Your challenge

Microsoft Defender Antivirus, formerly known as Windows Defender, is a real-time antivirus protection software that can be used to detect threats from viruses, malware and spyware in apps, the cloud and on the web. Administrators use it to strengthen IT security on their corporate network.

However, using the tool can be time-consuming if centralized management is not enabled. The configurations via Microsoft management solutions such as Intune and SCCM further complicate a clear organization.

Our solution

ACMP Defender Management is designed to give administrators the ability to manage Microsoft Defender Antivirus in a single interface across all clients and servers.

ACMP Defender Management reduces effort and provides cost savings:

  • Antivirus management is done directly from the ACMP Console.
  • Simple, centralized configuration
  • Dashboards and reports make it easy to master security audits, for example.
  • High automation through perfect interaction with other ACMP modules
  • Saves costs by eliminating the requirement for an additional antivirus solution.
  • Microsoft Defender Antivirus offers more functions than comparable antivirus solutions.
  • The solution is easy to deploy and offers better performance because Microsoft Defender Antivirus is already integrated within Windows.

Thus, ACMP Defender Management forms the basis for comprehensive, fully integrated antivirus protection of corporate IT.

Queries, dashboards and reports

ACMP Defender Management displays Defender status, scans histories, latest threats, next scan information, and provides the ability to query used/unused configuration profiles and more.

Tamper Protection

Tamper protection prevents the configuration of various settings so that malicious apps cannot change important antivirus settings of Microsoft Defender. Tamper protection cannot be disabled and enables centralized deployment of data.

Permission and user rights management

Administrators can configure user permissions for configuration profiles, containers and query actions. In addition, permissions for groups and their users can be customized.

Event overview

Regular scanning for detections, threats and updates. Notifications about detections are made in real time. There is also an overview of all found threats, failed updates and other events. The display of events can be configured. It is also possible to filter, sort and delete outdated events. From an event, it is possible to navigate directly to the affected client.

Central quarantine

Quarantined files can be viewed, restored, and actions performed on them centrally from the console. An automatic clean-up service allows quarantined files to be deleted after a defined period of time.

Starting antivirus scan on the client

You can start the antivirus scan on a client and display the status of the scan in the logs. Additionally there is the possibility to assign a configuration profile to a client or to remove them.


Management without cloud connection

Microsoft does not offer companies with critical infrastructures that are not directly connected to the Internet for security reasons the possibility to manage Microsoft Defender without a cloud connection. Using ACMP Defender Management solves this problem, as ACMP can be used directly "on premises" in a simple and straightforward manner. Thus, even in such environments, there is nothing to be said against using Microsoft Defender on the end devices.

Screenshot ACMP Defender Management Client Details

Your advantages at a glance

  • Central administration via the ACMP console
  • Easy, convenient configuration via the proven ACMP interface
  • Improved functionality
  • Easy start-up and better performance, as already integrated in the operating system
  • Interaction with other ACMP modules
  • Cost savings, because no additional antivirus solution is needed anymore
  • Dashboards and reports, e.g. to master security audits
  • Microsoft Defender Antivirus can be configured to get signature updates from your WSUS server, from the Internet or via ACMP CAWUM.

Our tip

ACMP is a modular client management solution. The various ACMP modules fit together like gear wheels, providing a holistic approach to the daily challenges faced by IT departments. This means that by combining different modules, impressive synergy effects can be achieved for your IT.

ACMP Defender Management provides IT administrators with a comprehensive way to manage Microsoft Defender Antivirus with precision and efficiency in one console. Uncomplicated, detailed and up-to-date. Together with ACMP Security Detective and ACMP CAWUM, it is an important element in day-to-day IT operations.

ACMP Inventory

The complete overview for hard- and software

Learn more

ACMP Security Detective

100% safety in all respects

Learn more

ACMP Complete Aagon Windows Update Management

Replace Microsoft WSUS Server

Learn more

Vulnerability Management

Secure back doors and protect your own IT

Learn more

Interfaces to ACMP

Client Management in all aspects of IT

Learn more

Any questions? We are happy to help you or make an appointment.

Seven good reasons for using ACMP as a client management solution

  • Nearly 30 years of experience in client management software "Made in Germany" result in products from practice, for practice
  • Full purchasing flexibility
  • Tailored support
  • Full transparency as to which IT resources are currently in use
  • Avoidance of vulnerabilities and security risks
  • Webinars and other information offerings in addition to continuing education for IT managers.
  • ACMP is a 4-time champion in the Techconsult Professional User Rating 2021 IT Operations


What Microsoft licensing is required for Microsoft Defender ATP?

With the Windows 10 E3 license, the ATP is available in a slimmed-down form. To use the full functionality of Advanced Threat Protection, one of the following Microsoft volume licenses is required: Windows 10 Enterprise E5, Windows 10 Education A5, Microsoft 365 E5 or Microsoft 365 A5. Microsoft has summarized the exact functionality of the Defender, depending on the licensing, here.

Where is the data processed and stored by MS Defender?

The data is stored centrally and only within the ACMP database.

How is the module licensed?

The module is licensed on a client basis as a rental license.

Can the module also be used as a stand-alone solution?

Yes, only ACMP Inventory is required.

What happens to quarantined files?

They can be restored or automatically deleted using the clean-up service. Exceptions can also be defined for quarantined files.

Are there automatic notifications in case of detections?

This is implemented using reports. As soon as a notification of a detection is received, a report can be sent automatically.

Can fixed scan times be defined?

It is possible to define times for quick, full and custom scans.


Is it possible to assign Defender profiles dynamically?

Yes, profiles can be assigned dynamically via the containers.

Es scheint, als wären Sie auf nicht auf der gewünschten Sprachversion dieser Website gelandet. Möchten Sie wechseln?

Zur Version