Skip to content

Commit d588bee

Browse files
authored
Merge branch 'public' into patch-3
2 parents 3635049 + cd25afe commit d588bee

File tree

57 files changed

+351
-272
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

57 files changed

+351
-272
lines changed

defender-business/get-defender-business.md

Lines changed: 21 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ audience: Admin
99
ms.topic: overview
1010
ms.service: defender-business
1111
ms.localizationpriority: medium
12-
ms.date: 06/07/2024
12+
ms.date: 02/28/2025
1313
ms.reviewer: efratka
1414
f1.keywords: NOCSH
1515
ms.collection:
@@ -35,12 +35,30 @@ Sections include:
3535

3636
To get Defender for Business, you can choose from several options:
3737

38+
- Work with a Microsoft partner who can help you get everything set up and configured.
3839
- Try or buy the standalone version of Defender for Business.
3940
- Get Microsoft 365 Business Premium, which includes Defender for Business.
40-
- Work with a Microsoft partner who can help you get everything set up and configured.
4141

4242
Use the following tabs to learn more about each option.
4343

44+
## [Work with a Microsoft partner](#tab/findpartner)
45+
46+
Microsoft has a list of solution providers who are authorized to sell offerings, including Microsoft 365 Business Premium and Microsoft Defender for Business. If you'd prefer to work with a Microsoft partner, you can follow these steps to find a solution provider in your area:
47+
48+
1. Go to [Browse Partners](https://appsource.microsoft.com/en-us/marketplace/partner-dir).
49+
50+
2. In the **Filters** pane, specify search criteria, such as:
51+
52+
- Your location
53+
- Your organization's size
54+
- **Focus areas**, such as **Security** and/or **Threat Protection**
55+
56+
- **Services**, such as **Licensing** or **Managed Services (MSP)**
57+
58+
As soon as you select one or more criteria, the list of partners updates.
59+
60+
3. Review the list of results. Select a provider to learn more about their expertise and the services they provide.
61+
4462
## [Get Defender for Business (standalone)](#tab/getmdb)
4563

4664
Defender for Business provides advanced security protection for your company's devices. For more information, see [What is Microsoft Defender for Business](mdb-overview.md)?
@@ -77,24 +95,6 @@ Microsoft 365 Business Premium includes Defender for Business, Microsoft Defende
7795
> [!IMPORTANT]
7896
> Make sure to complete all the steps described in [Microsoft 365 Business Premium – productivity and cybersecurity for small business](/Microsoft-365/business-premium/m365bp-overview).
7997
80-
## [Work with a Microsoft partner](#tab/findpartner)
81-
82-
Microsoft has a list of solution providers who are authorized to sell offerings, including Microsoft 365 Business Premium and Microsoft Defender for Business. If you'd prefer to work with a Microsoft partner, you can follow these steps to find a solution provider in your area:
83-
84-
1. Go to the [Browse Partners](https://appsource.microsoft.com/en-us/marketplace/partner-dir).
85-
86-
2. In the **Filters** pane, specify search criteria, such as:
87-
88-
- Your location
89-
- Your organization's size
90-
- **Focus areas**, such as **Security** and/or **Threat Protection**
91-
92-
- **Services**, such as **Licensing** or **Managed Services (MSP)**
93-
94-
As soon as you select one or more criteria, the list of partners updates.
95-
96-
3. Review the list of results. Select a provider to learn more about their expertise and the services they provide.
97-
9898
---
9999

100100
## How to get Microsoft Defender for Business servers
@@ -113,7 +113,7 @@ Microsoft Defender for Business servers is an add-on to Defender for Business th
113113
>
114114
> - In order to add on Microsoft Defender for Business servers, you'll need at least one paid license for [Defender for Business](mdb-overview.md) (standalone) or [Microsoft 365 Business Premium](/Microsoft-365/business-premium/m365bp-overview).
115115
> - There's a limit of 60 Microsoft Defender for Business servers licenses per subscription to Microsoft 365 Business Premium or Defender for Business.
116-
> - If preferred, you could use [Microsoft Defender for Servers Plan 1 or Plan 2](/azure/defender-for-cloud/plan-defender-for-servers) instead to onboard your servers. To learn more, see [What happens if I have a mix of Microsoft endpoint security subscriptions](mdb-faq.yml#what-happens-if-i-have-a-mix-of-microsoft-endpoint-security-subscriptions)?
116+
> - If preferred, you could use [Microsoft Defender for Servers Plan 1 or Plan 2](/azure/defender-for-cloud/plan-defender-for-servers) instead to onboard your servers.
117117
118118
## Portals you use for setup and management
119119

