft Defender for Office 365
Microsoft Sentinel
Microsoft Entra ID
Microsoft Defender for Cloud
SentinelOne Singularity Complete
Microsoft Defender XDR
Microsoft Purview Data Governance
Cortex XDR by Palo Alto Networks
Fortinet FortiClient
HP Wolf Security
Elastic Security
Buyer's Guide
Download our free Microsoft Defender for Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Compare Microsoft Windows Defender and Symantec Endpoint Protection. How Do I Choose?
- Which product would you choose: Microsoft Defender for Endpoint vs Cortex XDR by Palo Alto Networks?
- What do you think of the integration of Azure AD Services, Defender for Endpoint, and Intune as comprehensive security solutions?
- CrowdStrike Falcon vs Microsoft Defender ATP: Comparison of features and performance
- How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
- Running Carbon Black Defense Along with Windows Defender
- How is Cortex XDR compared with Microsoft Defender?
- Which offers better endpoint security - Symantec or Microsoft Defender?
- How does Microsoft Defender for Endpoint compare with Carbon Black CB Defense?
- How would you compare between Microsoft Defender for Endpoint and Tanium EDR?