You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
### What license does the user need to benefit from Defender Vulnerability Management capabilities?
34
34
35
35
Microsoft Defender Vulnerability Management is available via two services:
36
36
37
-
1. Microsoft Defender for Endpoint Plan 2 customers can seamlessly enhance their existing generally available vulnerability management capabilities with the Microsoft Defender Vulnerability Management add-on. This service provides consolidated inventories, expanded asset coverage, cross-platform support, and new assessment and mitigation tools. To sign up for the free 90-day trial, see [Defender Vulnerability Management Add-on](get-defender-vulnerability-management.md#try-defender-vulnerability-management-add-on-trial-for-defender-for-endpoint-plan-2-customers).
37
+
1. Microsoft Defender for Endpoint Plan 2 customers can seamlessly enhance their existing generally available vulnerability management capabilities with the Defender Vulnerability Management add-on. This service provides consolidated inventories, expanded asset coverage, cross-platform support, and new assessment and mitigation tools. To sign up for the free 90-day trial, see [Defender Vulnerability Management Add-on](get-defender-vulnerability-management.md#try-defender-vulnerability-management-add-on-trial-for-defender-for-endpoint-plan-2-customers).
38
38
39
-
2.For new customers or existing Defender for Endpoint P1 or Microsoft 365 E3 customers looking for a risk-based vulnerability management solution, Microsoft Defender Vulnerability Management Standalone helps you efficiently discover, assess, and remediate vulnerabilities and misconfigurations in one place. To sign up for the free 90-day trial, see [Defender Vulnerability Management Standalone](get-defender-vulnerability-management.md#try-defender-vulnerability-management-standalone).
39
+
2. Defender Vulnerability Management Standalone helps you efficiently discover, assess, and remediate vulnerabilities and misconfigurations in one place. This is recommended for new customers or existing Defender for Endpoint P1 or Microsoft 365 E3 customers. To sign up for the free 90-day trial, see [Defender Vulnerability Management Standalone](get-defender-vulnerability-management.md#try-defender-vulnerability-management-standalone).
40
40
41
41
### Do I need to assign Defender Vulnerability Management licenses to users in my organization as instructed in the admin center?
42
42
@@ -59,18 +59,18 @@ For new customers or existing Defender for Endpoint P1 or Microsoft 365 E3 custo
59
59
60
60
### How is the service provisioned/deployed?
61
61
62
-
Once a customer is onboarded on to the free-trial experience, Defender Vulnerability Management features are turned on by default at the tenant level for all users within the organization.
62
+
Defender Vulnerability Management features are turned on by default at the tenant level for all users within the organization once a customer is onboarded to the free-trial experience.
63
63
64
-
### If a customer is in public preview, what will happen to their premium capabilities if I don't sign up for a free trial?
64
+
### If a customer is in public preview, what happens to their premium capabilities if they don't sign up for a free trial?
65
65
66
-
The new capabilities will be available only to customers who onboard a trial. Customers who haven't onboarded will lose access to these capabilities. Blocked applications will be immediately unblocked. Security baseline profiles may be stored for a short additional time before being deleted.
66
+
The new capabilities are available only to customers who onboard a trial. Customers who aren't onboarded lose access to these capabilities. Blocked applications are immediately unblocked. Security baseline profiles may be stored for a short period before being deleted.
67
67
68
68
### How long does the trial last and what happens at the end of my trial?
69
69
70
70
- The Defender Vulnerability Management add-on trial lasts for 90 days.
71
71
- The Defender Vulnerability Management Standalone trial lasts for 90 days.
72
72
73
-
After your trial ends, you'll have a 30 day grace period of active trial before the license becomes suspended. When the trial is suspended, you'll retain your security baselines, but you may lose access to your portal and your blocked applications may become unblocked.
73
+
After your trial ends, you have a 30 day grace period of active trial before the license becomes suspended. When the trial is suspended, you retain your security baselines, but you may lose access to your portal and your blocked applications may become unblocked.
74
74
75
75
After 180 days, your license will be deactivated and your profiles will be deleted.
76
76
@@ -85,7 +85,7 @@ Examples of recommendations where you might not see a mitigation action (such as
85
85
- Recommendations related to operating systems
86
86
- Recommendations related to apps for macOS and Linux
87
87
88
-
It's also possible that your organization has reached the maximum indicator capacity of 15,000. If this is the case, you will need to free up space by deleting old indicators. To learn more, see [Manage indicators](/defender-endpoint/indicator-manage).
88
+
It's also possible that your organization reached the maximum indicator capacity of 15,000. If so, you need to free up space by deleting old indicators. To learn more, see [Manage indicators](/defender-endpoint/indicator-manage).
89
89
90
90
### Does blocking vulnerable apps work on all devices?
91
91
@@ -97,16 +97,16 @@ This feature is supported on Windows devices (1809 or later) with the latest Win
97
97
98
98
There's currently support for:
99
99
100
-
- Center for Internet Security (CIS) benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and above.
100
+
- Center for Internet Security (CIS) benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and later.
101
101
- Security Technical Implementation Guides (STIG) benchmarks for Windows 10 and Windows Server 2019.
102
102
103
103
Upcoming support:
104
104
105
-
- Microsoft benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and above will be available in an upcoming release.
