Microsoft Defender Setup and Overview Hub¶
Last updated: 2026-07-27
References
Microsoft Defender is a security portfolio, not a single switch. Use this hub to choose the right protection for cloud workloads, devices, identities, data, and security operations.
What is Microsoft Defender?
Understand the boundaries between Defender for Cloud, Defender XDR, Sentinel, and enforcement tools.
Cloud postureDefender CSPM
Discover cloud risk, assess configuration, and prioritize remediation across Azure, AWS, and GCP.
Workload protectionDefender for Containers
Secure AKS, Arc-enabled Kubernetes, registries, and supported multicloud container estates.
Workload protectionDefender for Servers
Plan detection and response for Windows and Linux across Azure, hybrid, and multicloud environments.
Security operationsMicrosoft Defender XDR
Correlate endpoint, identity, email, cloud app, and cloud workload signals into unified incidents.
DeploymentDeployment checklist
Use a structured path for licensing, pilot scope, verification, response ownership, and rollout.
PlanningConfigure plans and pricing
Compare Defender plans and tiers, check regional support, configure settings, and estimate cost.
Browse by environment¶
| Environment | Recommended starting point |
|---|---|
| Azure | Use the Defender for Cloud navigation section for workload-specific plans. |
| AWS and Google Cloud | Multicloud and hybrid guidance |
| On-premises and other clouds | Azure Arc onboarding |
| Microsoft 365 and SaaS | Use the Microsoft Ecosystem navigation section. |
Configure and estimate¶
Before a pilot, use the configuration, plans, and pricing reference to configure Defender settings, compare tiers, verify regional eligibility, and open current pricing and cost-calculation tools.
Use the Guides¶
Start with the overview to establish product boundaries, then select the guide that owns the asset or identity you need to protect. Each guide follows the same operating sequence: define scope and ownership, confirm support and licensing, enable a controlled pilot, verify telemetry and response, then expand with evidence-backed controls. Use the deployment checklist to record the decision, the operations guides to establish governance and automation, and the product guides to define service-specific prevention and response actions.
Layout and palette follow the Cloud2BR TEC academy pattern. The header icon and favicon use the public Cloud2BR OSS - Learning Hub organization avatar.