Hello,
According to Microsoft's official documentation, Windows Server 2008 R2 must be Service Pack 1 (SP1) to support Defender for Endpoint. This is because many necessary security components were introduced in SP1, and these components are required for Defender for Endpoint to run properly.
I recommend you refer to the following links:
Best Regards
Zunhui