Forum Discussion
Windows Defender Management
Let's say a company wanted to make full use of defender and get rid of its anti virus software.
Do you advice against getting rid of antivirus in favor of defender? Is there a trial on the horizon, because Antivirus companies feel you are steeling their business?
Is there a management application for file signatures, updates, threat evaluation etc.? ... so one can manage thousands of hosts using defender?
- Stephen HoganIron Contributor
There are several methods of managing Windows Defender in the enterprise, depending on the technologies you have currently and what you plan to invest in.
This 4 minute article summaries it all: Deploy, manage, and report on Windows Defender Antivirus https://docs.microsoft.com/en-us/windows/threat-protection/windows-defender-antivirus/deploy-manage-report-windows-defender-antivirus
For example, with Group Policies, you have no method of reporting, but if you had WSUS would could at least manage the updates.
If you want full control, it's a toss between Intune and SCCM.
- Michael BrunkerBrass Contributor
If you have both SCCM (1702) and GPOs, which would you recommend to manage the Windows Defender policies?
- SigurdWernerIron Contributor
It may depend also on your org structure. If you have all clients in ConfigManager, I would go with CM. You have also RBAC, so you can assign the WD task to a separate team and you have all the reporting in CM. So one tool that handles all.
- Dune DesormeauxMicrosoftDeployment monitoring and reporting live in SCCM and Intune, and then if you have E5 there is also detailed data in the Advanced Threat Protection portal.
- IaanMicrosoftHey Christian, there are a few options for management, including SCCM & Intune - see here for some more info https://docs.microsoft.com/en-us/windows/threat-protection/windows-defender-antivirus/deploy-manage-report-windows-defender-antivirus