Brand: Microsoft | Category: Network Security
SKU: DG7GMGF0M7BX | Part #: DG7GMGF0M7BX | MPN: DG7GMGF0M7BX
Contact for Pricing — Request a Quote
Microsoft Defender for Servers Plan 2 is a unified endpoint detection and response (EDR) and cloud security posture management (CSPM) solution designed for enterprise server environments. The offering combines behavioral threat detection, advanced investigation tools, and automated response capabilities across Windows and Linux servers, with integration into the Microsoft Defender XDR ecosystem for correlated threat intelligence across endpoints, identities, and cloud resources.
Plan 2 extends foundational server protection with threat and vulnerability management, including OS vulnerability assessments, missing patch identification, and misconfiguration detection. The service leverages machine learning and behavioral analytics to identify zero-day exploits, lateral movement patterns, and advanced persistent threats (APTs) in real time, enabling security operations teams to investigate and respond to incidents with forensic-grade visibility into process execution, file activities, and network communications.
This SKU addresses regulatory mandates in healthcare (HIPAA, HITECH), financial services (PCI-DSS, SOX), and government sectors (FedRAMP, NIST) that require EDR and continuous posture monitoring. Deployment occurs through the Azure portal or legacy System Center Configuration Manager, with agentless scanning available for on-premises and multicloud infrastructure.
| Manufacturer | Microsoft |
| ManufacturerPartNumber | DG7GMGF0M7BX |
| ProductName | Defender for Servers Plan 2 |
| BillingModel | Per Server Per Month |
| SupportedOperatingSystems | Windows Server 2012 R2 and later; Ubuntu 16.04, 18.04, 20.04, 22.04 LTS; RHEL 7.0, 8.0, 9.0; CentOS 7.0, 8.0; Debian 9, 10, 11; Oracle Linux 7.0, 8.0 |
| DeploymentMethods | Azure Portal, System Center Configuration Manager, Group Policy, Agentless scanning via Azure connectors |
| EDRCapabilities | Behavioral threat detection, process execution monitoring, file activity tracking, network communication analysis, advanced hunting with KQL |
| VulnerabilityManagement | OS vulnerability assessment, missing patches detection, misconfiguration identification, CVSS scoring and prioritization |
| CSPMCapabilities | Cloud security posture assessment, compliance benchmarking (CIS, PCI-DSS, HIPAA, NIST), misconfiguration remediation recommendations |
| ThreatIntelligenceIntegration | Microsoft Threat Intelligence, Defender Threat Intelligence feeds, integration with Defender XDR |
| IncidentResponse | Automated containment actions, live response capabilities, forensic timeline reconstruction, evidence collection |
| InteroperabilityStandards | Syslog export, CEF format support, SIEM integration (Splunk, ArcSight, QRadar), MITRE ATT&CK framework mapping |
| DataRetention | 180 days default; configurable up to 180 days for investigation and compliance |
| GeoAvailability | Available in Microsoft Defender sovereign clouds (GCC, GCC High, DoD) and commercial Azure regions |
| ReportingDashboards | Threat and Vulnerability Management portal, CSPM compliance dashboard, incident timeline and forensic reports |
| LaunchDate | Q1 2023 |
Available from Omnixon Global. Submit an RFQ and our team will confirm configuration and availability for your order.
| Brand | Microsoft |
| Category | Network Security |
| SKU | DG7GMGF0M7BX |
| Part Number | DG7GMGF0M7BX |
| Condition | New |
| ManufacturerPartNumber | DG7GMGF0M7BX |
| ProductName | Defender for Servers Plan 2 |
| BillingModel | Per Server Per Month |
| SupportedOperatingSystems | Windows Server 2012 R2 and later; Ubuntu 16.04, 18.04, 20.04, 22.04 LTS; RHEL 7.0, 8.0, 9.0; CentOS 7.0, 8.0; Debian 9, 10, 11; Oracle Linux 7.0, 8.0 |
| DeploymentMethods | Azure Portal, System Center Configuration Manager, Group Policy, Agentless scanning via Azure connectors |
| EDRCapabilities | Behavioral threat detection, process execution monitoring, file activity tracking, network communication analysis, advanced hunting with KQL |
| VulnerabilityManagement | OS vulnerability assessment, missing patches detection, misconfiguration identification, CVSS scoring and prioritization |
| CSPMCapabilities | Cloud security posture assessment, compliance benchmarking (CIS, PCI-DSS, HIPAA, NIST), misconfiguration remediation recommendations |
| ThreatIntelligenceIntegration | Microsoft Threat Intelligence, Defender Threat Intelligence feeds, integration with Defender XDR |
| IncidentResponse | Automated containment actions, live response capabilities, forensic timeline reconstruction, evidence collection |
| InteroperabilityStandards | Syslog export, CEF format support, SIEM integration (Splunk, ArcSight, QRadar), MITRE ATT&CK framework mapping |
| DataRetention | 180 days default; configurable up to 180 days for investigation and compliance |
| GeoAvailability | Available in Microsoft Defender sovereign clouds (GCC, GCC High, DoD) and commercial Azure regions |
| ReportingDashboards | Threat and Vulnerability Management portal, CSPM compliance dashboard, incident timeline and forensic reports |
| LaunchDate | Q1 2023 |