Understanding and enabling Security Management
A long-held pain point for MDE customers is the distributed nature of its configuration. Intune, Configuration Manager, and Group Policy can all be used for client settings. This contrasts with most third-party protection software, which offers a unified console. To address this, Microsoft introduced Security Management for Microsoft Defender for Endpoint (abbreviated to Security Management).
Rather than deliver a brand-new configuration console, Security Management leverages the existing Microsoft Intune admin center’s Endpoint security blade. Devices are created as Azure AD objects for a trust relationship (if they don’t already exist in Azure AD) and MDE itself, rather than Intune, enforces the policy. These Azure AD objects can be added to groups for endpoint security policy targeting. Intune filters are ignored, so make sure you target groups.
Azure AD groups for Security Management
Security Management devices...