00:00:00
in this video I am going to talk about
00:00:02
Microsoft Defender antivirus there are
00:00:05
four versions available uh that is free
00:00:08
one is a Microsoft Defender antivirus
00:00:11
that comes with the Avery operating
00:00:13
system Windows operating system uh but
00:00:16
on top of that Microsoft has introduced
00:00:19
services that is Microsoft Defender for
00:00:22
endpoint plan 1 and Microsoft Defender
00:00:25
for endpoint plan 2 and then third
00:00:27
antivirus that not a third antivirus the
00:00:30
another service they have include that
00:00:32
is uh Defender for a business which is a
00:00:36
part of Microsoft 365 business premium
00:00:39
license there is a major difference
00:00:41
between these and this is not the same
00:00:44
antivirus there is a lot of
00:00:47
functionalities are differ uh different
00:00:51
for endpoint plan 2 that is a top tier
00:00:54
license which comes with the uh e e file
00:00:58
license and security EMS E5 so these
00:01:04
these license are the top tier license
00:01:06
uh or you get all services basically
00:01:09
from that that is basically uh threat
00:01:13
and vulnerability management attack
00:01:14
service reduction Next Generation
00:01:17
protection endpoint detection and
00:01:19
response and automated investigation and
00:01:22
these these kind of services you get
00:01:24
from these antiviruses but what is the
00:01:27
main difference that is you whatever
00:01:30
what is the main difference between the
00:01:32
defender for business and this plan two
00:01:34
and plan one so basically there is a
00:01:37
there is a big difference okay uh you
00:01:40
can see on my screen let me give you a
00:01:43
little bit uh overview from this page so
00:01:48
basically Microsoft 365 business premium
00:01:51
you can see on the screen so this
00:01:53
Defender for business this antivirus
00:01:56
includes a Next Generation protection
00:01:58
cross-platform support in point
00:02:01
detection response and threatened
00:02:02
vulnerability management so it's
00:02:04
basically it provides what you need uh
00:02:06
for in the your organization or your
00:02:08
primary antivirus okay to detect and
00:02:11
response and create a
00:02:14
uh detection not not a greater detection
00:02:16
rule is basically the Next Generation
00:02:18
protection okay so this minimum
00:02:20
protection is always there uh with the
00:02:22
Microsoft Defender uh Defender for a
00:02:25
business antivirus uh but what you what
00:02:28
you we are missing here I will uh tell
00:02:32
you and the Microsoft business premium
00:02:34
license that provides this operating
00:02:36
system and the InTune license and the
00:02:38
mailbox and all uh this that that is
00:02:41
already covered but we are as a part of
00:02:44
this video we are going to talk about
00:02:46
Microsoft Defender for business this
00:02:48
antivirus what what we are getting and
00:02:50
what we are missing right now so let's
00:02:53
see I have here so it disks this is this
00:02:56
article it shows a Defender for business
00:02:59
and Defender for plan one and plan two
00:03:01
what we are getting so now we will just
00:03:04
compare this plant to Against The
00:03:06
Defender for business so you can see the
00:03:08
lot of checks is always there but what
00:03:11
we are missing is thread hunting threat
00:03:13
hunting is basic quickly we are missing
00:03:16
there is a Time link timeline feature
00:03:18
that you can see what is happening on
00:03:21
the machines on almost and almost in a
00:03:23
real time uh there is a timeline feature
00:03:26
is missing where you can see what
00:03:28
applications or what user is performing
00:03:30
on his machines within the administer
00:03:32
two three minutes you will see that logs
00:03:35
and processes and what triggering or not
00:03:39
what file is blocked and what file is
00:03:42
allowed all these things you can see in
00:03:44
the backend portal so that thing is
00:03:46
missing then you would not able to do a
00:03:49
detection rules uh if you are using
00:03:51
Defender for business antivirus then you
00:03:54
not able to create a customized
00:03:57
detection rule so basically if anything
00:03:59
any file is executed you're not going to
00:04:03
you will not get any notification but
00:04:06
whereas you use a Defender for plan two
00:04:09
you can create a detection rules and you
00:04:12
can
00:04:14
uh create a customized notification okay
00:04:17
something is happening in the
00:04:18
organization please modify you know any
00:04:21
process is running any customize or any
00:04:23
any particular process you want to
00:04:25
monitor if this is uh connected or this
00:04:27
is running if this is running then just
00:04:30
to notify so this kind of rules you can
00:04:32
create that that is the part is missing
00:04:35
and then the third threat expert this
00:04:38
this thing is basically missing is where
00:04:42
you have something uh incident happen
00:04:45
and you want to expert advice then you
00:04:48
can create or you can ask Microsoft to
00:04:51
work on that case and give the Insight
00:04:53
what is happening and why it is
00:04:55
happening you know all these experts
00:04:57
will there you know to help you that
00:05:00
request you cannot create with the
00:05:01
Microsoft Defender uh Defender for
00:05:03
business uh subscription so this is the
00:05:06
subscription so there is no another
00:05:09
antivirus you need to download and you
00:05:11
want you want to uninstall the previous
00:05:13
one so basically it is a subscription
00:05:16
base so whatever the license you have
00:05:19
based on that your Defender Defender
00:05:22
antivirus will upgrade and it will
00:05:25
introduce all these Services Next
00:05:27
Generation protection threatened on
00:05:30
these services will be included it will
00:05:32
start running on your machine so this is
00:05:35
the only thing uh there is a main like
00:05:37
it's not a only thing uh these are the
00:05:39
things you will miss from the different
00:05:41
antivirus sorry uh Defender for business
00:05:44
if you have a Defender for endpoint plan
00:05:46
two almost you are getting everything
00:05:48
and you are well protected uh with that
00:05:53
and attack surface reduction also is
00:05:56
there you can see this attack surface
00:05:58
reduction policy is there that uh
00:06:02
that your endpoints are protected from
00:06:04
the defender for business
00:06:07
so yeah it is a Next Generation
00:06:09
antivirus but there are a few things are
00:06:11
missing it is not the same antivirus if
00:06:13
you are coming from the defender for
00:06:15
endpoints and you try to save some money
00:06:17
uh by implementing or implementing or
00:06:21
try to use uh the business premium
00:06:23
license antivirus that is comes as a
00:06:27
Defender for business this also
00:06:29
antivirus comes as a standalone you can
00:06:31
have a standalone antivirus there is no
00:06:35
major difference in installation simply
00:06:39
you can install this through the InTune
00:06:41
and there is a one script is also
00:06:43
available that you can just run on your
00:06:45
endpoint and that machine will onboard
00:06:48
on Microsoft Defender for rainpoint
00:06:51
portal so this is the basic difference
00:06:53
and yeah so this is the what you need to
00:06:58
know from this video if you like or if
00:07:03
you have any questions please do let me
00:07:05
know I will clarify this in a or a
00:07:08
better way so that you can understand
00:07:10
thank you bye