Share via

Windows Defender - 'Standard hardware security not supported' - umm, yes they are.

Anonymous
2024-03-08T02:10:31+00:00

Hi,

A couple of days ago, I reset my PC, but kept my files. Ever since, Windows has refused to let me change any defender options, giving me the error message 'Standard hardware security not supported.' I can't stress enough that it is and the whole system was working perfectly fine before Microsoft messed up my PC reset. The BIOS settings are literally exactly the same as they were before when it was working. I have virtualisation, I have IOMMU, I have SVM, I have TPM 2.0 and Secure Boot enabled and working. This is extremely frustrating - literally nothing about my security configuration has changed. After the reset I updated windows, also have reset today and kept my files but I get the exact same message.

Thanks

Windows for home | Windows 11 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

16 answers

Sort by: Most helpful
  1. Anonymous
    2024-07-26T16:34:06+00:00

    “Make sure you enable:

    TPM 2.0

    Virtualisation (In AMD boards, this is called SVM)

    IOMMU (Not sure of Intel name)

    Make sure you set CSM to 'Disabled'

    Make sure secure boot is enabled and active

    Make sure DEP is enabled.”

    How do you expect a Windows user to find all these settings in the BIOS? Can you at least indicate in which tabs of the BIOS they may be found? There are countless Intel and AMD mainboards and each has a different BIOS.

    3 people found this answer helpful.
    0 comments No comments
  2. Anonymous
    2024-08-20T23:13:52+00:00

    Sadly, you are correct. Nobody should expect a Windows user to do anything pc related. Each manufacturer sets up their BIOS differently. You'll have to make an effort.

    1 person found this answer helpful.
    0 comments No comments
  3. Anonymous
    2024-03-09T03:52:30+00:00

    Hi,

    If you are sure that you have all of the hardware features activated in your BIOS, then best option is unfortunately to clean install windows from a USB. I was the victim of a bug, not a hardware problem.

    However, there's quite a few and you wanna make sure you have everything correctly configured before you attempt a reset, otherwise you might do a full reset only to still have the issue.

    Make sure you enable:

    TPM 2.0

    Virtualisation (In AMD boards, this is called SVM)

    IOMMU (Not sure of Intel name)

    Make sure you set CSM to 'Disabled'

    Make sure secure boot is enabled and active

    Make sure DEP is enabled

    1 person found this answer helpful.
    0 comments No comments
  4. Anonymous
    2024-03-08T21:26:16+00:00

    Hi,

    I believe that I have all of the features required up and running.

    In fact I noticed I was a few versions behind on my motherboard, so today I flashed it, reset the CMOS and put all of the settings back. However I still get the message when trying to access Windows Defender

    I've attached some screenshots that may help, sorry if I've missed anything but I believe that's everything you listed

    Thanks,

    Ben

    1 person found this answer helpful.
    0 comments No comments
  5. Anonymous
    2024-03-08T13:01:33+00:00

    Hello MinorCheetah788, welcome to the Microsoft community.

    In Windows 11, Windows Defender is encountering an issue of "Unsupported standard hardware security".

    Usually, devices that meet the following conditions will display "Your device meets the standard hardware security requirements" and support memory integrity and core isolation.

    1. TPM 2.0 (also known as a security processor)(Trusted Plaform Module (TPM) 2.0 | Microsoft Learn
    2. Secure Boot Enabled
    3. DEP
    4. UEFI MAT

    If your device prompts "Does not support standard hardware security," it means your device does not meet at least one standard hardware security requirement. Please check your device hardware.

    If the device's security features are not what you want, you may need to enable certain hardware features (such as enabling Secure Boot where supported) or change settings in the system BIOS.

    Please contact the hardware manufacturer to find out which features your hardware supports and how to activate them.

    For more details, please refer to:Device protection in Windows Security - Microsoft Support

    I hope the above information is helpful to you.

    Kirito | Microsoft Community Support Specialist

    1 person found this answer helpful.
    0 comments No comments