Windows 10: Windows Defender and Microsoft's E5 for ATP products

Discus and support Windows Defender and Microsoft's E5 for ATP products in AntiVirus, Firewalls and System Security to solve the problem; Scenario:- I have 2000 windows workstations( windows 8.1 on 1000 and windows 10 on the remaining workstations). Default windows Defender enabled and... Discussion in 'AntiVirus, Firewalls and System Security' started by coolwater77, Feb 21, 2019.

  1. Windows Defender and Microsoft's E5 for ATP products


    Scenario:- I have 2000 windows workstations( windows 8.1 on 1000 and windows 10 on the remaining workstations). Default windows Defender enabled and running on all of the 2000 workstations. I purchased Microsoft E5 licenses so i can use some of its ATP products/capabilities on 500 of my high priority workstations( that are a mix of 8.1 and 10)


    Questions:-


    1. If i decide to use 500 of the E5 license over 250 of my windows 8.1 and 250 of windows 10 workstations, will the Defender that is enabled and running gets disabled automatically after the E5 license is enabled for those workstations?

    2. Once I use those 500 workstations ( mix of 8.1 and 10) to be covered by E5 for ATP, is there an agent related to E5 that gets installed on these 500 workstations so that they can be centrally managed by Microsoft's SaaS ATP console ?

    3. Can both Defender and E5 (ATP) be enabled and co-exist at the same time on the workstation?

    4. Also, if i decide to have a third party endpoint security solutions ( for example , carbon black, trendmicro....etc) agent installed on one of the 500 high priority workstations, I am aware that the default defender gets disabled automatically, what about the E5 ATP that its covered by, how will that get affected?

    :)
     
    coolwater77, Feb 21, 2019
    #1

  2. Windows Defender Advanced Threat Protction (ATP)

    Its only available to volume license customers subscribed to one of Microsofts licensing programs.

    Applies to:

    Windows 10 Enterprise

    Windows 10 Education

    Windows 10 Pro

    Windows 10 Pro Education

    Windows Defender Advanced Threat Protection (Windows Defender ATP)

    There are some minimum requirements for onboarding machines to the service.

    Want to experience Windows Defender ATP? Sign up for a free trial.

    https://www.microsoft.com/en-us/WindowsForBusin...

    Licensing requirements

    Windows Defender Advanced Threat Protection requires one of the following Microsoft Volume Licensing offers:

    Windows 10 Enterprise E5

    Windows 10 Education E5

    Microsoft 365 E5 (M365 E5) which includes Windows 10 Enterprise E5

    For more information, see Windows 10 Licensing.

    https://www.microsoft.com/en-us/Licensing/produ...

    Source:
    https://docs.microsoft.com/en-us/windows/securi...
     
    Andre for Directly, Feb 21, 2019
    #2
  3. Windows Defender ATP.

    Windows Defender ATP isn't protection, rather it's more after the fact forensics. Any sized firm can run ATP as you can enable it on Windows 10 pro with merely a script. What you have to have is a Windows E5 subscription license which now is sold in single
    units by cloud service providers.

    The naming of "Windows defender ATP" is IMHO a bad marketing name. It doesn't defend. It reports. It helps an admin understand when intrusions take place what IP the workstation talked to and what may have occurred but it still takes a technical person
    to interpret the findings.
     
    Susan Bradley - volunteer here not a MS employee, Feb 21, 2019
    #3
  4. Naresh_K Win User

    Windows Defender and Microsoft's E5 for ATP products

    Defender ATP

    Hi,



    Thank you for writing to Microsoft Community Forums.



    Usually we do not suggest to disable Windows Defender feature, Windows Defender ATP protects endpoints from cyber threats; detects advanced attacks and data breaches, automates security incidents, and improves security posture. However, if you
    still wish to disable it, please follow the steps mentioned below and check if it helps:

    1. Open Windows Settings (Windows key + I).
    2. Then click on Updates & Settings.
    3. Then click on Windows Security.
    4. You can disable Cloud based and automatic submissions.

