What Plan 2 Adds
Defender for Office 365 Plan 2 extends Plan 1 with features like Threat Explorer for in-depth analysis, Attack Simulation Training to educate users, and Threat Trackers to block known malicious tactics. Automated Investigation and Response (AIR) is a key differentiator, enabling automated responses to detected threats, reducing the workload on security teams. These capabilities provide a more proactive and sophisticated approach to email security.
AU Mid-Market Application
In the AU mid-market, MDO Plan 2 is often included with Microsoft 365 E5 subscriptions. However, it’s also available as a standalone licence. Organisations conducting native phishing simulations – bypassing third-party platforms like KnowBe4 – will find Plan 2’s Attack Simulation Training valuable. The post-delivery ‘zap’ capabilities and the ability to conduct thorough investigations via Threat Explorer and AIR are critical for meeting APRA CPS 234 requirements regarding incident response and data breach preparedness, and align with the ACSC Essential Eight’s focus on detection and response.