defender-business/mdb-faq.yml

Lines changed: 34 additions & 30 deletions
Large diffs are not rendered by default.

defender-business/mdb-manage-devices.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ audience: Admin
99
ms.topic: how-to
1010
ms.service: defender-business
1111
ms.localizationpriority: medium
12-
ms.date: 06/07/2024
12+
ms.date: 02/28/2025
1313
ms.reviewer: nehabha
1414
f1.keywords: NOCSH
1515
ms.collection:

defender-business/mdb-manage-subscription.md

Lines changed: 8 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -20,9 +20,7 @@ ms.collection:
2020

2121
# Change your endpoint security subscription
2222

23-
[Microsoft Defender for Business](mdb-overview.md) and [Microsoft Defender for Endpoint](/defender-endpoint/microsoft-defender-endpoint) are endpoint security subscriptions that your organization can use to protect devices, such as computers, tablets, and phones. As your organization grows, you might have a mix of subscriptions and licenses. For example, you might have some Defender for Business licenses, and some Defender for Endpoint licenses.
24-
25-
This article describes how to apply either Defender for Business or Defender for Endpoint Plan 2 features and capabilities across all your organization's devices. (To learn more about mixed-licensing scenarios with Defender for Endpoint Plan 1 and Plan 2, see [Manage Microsoft Defender for Endpoint subscription settings across client devices](/defender-endpoint/defender-endpoint-subscription-settings).)
23+
[Microsoft Defender for Business](mdb-overview.md) and [Microsoft Defender for Endpoint](/defender-endpoint/microsoft-defender-endpoint) are endpoint security subscriptions that your organization can use to protect devices, such as computers, tablets, and phones. As your organization grows, you might be thinking about changing from Defender for Business to Defender for Endpoint. This article describes how to apply *either* Defender for Business *or* Defender for Endpoint Plan 2 features and capabilities across all your organization's devices.
2624

2725
## Before you begin
2826

@@ -44,16 +42,13 @@ This article describes how to apply either Defender for Business or Defender for
4442
> - You don't have enough Defender for Endpoint Plan 2 licenses for all users in your organization
4543
> - The ability to change your subscription settings hasn't rolled out to your organization yet
4644
47-
4. On the **Subscription settings** flyout, choose whether to use only Defender for Business or Defender for Endpoint Plan 2 across your organization's devices.
45+
4. On the **Subscription settings** flyout, choose whether to use only Defender for Business or Defender for Endpoint Plan 2 across your organization's devices. Keep the following important points in mind before you save your changes:
4846

49-
> [!IMPORTANT]
50-
> Keep the following important points in mind before you save your changes:
51-
> - Make sure you have enough licenses for the subscription you're using for all users in your organization.
52-
> - If you select **Only Microsoft Defender for Endpoint Plan 2**, the simplified configuration experience for Defender for Business is replaced with advanced settings that you can configure in Defender for Endpoint. If this change is applied, you can't undo it.
53-
> - It can take up to six hours for your changes to be applied.
54-
> - Make sure to review your security policies and settings. To get help with Defender for Endpoint policies and settings, see [Configure Defender for Endpoint capabilities](/defender-endpoint/onboard-configure). To get help with Defender for Business policies and settings, see [Review and edit your security policies and settings in Defender for Business](mdb-configure-security-settings.md).
47+
- Make sure you have enough licenses for the subscription you're using for all users in your organization.
48+
- If you select **Only Microsoft Defender for Endpoint Plan 2**, the simplified configuration experience for Defender for Business is replaced with advanced settings that you can configure in Defender for Endpoint. If this change is applied, you can't undo it.
49+
- It can take up to six hours for your changes to be applied.
50+
- Make sure to review your security policies and settings. To get help with Defender for Endpoint policies and settings, see [Configure Defender for Endpoint capabilities](/defender-endpoint/onboard-configure). To get help with Defender for Business policies and settings, see [Review and edit your security policies and settings in Defender for Business](mdb-configure-security-settings.md).
5551

