Hey everyone! 👋 Still getting up to speed on the whole EDR/XDR space, so apologies if this is basic.
Our company is already using Microsoft 365 E5, so we have Defender for Endpoint P1. The new P2 features like automated investigation/remediation and threat & vulnerability management look really powerful. But the jump in cost seems significant.
For those who've evaluated or upgraded:
- Are the P2 automation features a real game-changer for a lean IT ops team, or just nice-to-have?
- Does the integrated vulnerability management replace a dedicated vuln scanning tool, or is it more of a supplement?
Just trying to figure out if it's the right next step or if we should look at connecting our current stack to a different XDR. Thanks for any insights!