Share via

EC2 Defender for Endpoint or Defender for cloud

Anonymous
2023-08-16T17:57:14+00:00

Hello all,

I was wondering if anyone could help me out.

We have some EC2 servers, looking for the possibility of ingesting to logs to sentinel and protecting with Defender for endpoint on workstations.

My questions are :

  • What is the difference between Defender for Endpoint vs Defender for Cloud?
  • What would the best solution be for protecting these EC2 servers DFE or DFC? oe both? and why?

If there is ay documentation on which one to choose that be great as well?

Could we just have Endpoint for Defender on these EC2 servers or would it be just Defender for cloud? and why?

If anyone could reach out that be amazing!

Many thanks

Microsoft 365 and Office | Microsoft 365 Defender | Other | Other

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

Answer accepted by question author

Anonymous
2023-08-16T20:28:39+00:00

Hello

I’m Adeyemi and I’d be happy to help you with your question.

Defender for Endpoint (DFE) and Defender for Cloud (DFC) are two different products under the Microsoft Defender brand. DFE is an enterprise endpoint security platform that provides security for Windows, macOS, Linux, Android, and iOS endpoints. It incorporates next-generation antivirus, behavioral sensors, cloud-based security analytics, and threat intelligence to provide security for these devices. On the other hand, DFC is designed to protect Azure subscriptions and the resources in those subscriptions. It can be extended to AWS, GCP, and on-prem servers for Server, SQL, and container monitoring. DFC focuses on monitoring how these resources are accessed externally and has no antivirus capabilities.

For your EC2 servers, you could use either DFE or DFC or both depending on your needs. If you're looking to provide antivirus and other protections for your EC2 servers then DFE would be a good choice. If you're looking to protect all your resources in the cloud (AWS) then DFC would be a good choice. You could also use both products together to get the benefits of both.

Here are some links to documentation that might help you make a decision:

I hope this helps!

Give back to the Community. Help the next person who has this issue by indicating if this reply solved your problem. Click Yes or No below

Regards Adeyemi

Was this answer helpful?

1 person found this answer helpful.
0 comments No comments

1 additional answer

Sort by: Most helpful
  1. Anonymous
    2023-08-16T21:00:58+00:00

    Adeyemi!

    Thank you ever so much, just what i needed.

    Thank you for taking the time to answer my questions!

    Was this answer helpful?

    0 comments No comments