Skip to content
#

microsoft-defender-for-endpoint

Here are 27 public repositories matching this topic...

A browser-based Microsoft Defender for Endpoint audit tracker for MSSP security engineers, mapping ~270 tasks across multiple frameworks including — NIST CSF 2.0, Cyber Essentials, SOC 2, and NIST 800-53. Features per-task status, notes, live progress metrics, framework switching, dark/light mode, and CSV, HTML, and JSON export.

  • Updated Apr 1, 2026
  • HTML

Continuous Threat & Vulnerability Management (TVM) using Microsoft Defender for Endpoint — risk-based exposure scoring, CVE prioritisation, ASR rule deployment, and PUA protection via Intune.

  • Updated Jul 19, 2026
  • PowerShell

Enterprise integration of Microsoft Defender for Cloud Apps (MDCA) with Microsoft Defender for Endpoint (MDE) — Shadow IT detection, OAuth app governance, and SaaS security posture management across a 31,000+ app catalogue.

  • Updated Jul 19, 2026
  • HTML

A curated list of high-quality resources focused on securing Microsoft cloud environments, including Identity (Entra ID), Microsoft 365, Microsoft Defender, Sentinel and Microsoft Purview.

  • Updated May 24, 2026

A browser-based Microsoft Defender for Endpoint deployment tracker for MSSP security engineers, mapping 57 actionable tasks across all 6 NIST CSF 2.0 functions. Features per-task status tracking, notes, live progress metrics, dark/light mode, and full export support in CSV, HTML report, and JSON config formats.

  • Updated Mar 22, 2026
  • HTML

Detection queries, OAuth permission risk matrix, and AI tool risk assessment checklist for measuring shadow AI and approved-software risk in enterprise environments. Validated on Microsoft Defender for Endpoint (KQL) and Rapid7 InsightIDR (LEQL). Released alongside DEF CON 34 talk "The Software Request Trap."

  • Updated Apr 30, 2026

Add this topic to your repo

To associate your repository with the microsoft-defender-for-endpoint topic, visit your repo's landing page and select "manage topics."

Learn more