56-
5752
## Review license usage
5853

5954
The license usage report is estimated based on sign-in activities on the device. Defender for Endpoint Plan 2 licenses are assigned to users, and each user can have up to five concurrent, onboarded devices. To learn more about license terms, see [Microsoft Licensing](https://www.microsoft.com/licensing/default).
@@ -66,10 +61,9 @@ To reduce management overhead, there's no requirement for device-to-user mapping
6661

6762
3. Review your available and assigned licenses. The calculation is based on detected users who have accessed devices that are onboarded to Defender for Business (or Defender for Endpoint).
6863

69-
## More information
64+
## See also
7065

7166
- [Licensing and product terms for Microsoft 365 subscriptions](https://www.microsoft.com/licensing/terms/productoffering/Microsoft365/MCA).
72-
- [Microsoft Defender for Endpoint](/defender-endpoint/microsoft-defender-endpoint)
73-
- [Microsoft Defender for Business](mdb-overview.md) (endpoint protection for small and medium-sized businesses)
67+
- [Manage Microsoft Defender for Endpoint Plan 1 and Plan 2 subscription settings across client devices](/defender-endpoint/defender-endpoint-subscription-settings)
7468

7569
[!INCLUDE [Microsoft Defender for Endpoint Tech Community](../includes/defender-mde-techcommunity.md)]

defender-business/mdb-requirements.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ audience: Admin
99
ms.topic: overview
1010
ms.service: defender-business
1111
ms.localizationpriority: medium
12-
ms.date: 06/07/2024
12+
ms.date: 02/28/2025
1313
ms.reviewer: nehabha
1414
f1.keywords: NOCSH
1515
ms.collection:
@@ -47,13 +47,13 @@ The following table lists the basic requirements you need to configure and use D
4747

4848
> [!NOTE]
4949
>
50-
> 1. To onboard servers, we recommend using [Microsoft Defender for Business servers](get-defender-business.md#how-to-get-microsoft-defender-for-business-servers). Alternately, you could use [Microsoft Defender for Servers Plan 1 or Plan 2](/azure/defender-for-cloud/plan-defender-for-servers). To learn more, see [What happens if I have a mix of Microsoft endpoint security subscriptions?](mdb-faq.yml#what-happens-if-i-have-a-mix-of-microsoft-endpoint-security-subscriptions) and [Onboard devices to Microsoft Defender for Business](mdb-onboard-devices.md).
50+
> 1. To onboard servers, we recommend using [Microsoft Defender for Business servers](get-defender-business.md#how-to-get-microsoft-defender-for-business-servers). Alternately, you could use [Microsoft Defender for Servers Plan 1 or Plan 2](/azure/defender-for-cloud/plan-defender-for-servers). For more information, see [Onboard devices to Microsoft Defender for Business](mdb-onboard-devices.md).
5151
>
5252
> 2. [Microsoft Entra ID](/azure/active-directory/fundamentals/active-directory-whatis) is used to manage user permissions and device groups. Microsoft Entra ID is included in your Defender for Business subscription.
5353
> - If you don't have a Microsoft 365 subscription before you start your trial, Microsoft Entra ID will be provisioned for you during the activation process.
5454
> - If you do have another Microsoft 365 subscription when you start your Defender for Business trial, you can use your existing Microsoft Entra service.
5555
>
56-
> 3. Security defaults are included in Defender for Business. If you prefer to use Conditional Access policies instead, you'll need Microsoft Entra ID P1 or P2 Plan 1 (included in [Microsoft 365 Business Premium](/Microsoft-365/business-premium/m365bp-overview). To learn more, see [Multi-factor authentication](/Microsoft-365/business-premium/m365bp-turn-on-mfa).
56+
> 3. Security defaults are included in Defender for Business. If you prefer to use Conditional Access policies instead, you'll need Microsoft Entra ID P1 or P2 Plan 1 (included in [Microsoft 365 Business Premium](/Microsoft-365/business-premium/m365bp-overview)). To learn more, see [Multi-factor authentication](/Microsoft-365/business-premium/m365bp-turn-on-mfa).
5757
5858
## Next steps
5959

