Skip to content

Review Microsoft Defender Endpoint Security

MSPControl exposes Microsoft Defender information for managed devices so technicians can review protection status and investigate security findings from the same operational platform used for device management.

For a managed device, the current product source exposes:

  • Microsoft Defender threat counts and protection status;
  • Microsoft Defender security recommendations;
  • Microsoft Defender vulnerability findings.

Use Device Details to review the selected device and its available security information.

Use Device Settings for the device-level configuration available to your MSPControl role and installation. Configuration options can depend on the connected services and the device state.

Microsoft Defender for Endpoint Operations

Section titled “Microsoft Defender for Endpoint Operations”

The current product source can locate a Microsoft Defender for Endpoint machine by its Microsoft Entra device ID and submit an offboarding request. Treat offboarding as a deliberate administrative operation: verify that you selected the intended device and tenant before proceeding.

After reviewing or changing endpoint security configuration:

  1. Return to the device record.
  2. Confirm that the expected Defender protection status is shown.
  3. Review any remaining recommendations or vulnerability findings.
  4. Investigate a missing device before repeating an onboarding or offboarding action.