Defender Experience

Overview

The Devicie Defender Experience baseline provides an improved end user experience to the Windows Defender product, without compromising on security.

Intune Description:

Improved end user experience for Windows Defender.

Scope:

This baseline should be applied to Windows devices.

Policy Impact Areas:

When deployed, this policy will impact:

  • Improvement for user experience for Windows Defender

Deployment Notes

  1. Pre-Deployment Considerations:

    • Review existing Windows Defender (or other endpoint protection software) configurations

  2. Post-Deployment Validation:

    • Verify Windows Defender configuration - can users see the display of family options in Security Center

Configuration Settings

 
 

Name

Value

Windows Defender Security Center

Disable Family UI

(Enable) The users cannot see the display of the family options area in Windows Defender Security Center.

Disable Enhanced Notifications

(Enable) Windows Defender Security Center only display notifications which are considered critical on clients.

Disable Tpm Firmware Update Warning

(Enabled) No warning will be displayed if the firmware of the security processor (TPM) should be updated.

Hide Windows Security Notification Area Control

Enabled

Disable Clear Tpm Button

(Enabled) The security processor troubleshooting page will not show a button to initiate the process to clear the security processor (TPM)

Disable Account Protection UI

(Enable) The users cannot see the display of the Account protection area in Windows Defender Security Center.

 

Devicie Template Name

Defender Experience

Default Intune Deployed Name

Device-PROD-Defender Experience

Version

1.0

Template Last Updated

Nov 18, 2024

Document Status:

DRAFT

Document Last Updated:

Apr 10, 2025