Onboarding devices to Microsoft Defender for Business vs Microsoft Defender for Endpoint.

Woody Chiu at RASI 191 Reputation points
2023-02-07T20:27:18.93+00:00

We have Microsoft Endpoint Manager and are trying to set up Microsoft Defender for Business.

After researching, I realize that we need to set up an automated way to onboard all Intune Enrolled Windows devices first.

Could you advise the proper way to do so?

Besides, are the processes of onboarding devices to Microsoft Defender for Business and to Microsoft Defender for Endpoint the same? If not, could you explain how they are different?

If I onboarded a device for Microsoft Defender for Business, does it mean the device was also onboarded for Microsoft Defender for Endpoint?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,201 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,365 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Crystal-MSFT 43,221 Reputation points Microsoft Vendor
    2023-02-08T03:08:36.5566667+00:00

    @Woody Chiu at RASI, Thanks for posting in Q&A.

    Based on my researching, Microsoft Defender for Business and Microsoft Defender for Endpoint are two ndpoint security solutions provided from Microsoft.

    Microsoft Defender for Business is an endpoint security solution that was designed especially for small- and medium-sized businesses (up to 300 employees) to protect them from ransomware, malware, phishing, and other threats.

    Microsoft Defender for Endpoint is designed for enterprises or businesses with more than 300 employees, and it is included in the Microsoft 365 enterprise plans.

    Here is a link list the feature included in the two endpoint security solution for your reference:

    https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/defender-endpoint-plan-1-2?view=o365-worldwide#compare-microsoft-endpoint-security-plans-1

    To onboard devices to Microsoft Defender for Business or Microsoft Defender for Endpoint, there are many methods. For example, Windows 10 and 11 devices, you can choose Local script, Group policy or Intune. For Endpoint, it also has other method like MECM, VDI script.

    https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/onboard-configure?view=o365-worldwide#onboarding-and-configuration-tool-options

    https://learn.microsoft.com/en-us/microsoft-365/security/defender-business/mdb-onboard-devices?view=o365-worldwide&tabs=Windows10and11#windows-10-and-11-1

    To choose Intune to onboard devices to Microsoft Defender for Business, you can follow the steps in the following link:

    https://learn.microsoft.com/en-us/microsoft-365/security/defender-business/mdb-onboard-devices?view=o365-worldwide&tabs=Windows10and11#intune-for-windows-10-and-11

    To onboard devices to Microsoft Defender for Endpoint, here is a link with the detailed steps for your reference:

    https://learn.microsoft.com/en-us/mem/intune/protect/advanced-threat-protection-configure#onboard-devices

    Meanwhile for your last question, I would say no, the device onboard to Microsoft Defender for Business will not in Microsoft Defender for Endpoint. As they are two security solutions.

    Hope the above information can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.