    If you need any additional assistance, then please write back with the following information:

    1. What is the exact error message which you are getting?
    2. Is the issue specific to an application?
    3. Could you please
      post a screenshot for a better understanding?


    Regards,
     
    Naresh_K, Feb 21, 2019
    #4
Thema:

Windows Defender and Microsoft's E5 for ATP products

Loading...
  1. Windows Defender and Microsoft's E5 for ATP products - Similar Threads - Defender Microsoft's ATP

  2. Duplicate entries in Defender ATP

    in AntiVirus, Firewalls and System Security
    Duplicate entries in Defender ATP: Hello,Thanks in advance for any information on this issue.As you can see we have duplicate entries in the Security Center showing up. In the below example, there are 4 total entries for this VM. These VMs are deployed through a pipeline. For some reason some are showing up in...
  3. Windows Defender ATP service

    in Windows 10 Customization
    Windows Defender ATP service: Favor de ver este error cuando intento hacer un onboarding del WATPC:\WINDOWS\system32>%userprofile%\Desktop\WindowsDefenderATPLocalOnboardingScript This script will onboard this machine to the Windows Defender ATP service. Once completed, the machine should light up in the...
  4. Defender ATP Analysis

    in AntiVirus, Firewalls and System Security
    Defender ATP Analysis: Is the analysis ie alerting and blocking happening on the endpoints laptops, desktops or in the ATP Cloud console? If the analysis is occurring on the endpoints, will it cause performance issues on all endpoints if it is deployed across ~15,000 devices? If that's the case,...
  5. Windows Defender ATP Reboot

    in AntiVirus, Firewalls and System Security
    Windows Defender ATP Reboot: I am having an issue with Windows Defender ATP on all my Windows 10, domain joined PCs. After running the on-boarding script, the registry is updated at HKLM\SYSTEM\CurrentControlSet\Control\SessionManager\PendingFileRenameOperations with a number of ATP files. After a...
  6. Microsoft Defender ATP User Licenses

    in AntiVirus, Firewalls and System Security
    Microsoft Defender ATP User Licenses: I am starting to get Microsoft Defender ATP configured. In doing so I am wondering if it is necessary to apply Microsoft Defender Advanced Threat Protection licenses to individual users in our organization? Since what I have seen thus far with on-boarding machines, it seems...
  7. Organizations enrolled in Microsoft Defender ATP?

    in AntiVirus, Firewalls and System Security
    Organizations enrolled in Microsoft Defender ATP?: which Organization are enrolled in Microsoft Defender ATP? https://answers.microsoft.com/en-us/protect/forum/all/organizations-enrolled-in-microsoft-defender-atp/eb7eb333-871d-45bd-8c63-57c967c7e0b9
  8. Windows Defender ATP Offboarding

    in AntiVirus, Firewalls and System Security
    Windows Defender ATP Offboarding: Need help with Offboarding 1000 Windows 10 devices from an old 2017 Trial ATP tenant no longer active. Any help would be grateful https://answers.microsoft.com/en-us/windows/forum/all/windows-defender-atp-offboarding/a3c0d30e-5c4a-4cd6-9947-6f0ee8e9311d"
  9. Defender ATP

    in AntiVirus, Firewalls and System Security
    Defender ATP: I tried to submit a question, but it would not let me submit it. What good does it do to have this system if it won't work. Why am I, as an individual home computer user, subject to the strict regulations of Defender ATP? I cannot connect to links that are provided in...
  10. Windows Defender ATP

    in AntiVirus, Firewalls and System Security
    Windows Defender ATP: What is Sandbox in Windows Defender ATP? https://answers.microsoft.com/en-us/protect/forum/all/windows-defender-atp/714d1096-97e9-49bb-b825-c2c732ccd642