105
+
- Microsoft benchmarks for Windows 10, Windows 11, and Windows Server 2008R2 and later will be available in an upcoming release.
106
106
107
107
### What operating systems can I measure using security baseline assessments?
108
108
109
-
Currently Windows is supported, but coverage will be expanded to cover more operating systems such as Mac and Linux.
109
+
Currently Windows is supported, but coverage will be expanded to more operating systems like Mac and Linux.
110
110
111
111
## Defender Vulnerability Management general FAQs
112
112
@@ -120,46 +120,46 @@ Microsoft Defender Vulnerability Management is available as a vulnerability mana
120
120
121
121
### Can I turn on Defender Vulnerability Management capabilities on a subset of devices in my organization?
122
122
123
-
There isn't a way to selectively light up the Defender Vulnerability Management assessment capabilities (block vulnerable applications, browser extension, certificate inventory, and network share assessment) on a subset of devices in a given tenant.
123
+
Capabilities like blocking vulnerable applications, browser extension, certificate inventory, and network share assessment can't be selectively turned on for a subset of devices in a given tenant.
124
124
125
125
## Windows authenticated scan deprecation FAQs
126
126
127
127
### When does the deprecation process begin and end?
128
128
129
-
The [Windows authenticated scan](windows-authenticated-scan.md) deprecation process will begin on November 2024 and will last for 12 months, concluding on November 30th, 2025. During this period, new customers will not have access to this capability and support will be limited to existing customers only.
129
+
The [Windows authenticated scan](windows-authenticated-scan.md) deprecation process begins on November 2024 and will last for 12 months, concluding on November 30, 2025. During this period, support is limited to existing customers only. New customers will not have access to this capability.
130
130
131
131
### Why is this product being deprecated?
132
132
133
-
The deprecation is to streamline offerings and focus on features that provide greater value to customers. This change allows our teams to allocate resources to innovations that better meet customer needs. We understand transitions can be challenging, and we're here to support you throughout the process. If you have any questions or need assistance, please let us know.
133
+
The deprecation is to streamline offerings and focus on features that provide greater value to customers. This change allows our teams to allocate resources to innovations that better meet customer needs. We understand transitions can be challenging, and we're here to support you throughout the process. Let us know if you have any questions or need assistance.
134
134
135
135
### When will the product be officially deprecated?
136
136
137
-
Windows authenticated scan will officially be deprecated on November 30th, 2025. After this date, the capability will no longer be supported nor be available to customers.
137
+
Windows authenticated scan will officially be deprecated on November 30, 2025. After this date, the capability will no longer be supported nor be available to customers.
138
138
139
139
### What happens to my data after the product is deprecated?
140
140
141
-
All user data will be handled according to our [data storage and privacy policy](tvm-prerequisites.md#data-storage-and-privacy). We recommend that you export any important data before the deprecation date.
141
+
All user data is handled according to our [data storage and privacy policy](tvm-prerequisites.md#data-storage-and-privacy). We recommend that you export any important data before the deprecation date.
142
142
143
143
### Will the product be replaced?
144
144
145
145
There is no direct replacement for the Windows authenticated scan at this time. However, we are continuously evaluating our offerings and exploring opportunities for future development. We appreciate your understanding. Stay tuned for updates on new features and capabilities.
146
146
147
147
### Will support still be available after the deprecation date?
148
148
149
-
Until the end of November 2025, the development team will assist with any support tickets regarding Windows authenticated scan. However, no new features will be deployed. Support for the deprecated product will end on November 30, 2025. We encourage you to reach out with any questions before this date.
149
+
The development team will assist with any support tickets regarding Windows authenticated scan until the end of November 2025. However, no new features will be deployed. Support for the deprecated product ends on November 30, 2025. We encourage you to reach out with any questions before this date.
150
150
151
151
### What steps should I take to prepare for the deprecation?
152
152
153
-
We recommend reviewing your current usage of the Windows authenticated scan and identifying any critical data you rely on. Please ensure that you export any important data before the deprecation date.
153
+
We recommend reviewing your current usage of the Windows authenticated scan and identifying any critical data you rely on. Ensure that you export any important data before the deprecation date.
154
154
155
155
### Will I receive notifications about the deprecation process?
156
156
157
-
Yes. We will send out regular updates and reminders via the Message Center to all affected customers as the deprecation date approaches. Please ensure your contact information is up to date in our system to receive these notifications.
157
+
Yes. We will send out regular updates and reminders via the Message Center to all affected customers as the deprecation date approaches. Ensure your contact information is up to date in our system to receive these notifications.
158
158
159
-
### Will I receive notifications about the deprecation process?
159
+
### Can I still access the product during the deprecation period?
160
160
161
-
Yes. Uou can continue to access the Windows authenticated scan and use its features until the deprecation date of November 30, 2025. However, please note that new customers will not be able to gain access during this time.
161
+
Yes. You can continue to access the Windows authenticated scan and use its features until the deprecation date of November 30, 2025. However, note that new customers will not be able to gain access during this time.
162
162
163
163
### How can I provide feedback about this change?
164
164
165
-
You can send your feedback through the relevant channels. We value your input and your feedback will help us improve our future products.
165
+
You can send your feedback through the relevant channels. We value your input and your feedback helps us improve our future products.
0 commit comments