defender-business/trial-playbook-defender-business.md

Lines changed: 15 additions & 22 deletions
Original file line numberDiff line numberDiff line change
@@ -12,7 +12,7 @@ ms.collection:
1212
- tier1
1313
- essentials-get-started
1414
ms.localizationpriority: high
15-
ms.date: 06/19/2024
15+
ms.date: 02/28/2025
1616
ms.service: defender-business
1717
search.appverid:
1818
- MOE150
@@ -39,35 +39,28 @@ Defender for Business is a new endpoint security solution designed especially fo
3939

4040
Here's how to set up your trial subscription:
4141

42-
1. [Add users and assign licenses](#step-1-add-users-and-assign-licenses).
43-
2. [Visit the Microsoft Defender portal](#step-2-visit-the-microsoft-365-defender-portal).
44-
3. [Use the setup wizard](#step-3-use-the-setup-wizard-in-defender-for-business-recommended).
45-
4. [Set up and configure Defender for Business](#step-4-set-up-and-configure-defender-for-business).
42+
1. [Visit the Microsoft Defender portal](#step-1-visit-the-microsoft-defender-portal).
43+
2. [Use the setup wizard](#step-2-use-the-setup-wizard-in-defender-for-business).
44+
3. [Set up and configure Defender for Business](#step-3-set-up-and-configure-defender-for-business).
4645

47-
### Step 1: Add users and assign licenses
48-
49-
After you sign up for Defender for Business, the first step is to **[add users and assign licenses](mdb-add-users.md)**.
50-
51-
<a name='step-2-visit-the-microsoft-365-defender-portal'></a>
52-
53-
### Step 2: Visit the Microsoft Defender portal
46+
### Step 1: Visit the Microsoft Defender portal
5447

5548
The Microsoft Defender portal ([https://security.microsoft.com](https://security.microsoft.com)) is the one-stop shop where you use and manage Defender for Business. It includes callouts to help you get started, cards that surface relevant information, and a navigation bar that provides easy access to the various features and capabilities.
5649

5750
- **[Visit the Microsoft Defender portal](mdb-get-started.md)**.
5851
- **[Explore the navigation bar](mdb-get-started.md#the-navigation-bar)** on the left side of the screen to access your incidents, view reports, and manage your security policies and settings.
5952

60-
### Step 3: Use the setup wizard in Defender for Business (recommended)
53+
### Step 2: Use the setup wizard in Defender for Business
6154

6255
Defender for Business was designed to save small and medium-sized businesses time and effort. You can do initial setup and configuration through a setup wizard. The setup wizard helps you grant access to your security team, set up email notifications for your security team, and onboard your company's Windows devices. **[Use the setup wizard](mdb-setup-configuration.md)**.
6356

6457
> [!NOTE]
65-
> You can only use the setup wizard once.
58+
> You don't have to use the wizard, but it's highly recommended. You can only use the setup wizard once.
6659
6760
#### Setup wizard flow: what to expect
6861

6962
> [!TIP]
70-
> **Using the setup wizard is optional.** If you choose not to use the wizard, or if the wizard is closed before your setup process is complete, you can complete the setup and configuration process on your own. See [Step 4: Set up and configure Defender for Business](#step-4-set-up-and-configure-defender-for-business).
63+
> **Using the setup wizard is optional.** If you choose not to use the wizard, or if the wizard is closed before your setup process is complete, you can complete the setup and configuration process on your own. See [Step 3: Set up and configure Defender for Business](#step-3-set-up-and-configure-defender-for-business).
7164
7265
1. **[Assign user permissions](mdb-roles-permissions.md#view-and-edit-role-assignments)**. Grant your security team access to the Microsoft Defender portal.
7366

