Which tool or service is responsible for vulnerability scanner in M365 defender suite for Endpoints, Identify, Apps, Office 365 and Data and how it works?

Vinod Survase 4,786 Reputation points
2023-12-03T16:10:52.96+00:00

Which tool or service is responsible for vulnerability scanner in M365 defender suite for Endpoints, Identify, Apps, Office 365 and Data and how it works?

Microsoft 365 and Office | Install, redeem, activate | For business | Windows
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Defender | Microsoft Defender for Identity
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Thameur-BOURBITA 36,266 Reputation points Moderator
    2023-12-03T17:47:38.28+00:00

    Hi @Vinod Survase

    If I understand you question , the answer should be Microsoft Defender portal.

    Below a microsoft article to get more details about what you can manage through this portal :

    https://learn.microsoft.com/en-us/microsoft-365/security/defender/microsoft-365-defender-portal?view=o365-worldwide


    Please don't forget to accept helpful answer



  2. James Hamil 27,221 Reputation points Microsoft Employee Moderator
    2023-12-08T00:06:44.81+00:00

    Hi @Vinod Survase , Microsoft Defender Vulnerability Management is the tool responsible for vulnerability scanning in the Microsoft 365 Defender suite. It is included with Microsoft Defender for Servers and uses built-in and agentless scanners to discover vulnerabilities and misconfigurations in near real-time. The vulnerability scanner included with Microsoft Defender for Cloud is powered by Qualys, which is one of the leading tools for real-time identification of vulnerabilities. The scanner extension works by monitoring your machines and providing recommendations to deploy the Qualys extension on your selected machine/s. The extension then collects artifacts and sends them for analysis in the Qualys cloud service in the defined region. Qualys' cloud service conducts the vulnerability assessment and sends its findings to Defender for Cloud, where the findings are available for review.

    Please let me know if you have any questions and I can help you further.

    If this answer helps you please mark "Accept Answer" so other users can reference it.

    Thank you,

    James


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.