Onboarding Devices to Microsoft Defender for Endpoint

Onboarding Method for Windows 7 SP1 Enterprise

Question

You are the IT administrator of an organization with a Microsoft 365 subscription and Microsoft 365 E5 licenses assigned to your users.

Your computers run Windows 7 SP1 Enterprise.

You want to onboard your devices to Microsoft Defender for Endpoint.

What onboarding method should you choose?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

Correct Answer: D

To onboard devices on down-level operating systems, you must first Configure and update System Center Endpoint Protection clients, and then Install and configure Microsoft Monitoring Agent (MMA) to report sensor data to Defender for Endpoint.

Option A is incorrect.

This is not possible for Windows 7 devices, but you can use a third party solution to onboard your non-windows devices.

Option B is incorrect.

This is a valid onboarding method, but only applicable to Windows 10 devices.

Option C is incorrect.

This is a valid onboarding method, but only applicable to Windows 10 devices.

Reference:

To know more about onboarding devices to defender for endpoint, please refer to the link below:

The correct answer is D. By installing and configuring Microsoft Monitoring Agent on the devices.

Microsoft Defender for Endpoint (formerly known as Microsoft Defender Advanced Threat Protection or ATP) is a cloud-based endpoint protection platform that helps enterprises to detect, investigate, and respond to advanced threats on their networks.

To onboard Windows 7 SP1 Enterprise devices to Microsoft Defender for Endpoint, the devices need to have the Microsoft Monitoring Agent (MMA) installed and configured. The MMA is a lightweight agent that can be installed on Windows devices and provides access to the security data generated by the device.

The MMA can be installed and configured using different methods, such as through System Center Configuration Manager (SCCM), Group Policy, or manually. However, since the devices are running Windows 7 SP1, which is no longer supported by SCCM, the Group Policy method is not an option.

Therefore, the best method to onboard the Windows 7 SP1 Enterprise devices to Microsoft Defender for Endpoint is by installing and configuring the Microsoft Monitoring Agent (MMA) on the devices. This can be done manually by downloading and installing the MMA from the Microsoft Defender for Endpoint portal, or by using a script or a deployment tool to automate the installation process.

Note that option A, Through a third-party solution, is not a valid onboarding method for Microsoft Defender for Endpoint, as it requires using a third-party solution to integrate with the platform. Option B, Through Mobile Device Management (including Microsoft Intune), is not applicable to Windows 7 SP1 Enterprise devices since they are not mobile devices. Option C, By creating a Group Policy, is not an option for Windows 7 SP1 Enterprise devices as mentioned above.