@@ -78,17 +71,17 @@ Defender for Business was designed to save small and medium-sized businesses tim
7871
> [!NOTE]
7972
> When you use the setup wizard, the system detects if you have Windows devices that are already enrolled in Intune. You'll be asked if you want to use automatic onboarding for all or some of those devices. You can onboard all Windows devices at once or select specific devices at first and then add more devices later.
8073
81-
To onboard other devices, see [Step 4: Set up and configure Defender for Business](#step-4-set-up-and-configure-defender-for-business).
74+
To onboard other devices, see [Step 3: Set up and configure Defender for Business](#step-3-set-up-and-configure-defender-for-business).
8275

8376
4. **[View and edit your security policies](mdb-configure-security-settings.md)**. Defender for Business includes default security policies for next-generation protection and firewall protection that can be applied to your company's devices. These preconfigured security policies use recommended settings, so you're protected as soon as your devices are onboarded to Defender for Business. And you can edit the policies or create new ones.
8477

85-
### Step 4: Set up and configure Defender for Business
78+
### Step 3: Set up and configure Defender for Business
8679

8780
If you choose not to use the setup wizard, see the following diagram that depicts the [overall setup and configuration process](mdb-setup-configuration.md) for Defender for Business.
8881

8982
[:::image type="content" source="media/mdb-setup-process-2.png" alt-text="Setup and configuration process for Defender for Business.":::](mdb-setup-configuration.md)
9083

91-
If you used the setup wizard but you need to onboard more devices, such as non-Windows devices, go directly to [step 4](mdb-onboard-devices.md) in the following procedure:
84+
If you used the setup wizard but you need to onboard more devices, such as non-Windows devices, go directly to [onboard devices](mdb-onboard-devices.md).
9285

9386
1. **[Review the requirements](mdb-requirements.md)** to configure and use Defender for Business.
9487

@@ -110,7 +103,7 @@ Defender for Business includes pre-configured security policies that use recomme
110103

111104
Security policies to review and configure include:
112105

113-
- [Next-generation protection policies](mdb-next-generation-protection.md) which determine antivirus and antimalware protection for your company's devices
106+
- [Next-generation protection policies](mdb-next-generation-protection.md) which determine antivirus and anti-malware protection for your company's devices
114107
- [Firewall protection and rules](mdb-firewall.md) which determine what network traffic is allowed to flow to and from your company's devices
115108
- [Web content filtering](mdb-web-content-filtering.md) which prevents people from visiting certain websites (URLs) based on categories, such as adult content or legal liability
116109
- [Advanced features](mdb-portal-advanced-feature-settings.md#view-settings-for-advanced-features) such as automated investigation and response and endpoint detection and response (EDR) in block mode
@@ -119,17 +112,17 @@ Security policies to review and configure include:
119112

120113
For the next 30 days, here's guidance from the product team on key features to try:
121114

122-
1. [Use your Microsoft Defender Vulnerability Management dashboard](#1-use-the-defender-vulnerability-management-dashboard).
115+
1. [Use your dashboard](#1-use-the-dashboard).
123116

124117
2. [View and respond to detected threats](#2-view-and-respond-to-detected-threats).
125118

126119
3. [Review security policies](#3-review-security-policies).
127120

128121
4. [Prepare for ongoing security management](#4-prepare-for-ongoing-security-management).
129122

130-
### 1. Use the Defender Vulnerability Management dashboard
123+
### 1. Use the dashboard
131124

132-
Defender for Business includes a Defender Vulnerability Management dashboard that's designed to save your security team time and effort. Learn how to [use your Defender Vulnerability Management dashboard](mdb-view-tvm-dashboard.md).
125+
Defender for Business includes a dashboard that's designed to save your security team time and effort. Learn how to [use your dashboard](mdb-view-tvm-dashboard.md).
133126

134127
- View your exposure score, which is associated with devices in your organization.
135128
- View your top security recommendations, such as address impaired communications with devices, turn on firewall protection, or update Microsoft Defender Antivirus definitions.

0 commit comments

Comments
 (0)