Purview endpoint DLP protection

prasantc 976 Reputation points
2024-09-11T04:28:20.1666667+00:00

Is it possible to deploy endpoint DLP protection by enabling defender in passive mode while CrowdStrike is still running as a primary AV.

Is there any article for endpoint DLP protection with CrowdStrike as primary Anti virus?

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Purview
0 comments No comments
{count} vote

Accepted answer
  1. phemanth 15,765 Reputation points Microsoft External Staff Moderator
    2024-09-11T09:07:13.28+00:00

    @prasantc

    Thanks for reaching out to Microsoft Q&A.

    Yes, it is possible to deploy endpoint Data Loss Prevention (DLP) protection by enabling Microsoft Defender in passive mode while using CrowdStrike as the primary antivirus. This setup allows you to leverage the strengths of both solutions without conflicts.

    For detailed guidance on implementing endpoint DLP protection with CrowdStrike as the primary antivirus, you can refer to the following resources:

    1. CrowdStrike’s Data Loss Prevention Overview: This article provides an in-depth look at how CrowdStrike’s DLP solutions work and how they can be integrated with other security tools
    2. Falcon Data Protection: This page details CrowdStrike’s unified platform for data protection and endpoint security, which can help you understand how to configure and manage DLP alongside other security measures

    Additionally, you can also refer to the Microsoft documentation on Microsoft Defender Antivirus compatibility, which provides information on how to configure Microsoft Defender Antivirus to run in passive mode while using a non-Microsoft antivirus solution

    Here are some key points to consider when deploying endpoint DLP protection with CrowdStrike as the primary AV:

    • Passive mode: Microsoft Defender Antivirus can be configured to run in passive mode, allowing CrowdStrike to function as the primary antivirus solution.
    • Coexistence: Microsoft Defender Antivirus and CrowdStrike can coexist on the same endpoint, with Microsoft Defender Antivirus providing additional security features and capabilities.
    • DLP protection: Endpoint DLP protection can be deployed using Microsoft Defender Antivirus in passive mode, providing an additional layer of protection against data loss and exfiltration.

    Hope this helps. Do let us know if you any further queries.


    If this answers your query, do click Accept Answer and Yes for was this answer helpful. And, if you have any further query do let us know.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.