Jump to content

Recommended Posts

Posted

We're looking at ditching a few 3rd party systems (phishing, AV, vuln scanning) and supplementing our A3 licences with A5 Security. That gives us P2 defender for endpoint for staff, and then add some device licences and we've got Defender P2 for students too - great!

 

What I'm not so clear on, is the server licencing. We're told that if we want P2 for server, we have to buy that through Azure, which it looks like you have to Arc the server first, which is fine, but the costs then seem to be eye-watering...

 

Defender P2 for Server: £11 per server per month. Even if we whittled down a server or two, we're still looking at minimum 12, so £1,584 per year...

 

Do we just settle for P1 for servers, and P2 the "important ones" (hosts & DCs), is P2 necessary at all? Or have we missed something blindly obvious?

 

Thanks!

Posted

We're looking at doing the same currently, with the A3/A5 and P2 for Stu/Staff, but as you said it's hard to make P2 fit with Servers compared to the alternatives like the SWGFL Sophos deal at £6~ per year

P2 is needed if you want Vuln etc on servers, but with us having 20~ VMs (then hosts/backup servers etc on top) it's looking like "just" P2 for servers will cost more than the entire estate covered with Sophos would have cost

Steve

Posted
13 hours ago, Steve21 said:

We're looking at doing the same currently, with the A3/A5 and P2 for Stu/Staff, but as you said it's hard to make P2 fit with Servers compared to the alternatives like the SWGFL Sophos deal at £6~ per year

P2 is needed if you want Vuln etc on servers, but with us having 20~ VMs (then hosts/backup servers etc on top) it's looking like "just" P2 for servers will cost more than the entire estate covered with Sophos would have cost

Steve

 

I'm not sure about the vulnerability bit, you seem to get *most* of the vulnerability management stuff in P1:

Compare Microsoft Defender Vulnerability Management plans and capabilities - Microsoft Defender Vulnerability Management | Microsoft Learn

 

If you assume your GPO applies evenly across the estate, then the security baseline assessment need only be on one machine I suppose...

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...