Defender Antivirus Enforcement Report

This guide will show an administrator how to access the antivirus status report which will provide information on the agent status for Intune joined devices.

Role Requirements

Procedure Scope: Administrators

Required Group Membership: Admin.Security

Handbook Reference

Package: TBD

Domain: TBD

Modifies: TBD

Defender Antivirus Report

  1. Navigate to the Antivirus Agent Status Report – Intune portal, locate and select the Generate Report action. The generated report will allow you view antivirus agent status information. Administrators can find information about if a device has real-time or network protection, the status of Windows Defender on the machine, if Tamper protection is enabled, if the device is a virtual machine, or a physical device, and will provide information such as the name of the unhealthy device, the username, and severity. If you are looking for a specific event, you can utilize the provided filters as desired to return the results you need.

Need Assistance?

Reach out to your Customer Success Manager to discuss how a Sittadel cybersecurity analyst can assist in managing these tasks for you. New to our services? Inquire about arranging a consultation to explore optimizing your Azure environment for painless management.