Do you need intune joined devices to use Microsoft/Window Defender Security and its policy?

TechQ 236 Reputation points
2023-05-04T09:51:01.2033333+00:00

I have Azure AD and On-premises joined together. Now I am planning to use Azure Microsoft/Window defender to my all users. So i am kind of confused if I need MDM enabled and its have the deviced join with intune?

I already have my active directory domain join with computers.

I am using window server 2022 and Azure AD sycned.

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,635 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,244 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,281 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,743 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,629 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Carlos Solís Salazar 17,791 Reputation points MVP
    2023-05-04T11:52:33.86+00:00

    Thank you for asking this question on the Microsoft Q&A Platform.

    I understand that your devices are joined in an AD DS and already have Azure AD Connect configured.

    In your case, you need Configure hybrid Azure AD join

    Azure AD Hybrid Join is a feature that allows you to join your devices to both on-premises Active Directory and Azure Active Directory

    Even if in the future you want to use Intune, you will require the hybrid Azure AD Join.

    Hope this helps!


    Accept Answer and Upvote, if any of the above helped, this thread can help others in the community looking for remediation for similar issues.

    NOTE: To answer you as quickly as possible, please mention me in your reply.

    0 comments No comments

  2. Crystal-MSFT 46,271 Reputation points Microsoft Vendor
    2023-05-05T01:44:10.83+00:00

    @TechQ, Thanks for posting in Q&A. In General, Microsoft Intune is a cloud service which manages user access and simplifies app and device management across your many devices, including mobile devices, desktop computers, and virtual endpoints. For example, you can manage device via device configuration policies, manage app via app configuration policy or protect organization data on app via app protection policy and etc.

    Also, Microsoft Intune can integrate with other Microsoft products and services, like Microsoft Defender for Endpoint to help enterprises prevent, detect, investigate, and respond to threats. Here is a link with more details:

    https://learn.microsoft.com/en-us/mem/intune/fundamentals/what-is-intune

    In addition, for windows, currently windows server is not supported to be managed by Intune. Only Windows client can support. To know the supported OS, you can read the following link as a reference:

    https://learn.microsoft.com/en-us/mem/intune/fundamentals/supported-devices-browsers

    If you just want to use Window defender, Intune is not necessary. But if you want to deploy settings for Microsoft Defender for Endpoint on devices you manage with Intune, you can consider Microsoft Intune and configure integration of Microsoft Defender for Endpoint with Intune

    https://learn.microsoft.com/en-us/mem/intune/protect/advanced-threat-protection-configure

    Hope the above information can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.