

Microsoft Defender for Cloud feature coverage for machines.Microsoft Defender for Endpoint overview.Azure Defender for Servers introduction.Use Microsoft Defender for Cloud to deploy Microsoft Defender for servers on your endpoints and integrate the alerts to your SIEM solution such as Microsoft Sentinel.Īzure implementation and additional context: Security principle: Enable Endpoint Detection and Response (EDR) capabilities for VMs and integrate with SIEM and security operations processes.Īzure guidance: Microsoft Defender for servers (with Microsoft Defender for Endpoint integrated) provides EDR capability to prevent, detect, investigate, and respond to advanced threats. ES-1: Use Endpoint Detection and Response (EDR) CIS Controls v8 ID(s) Endpoint Security covers controls in endpoint detection and response, including use of endpoint detection and response (EDR) and anti-malware service for endpoints in cloud environments.
