Hi Microsoft Team
I just wanted to clarify a few things related to onboarding a windows 10 client to ASC standard tier:
As it stands, ASC standard tier integrates with MS defender ATP and includes EDR features, however, when we are onboarding non-azure machines,say windows 10 E3, would it be counted as a node which would incur PAYG charges? or windows 10 E3 would be required to be stepped up to E5 (as that includes MS defender ATP)?
The pricing documentation REF[Link]: https://azure.microsoft.com/en-us/pricing/details/security-center/ , provides information around pricing VM which are onboard in ASC - which is
$14.60/Server/Month
Included data - 500 MB/day
what about the non-azure machine (windows 10 E3), what is the pricing around these machines if it is PAYG?
I hope this makes sense
Thanks
⚠Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.
@mikki Thank you for your query. We will investigate and update this thread with related information.
@mikki Azure security Center includes the Microsoft Defender ATP so if you have a machine which is a non-azure Windows machine , and your ASC work space must be standard tier. You would not need to pay extra for windows E5 licenses for Defednder ATP EDR features.
Once you on board your servers to Azure Security Center , the Microsoft monitoring agent is installed automatically and the Defender related ATP features get enabled on the machine. Hope this answers your query. WE will close this issue now. Please check the linked article for more details on on-boarding. Should you have any further queries , feel free to tag me or the author of this document to your reply and we will be happy to help .
Thank you.
Hi @shashishailaj
Thanks for the clarification
So in this case, since no additional license is required for windows 10 E3 machine, Azure security center standard tier pricing which is $14.60/Server/Month applies rite? REF[Link]: https://azure.microsoft.com/en-us/pricing/details/security-center/
@mikki Yes , the standard tier security center monitoring agent would enable the Windows Defender endpoint detection and response features on the Windows E3 machine.