Updated: May 31, 2023 (March 18, 2023)

  Analyst Report

The State of Microsoft Hybrid Client Security Management

My Atlas / Analyst Reports

1,739 wordsTime to read: 9 min
Wes Miller by
Wes Miller

Wes Miller analyzes and writes about Microsoft’s security, identity management, and systems management technologies. Before joining Directions on Microsoft, Wes... more

  • For client endpoint protection, organizations should consider Microsoft Defender for Endpoint first but may still need the Endpoint Protection application for Windows PC management.
  • Defender for Endpoint offers comprehensive protection of Windows, macOS, and Linux and is included in higher-tiered Microsoft 365 suites, while Endpoint Protection only protects Windows systems and must be licensed through System Center.
  • Endpoint Protection supports clients that are shared among users or that have no Internet connection.
  • Defender for Endpoint’s distinctive features require sending telemetry to Microsoft, an unacceptable risk for some firms.

Endpoint Protection (EP) and Microsoft Defender for Endpoint (MDE) offer the same fundamental antivirus and antimalware protection for Windows systems. For most organizations, the MDE hosted service is the best choice because it can offer additional layers of analysis, incident correlation, and remediation that EP cannot. EP continues to have a role where organizations cannot or will not let clients connect to the Internet, where clients are shared among users, or where sending MDE telemetry to Microsoft poses too much security and regulatory compliance risk.

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now