Microsoft Defender for Servers Plan 2 (per server/month)

Microsoft Defender for Servers Plan 2 (per server/month)

Brand: Microsoft | Category: Network Security

SKU: DG7GMGF0M7BX | Part #: DG7GMGF0M7BX | MPN: DG7GMGF0M7BX

Contact for Pricing — Request a Quote

Request a Quote Contact Us

About the Microsoft Defender for Servers Plan 2 (per server/month)

Microsoft Defender for Servers Plan 2 is a unified endpoint detection and response (EDR) and cloud security posture management (CSPM) solution designed for enterprise server environments. The offering combines behavioral threat detection, advanced investigation tools, and automated response capabilities across Windows and Linux servers, with integration into the Microsoft Defender XDR ecosystem for correlated threat intelligence across endpoints, identities, and cloud resources.

Plan 2 extends foundational server protection with threat and vulnerability management, including OS vulnerability assessments, missing patch identification, and misconfiguration detection. The service leverages machine learning and behavioral analytics to identify zero-day exploits, lateral movement patterns, and advanced persistent threats (APTs) in real time, enabling security operations teams to investigate and respond to incidents with forensic-grade visibility into process execution, file activities, and network communications.

This SKU addresses regulatory mandates in healthcare (HIPAA, HITECH), financial services (PCI-DSS, SOX), and government sectors (FedRAMP, NIST) that require EDR and continuous posture monitoring. Deployment occurs through the Azure portal or legacy System Center Configuration Manager, with agentless scanning available for on-premises and multicloud infrastructure.

Ideal for

  • Financial services institutions implementing mandatory EDR controls and continuous vulnerability scanning across critical trading, settlement, and payment processing servers
  • Healthcare organizations meeting HIPAA audit requirements with real-time threat detection and automated investigation on electronic health record (EHR) infrastructure
  • Regulated data centers performing compliance attestation for SOC 2, ISO 27001, and industry-specific standards through CSPM compliance mapping
  • Hybrid cloud enterprises monitoring Windows and Linux servers across Azure, AWS, and on-premises to enforce consistent security baselines and threat policies
  • Managed security service providers (MSSPs) offering 24/7 threat hunting and incident response at scale using Defender for Servers telemetry and alert enrichment
  • Government agencies achieving FedRAMP and NIST Cybersecurity Framework alignment with automated vulnerability remediation recommendations and forensic investigation capabilities

Technical specifications

ManufacturerMicrosoft
ManufacturerPartNumberDG7GMGF0M7BX
ProductNameDefender for Servers Plan 2
BillingModelPer Server Per Month
SupportedOperatingSystemsWindows Server 2012 R2 and later; Ubuntu 16.04, 18.04, 20.04, 22.04 LTS; RHEL 7.0, 8.0, 9.0; CentOS 7.0, 8.0; Debian 9, 10, 11; Oracle Linux 7.0, 8.0
DeploymentMethodsAzure Portal, System Center Configuration Manager, Group Policy, Agentless scanning via Azure connectors
EDRCapabilitiesBehavioral threat detection, process execution monitoring, file activity tracking, network communication analysis, advanced hunting with KQL
VulnerabilityManagementOS vulnerability assessment, missing patches detection, misconfiguration identification, CVSS scoring and prioritization
CSPMCapabilitiesCloud security posture assessment, compliance benchmarking (CIS, PCI-DSS, HIPAA, NIST), misconfiguration remediation recommendations
ThreatIntelligenceIntegrationMicrosoft Threat Intelligence, Defender Threat Intelligence feeds, integration with Defender XDR
IncidentResponseAutomated containment actions, live response capabilities, forensic timeline reconstruction, evidence collection
InteroperabilityStandardsSyslog export, CEF format support, SIEM integration (Splunk, ArcSight, QRadar), MITRE ATT&CK framework mapping
DataRetention180 days default; configurable up to 180 days for investigation and compliance
GeoAvailabilityAvailable in Microsoft Defender sovereign clouds (GCC, GCC High, DoD) and commercial Azure regions
ReportingDashboardsThreat and Vulnerability Management portal, CSPM compliance dashboard, incident timeline and forensic reports
LaunchDateQ1 2023

Available from Omnixon Global. Submit an RFQ and our team will confirm configuration and availability for your order.

Technical Specifications

BrandMicrosoft
CategoryNetwork Security
SKUDG7GMGF0M7BX
Part NumberDG7GMGF0M7BX
ConditionNew
ManufacturerPartNumberDG7GMGF0M7BX
ProductNameDefender for Servers Plan 2
BillingModelPer Server Per Month
SupportedOperatingSystemsWindows Server 2012 R2 and later; Ubuntu 16.04, 18.04, 20.04, 22.04 LTS; RHEL 7.0, 8.0, 9.0; CentOS 7.0, 8.0; Debian 9, 10, 11; Oracle Linux 7.0, 8.0
DeploymentMethodsAzure Portal, System Center Configuration Manager, Group Policy, Agentless scanning via Azure connectors
EDRCapabilitiesBehavioral threat detection, process execution monitoring, file activity tracking, network communication analysis, advanced hunting with KQL
VulnerabilityManagementOS vulnerability assessment, missing patches detection, misconfiguration identification, CVSS scoring and prioritization
CSPMCapabilitiesCloud security posture assessment, compliance benchmarking (CIS, PCI-DSS, HIPAA, NIST), misconfiguration remediation recommendations
ThreatIntelligenceIntegrationMicrosoft Threat Intelligence, Defender Threat Intelligence feeds, integration with Defender XDR
IncidentResponseAutomated containment actions, live response capabilities, forensic timeline reconstruction, evidence collection
InteroperabilityStandardsSyslog export, CEF format support, SIEM integration (Splunk, ArcSight, QRadar), MITRE ATT&CK framework mapping
DataRetention180 days default; configurable up to 180 days for investigation and compliance
GeoAvailabilityAvailable in Microsoft Defender sovereign clouds (GCC, GCC High, DoD) and commercial Azure regions
ReportingDashboardsThreat and Vulnerability Management portal, CSPM compliance dashboard, incident timeline and forensic reports
LaunchDateQ1 2023