

This article describes the structure of the configuration profile, includes a recommended profile that you can use to get started, and provides instructions on how to deploy the profile.

Changing the preferences that are set through the configuration profile requires escalated privileges and isn't available for users without administrative permissions. Preferences that are managed by your security operations team take precedence over preferences that are set locally on the device. In enterprise organizations, Microsoft Defender for Endpoint on macOS can be managed through a configuration profile that is deployed by using one of several management tools. To configure Microsoft Defender for Endpoint on macOS using the command-line interface, see Resources.

This article contains instructions for how to set preferences for Microsoft Defender for Endpoint on macOS in enterprise organizations.
