• A per-device add-on to Microsoft Defender for Endpoint P2 that extends security monitoring to enterprise IoT devices — VoIP phones, printers, cameras, conferencing systems, smart TVs, and other connected devices without built-in security agents. Helps security teams identify and respond to vulnerabilities in devices that traditional endpoint protection doesn't cover.

  • A site-based license securing operational technology (OT) and industrial control system (ICS) environments — for a large facility size tier. Provides agentless network detection and response across a physical site, integrating with Microsoft Defender XDR and Microsoft Sentinel for unified security operations.

  • A site-based license securing operational technology (OT) and industrial control system (ICS) environments — for a medium facility size tier. Provides agentless network detection and response across a physical site, integrating with Microsoft Defender XDR and Microsoft Sentinel for unified security operations.

  • A site-based license securing operational technology (OT) and industrial control system (ICS) environments — for a small facility size tier. Provides agentless network detection and response across a physical site, integrating with Microsoft Defender XDR and Microsoft Sentinel for unified security operations.

  • A site-based license securing operational technology (OT) and industrial control system (ICS) environments — for the largest facility size tier. Provides agentless network detection and response across a physical site (factory, campus, hospital, rig, etc.), integrating with Microsoft Defender XDR and Microsoft Sentinel for unified security operations.

  • A site-based license securing operational technology (OT) and industrial control system (ICS) environments — for the smallest facility size tier. Provides agentless network detection and response across a physical site, integrating with Microsoft Defender XDR and Microsoft Sentinel for unified security operations.

  • Bundles Microsoft's E5-level security stack — Entra ID P2, Defender for Identity, Defender for Endpoint Plan 2, Defender for Office 365 Plan 2, and Defender for Cloud Apps — into a single add-on. Gives comprehensive identity, endpoint, email, and cloud app protection at a lower combined cost than licensing each component separately.

  • Bundles Microsoft's E5-level security stack — Entra ID P2, Defender for Identity, Defender for Endpoint Plan 2, Defender for Office 365 Plan 2, and Defender for Cloud Apps — into a single add-on, purchased on a 3-year term. Gives comprehensive identity, endpoint, email, and cloud app protection at a lower combined cost than licensing each component separately.

  • A frontline worker–priced edition of the Defender Suite (formerly the E5 Security add-on), bundling Entra ID P2, Defender for Identity, Defender for Endpoint Plan 2, Defender for Office 365 Plan 2, and Defender for Cloud Apps — extending enterprise-grade identity, device, email, and cloud app protection to shift-based and deskless staff at a reduced cost.

  • Full vulnerability management capabilities for any EDR solution — not just Defender for Endpoint. Includes device discovery and inventory, risk-based vulnerability assessment, configuration and security baseline assessment, and remediation tracking. Suited to organisations that need comprehensive vulnerability management but don't already have Defender for Endpoint Plan 2 as the underlying EDR

  • An add-on for Defender for Endpoint Plan 2 customers, extending core vulnerability management with premium capabilities: security baseline assessment, blocking known vulnerable applications, browser extension inventory, digital certificate assessment, and network share analysis. Gives security teams deeper, more proactive visibility into an organisation's attack surface beyond the core Plan 2 vulnerability tools.

  • Part of the Microsoft Defender security product family, providing threat protection for the specific workload named.