Defender for Endpoint De-Isolation Action

This guide will show an administrator how to alleviate a device isolation process that was initiated on an MDE enrolled device.

Role Requirements

Procedure Scope: Administrators

Required Group Membership: Admin.Security

Handbook Reference

Package: TBD

Domain: TBD

Modifies: TBD

Defender for Endpoint Device De-Isolation

  1. Navigate to the Device Inventory – Microsoft Defender portal, locate and select the device you wish to remove the isolation state from.
  2. A pop-out will generate displaying device information for the entry, locate and select the three dots, followed by selecting the Release from Isolate action.
  3. A prompt will be generated asking for finalization on the de-isolation action, select Confirm to complete the device de-isolation.

Need Assistance?

Reach out to your Customer Success Manager to discuss how a Sittadel cybersecurity analyst can assist in managing these tasks for you. New to our services? Inquire about arranging a consultation to explore optimizing your Azure environment for painless management.