Skip to content

Commit 45f1ad0

Browse files
committed
Learn Editor: Update mde-sdp-strategy.md
1 parent 34c94fc commit 45f1ad0

File tree

1 file changed

+10
-3
lines changed

1 file changed

+10
-3
lines changed

defender-endpoint/mde-sdp-strategy.md

Lines changed: 10 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -19,14 +19,21 @@ ms.collection:
1919

2020
# Use safe deployment practices to safeguard and manage your environment
2121

22-
Microsoft follows safe deployment practices (SDP) to minimize the risk of security updates having an unexpected impact. This article describes Microsoft Defender for Endpoint's approach to SDP and what customers can do to manage their own roll-out processes to add an extra layer of control.
22+
<!-- Added introductory text to emphasize why updates are important. Mirrors language from https://techcommunity.microsoft.com/blog/microsoftdefenderatpblog/microsoft-defender-for-endpoint%e2%80%99s-safe-deployment-practices/4220342 -->
23+
24+
Microsoft Defender for Endpoint helps protect organizations against sophisticated adversaries while optimizing for resiliency, performance, and compatibility, following [best practices for managing security tools in Windows](https://www.microsoft.com/en-us/security/blog/2024/07/27/windows-security-best-practices-for-integrating-and-managing-security-tools/). Keeping Microsoft Defender for Endpoint up to date is critical to assure your devices have the latest technology and features needed to protect against new malware and attack techniques.
25+
26+
Microsoft follows safe deployment practices (SDP) to deliver critical new product capabilities while minimizing the risk of updates having unexpected impacts to endpoint performance and availability. This article describes Defender for Endpoint's approach to SDP and how customers can manage their own roll-out processes to add extra layers of control to meet their own business, technical, and security requirements.
27+
28+
## Approach and update types
2329

2430
Microsoft Defender for Endpoint ships updates externally only after all the certification and validation tests are completed across multiple iterations of internal devices.
2531

2632
Defender for Endpoint applies SDP to two distinct update mechanisms:
2733

28-
- Software and driver updates that are updated monthly (can potentially update kernel-mode components).
29-
- Security intelligence and detection logic updates that can be updated multiple times a day (updates only apply to user-mode components).
34+
- Software and driver updates that are updated monthly and can potentially update kernel-mode components.
35+
36+
- Security intelligence and detection logic updates that can be updated multiple times a day and apply only to user-mode components.
3037

3138
## Monthly SDP software and driver updates
3239

0 commit comments

Comments
 (0)