Forum Discussion
Azure Update Management Centre (Preview) - Security Intelligence Update for Microsoft Defender AV
Afternoon all,
We are exploring using Update Management Centre and scheduling the update of our fleet of IaaS servers. Monthly patching is fairly easy to understand and deploy. Our dev machines are successfully patching.
However, what is the implementation pattern for updating Defender AV signatures? In a WSUS deployment, this would likely be a separate job that runs hourly. However, UMC doesn't allow that level of frequency, nor does the maintenance Window accept anything less than 1 hour.
Many thanks
Paul
1 Reply
Microsoft Defender Antivirus signature updates are not managed through Azure Update Management Center (UMC). Instead, Defender AV signatures are updated automatically via cloud-delivered protection or can be scheduled/forced using Group Policy, Configuration Manager, PowerShell (Update-MpSignature), or WMI. UMC is designed for OS and application patching, not for high-frequency AV signature updates.
https://learn.microsoft.com/en-us/defender-endpoint/microsoft-defender-antivirus-updates