Rediger

Deploy Microsoft Defender for Endpoint on macOS with Jamf Pro

You can use Jamf Pro to deploy the Microsoft Defender for Endpoint installation package and required configuration profiles to organization-owned macOS devices.

Jamf Pro is a separate product that isn't part of Defender for Endpoint and isn't included with Defender for Endpoint subscriptions. To use these procedures, your organization needs a separate Jamf Pro subscription. For product and subscription information, see Jamf Pro. To compare this method with Microsoft Intune, another mobile device management (MDM) solution, or manual deployment, see Deploy Defender for Endpoint on macOS.

Important

This article contains information about third-party tools. This is provided to help complete integration scenarios, however, Microsoft does not provide troubleshooting support for third-party tools.
Contact the third-party vendor for support.

Prerequisites

Before you begin the Jamf Pro deployment, make sure you meet the following requirements:

  • Review the Defender for Endpoint on macOS prerequisites, including licensing, supported macOS versions, system extensions and permissions, and network connectivity.
  • Verify that your organization has a Jamf Pro subscription.
  • Verify that your Jamf Pro account can manage computer groups, configuration profiles, policies, packages, scripts, and enrollment.
  • Sign in to your organization's Jamf Pro instance.

Deploy Defender for Endpoint using Jamf Pro

Complete the deployment articles in this order:

  1. Set up device groups for Defender for Endpoint in Jamf Pro.
  2. Deploy and configure Defender for Endpoint on macOS with Jamf Pro.
  3. Enroll macOS devices in Jamf Pro for Defender for Endpoint.

Warning

Repackaging the Defender for Endpoint installation package is not a supported scenario. Doing so can negatively impact the integrity of the product and lead to adverse results, including but not limited to triggering tampering alerts and updates failing to apply.