Skip to content
Vol. 1 · Ed. 2026
CyberGlossary
Entry № 430

EPP (Endpoint Protection Platform)

Reviewed byCybersecurity entrepreneur & security researcher

What is EPP (Endpoint Protection Platform)?

EPP (Endpoint Protection Platform)A preventive endpoint security suite that combines antivirus, anti-malware, host firewall and exploit protection to block threats before they execute on a device.


An Endpoint Protection Platform (EPP) is the preventive layer of endpoint defense, evolved from traditional antivirus into a multi-engine suite running on Windows, macOS, Linux and mobile devices. Typical capabilities include signature and ML-based malware detection, behavior-based blocking, exploit mitigation, application control, device control (USB), host-based firewall and disk encryption management. EPP focuses on stopping known and commodity threats at execution time, while EDR layers on continuous recording and post-compromise investigation; modern vendors combine EPP and EDR in a single agent. EPP is essential for meeting regulatory and insurance baseline controls.

Examples

  1. 01

    Microsoft Defender Antivirus blocking a malicious .docm macro using ML-based behavior monitoring.

  2. 02

    An EPP enforcing a USB device-control policy that prevents users from mounting unknown removable storage.

Frequently asked questions

What is EPP (Endpoint Protection Platform)?

A preventive endpoint security suite that combines antivirus, anti-malware, host firewall and exploit protection to block threats before they execute on a device. It belongs to the Defense & Operations category of cybersecurity.

What does EPP (Endpoint Protection Platform) mean?

A preventive endpoint security suite that combines antivirus, anti-malware, host firewall and exploit protection to block threats before they execute on a device.

How do you defend against EPP (Endpoint Protection Platform)?

Defences for EPP (Endpoint Protection Platform) typically combine technical controls and operational practices, as detailed in the full definition above.

What are other names for EPP (Endpoint Protection Platform)?

Common alternative names include: Endpoint Protection Platform, Next-Gen Antivirus, NGAV.

Related terms

See also