<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Bitdefender GravityZone Security for Virtual Env per CPU?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Security Virtual Appliance</strong> – Central scanning appliance that offloads antimalware work from each VM.<br /><strong>Featherweight endpoint agent</strong> – Bitdefender Endpoint Security Tools runs inside every protected machine.<br /><strong>GravityZone Control Center</strong> – One web console for policies, tasks, inventory and reports.<br /><strong>Layered malware protection</strong> – Signatures, machine learning, Advanced Threat Control and Exploit Protection.<br /><strong>vCenter inventory integration</strong> – Imports the vSphere folder and cluster structure automatically.<br /><strong>Important</strong> – EDR, patch management and encryption are separate GravityZone licences.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Bitdefender GravityZone Security for Virtual Env per CPU?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">This is the virtualisation and server workload module of the GravityZone platform, centrally managed from the GravityZone Control Center and counted per physical CPU socket of the virtualisation host rather than per virtual machine. Bitdefender now markets the line as GravityZone Cloud and Server Security, while the technical documentation and most retail listings still use the older name Security for Virtualized Environments, or SVE.<br /><br /><strong>Higher consolidation ratio</strong> – Frees CPU and IOPS so more VMs fit per host.<br /><strong>No update storms</strong> – Signature updates land on the appliance, not every VM.<br /><strong>Golden image friendly</strong> – Avoids duplicate machine entries when cloning non-persistent desktops.<br /><strong>Mixed estate coverage</strong> – One console for Windows and Linux, on-premises and cloud.<br /><strong>Automatic scanning fallback</strong> – Agents scan locally if the appliance becomes unreachable.<br /><strong>EU hosting option</strong> – Console can be EU-hosted or run on your premises.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains where the protection built into Windows stops and why server and VM estates usually need a separately managed security layer.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Bitdefender GravityZone Security for Virtual Env per CPU suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The deciding factor is not headcount but whether you run your own virtualisation hosts. A company with three physical hosts and sixty virtual machines gets more out of this product than a larger company that has moved everything to managed SaaS.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Often</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Likely</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Increasing</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Own virtualisation hosts</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Sometimes</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Limited</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Bitdefender GravityZone Security for Virtual Env per CPU meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The revised Information Security Act introduced a reporting obligation for operators of critical infrastructure in Switzerland, not for every company, so the first question is whether your organisation falls into that group at all. Operators who are covered must report a cyberattack to the Federal Office for Cybersecurity (BACS) within 24 hours of discovering it. This product supports that duty in one concrete way: the Control Center holds a timestamped record of detections, quarantine actions and the affected machines, which is the factual core of an initial report. It does not produce the incident narrative a follow-up report needs, because without the separately licensed EDR module there is no process tree, no root-cause chain and no correlation across machines, so reconstructing how an attacker moved through the estate remains manual work. It also does not track the 24-hour deadline, notify anyone on your behalf or generate the report itself. This description is not legal advice; whether the reporting obligation applies to your organisation should be clarified with a qualified legal advisor.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Bitdefender GravityZone Security for Virtual Env per CPU meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No product makes an organisation compliant with the NIS 2 Directive, because the directive addresses governance, processes and accountability, and software can only supply part of the evidence. NIS 2 requires in-scope entities to put measures in place across risk analysis and security policies, incident handling, business continuity including backup management, supply chain security, vulnerability handling and disclosure, and the assessment of how effective those measures are. This product contributes to the incident handling and technical protection categories: malware protection running on every virtual machine, policy enforced centrally rather than per host, and a console record of what was detected and what the agent did about it. It contributes nothing to business continuity, because there is no backup or recovery component in the product at all, and nothing to supply chain security. Vulnerability handling is only partly addressed and requires the separately licensed patch management add-on, and the depth of incident handling stays shallow without EDR.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Bitdefender GravityZone Security for Virtual Env per CPU help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, for a specific and fairly narrow band of questions. It answers the items on endpoint and server malware protection directly: every protected virtual machine runs a managed agent, protection settings are enforced from a central policy rather than configured per machine, and the console can show per-machine coverage and detection history as evidence rather than as an assertion. It does not answer the items that large customers increasingly weight most heavily. There is no continuous detection and response capability, no 24/7 monitoring, no disk encryption and key escrow, no multi-factor authentication, no file integrity monitoring and no email filtering, and vulnerability remediation with a documented patch cadence is outside the product as delivered. When you need to close those gaps, staying inside the GravityZone family is normally the cheaper and administratively simpler route, because the add-ons run through the same console and the same agent: Patch Management for the vulnerability items, Full Disk Encryption for the data-at-rest items, Integrity Monitoring for change-detection items, and Compliance Manager where the questionnaire asks for continuous evidence collection. Where the questionnaire specifically asks for EDR, moving to Business Security Enterprise is usually more sensible than bolting a second vendor's agent onto the same virtual machines.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What is the difference between Security for Virtual Env per CPU and Business Security Enterprise?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The decisive difference is detection and response: Business Security Enterprise includes EDR with automated correlation of an attack across multiple endpoints, and this product does not include EDR at all. The second difference is architectural rather than commercial. This product is designed around the Security Virtual Appliance, so scanning engines and threat intelligence live on a shared appliance instead of being duplicated inside every virtual machine, which is what makes it attractive in dense VDI and server estates. Business Security Enterprise is built around the full agent on each endpoint and adds prevention layers such as HyperDetect and Sandbox Analyzer. Choose this product when your priority is host density and predictable performance on your own hypervisors; choose Business Security Enterprise when your priority is investigating what happened after something got through.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Capability</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Security for Virtual Env per CPU</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Business Security Enterprise</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Central management console</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Windows and Linux server protection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">EDR with cross-endpoint correlation</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">HyperDetect and Sandbox Analyzer</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Patch management</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Add-on</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Add-on</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Full disk encryption</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Add-on</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Add-on</td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The most important one is recent and often missed: Bitdefender ended support for the agentless VMware NSX-T and NSX-V integrations on 31 August 2025, after Broadcom retired the NSX program, and directs customers to Security Server Multi-Platform instead. In practice this means the historic agentless selling point no longer applies, and an agent has to be installed and maintained inside every protected virtual machine, which changes your golden image and template work. The scope is also narrower than the GravityZone name suggests: there is no EDR, no patch management, no encryption management, no Exchange mailbox protection and no mobile device coverage in this product, and each of those is a separate licence that most buyers eventually add. There is no backup or recovery function of any kind, which matters because ransomware recovery in a virtual estate depends on restorable snapshots and backups rather than on detection. Finally, if your organisation has data location requirements, note that the console is available cloud-hosted with an EU-hosted option or as an on-premises appliance you run yourself, so an EU-hosted console is not the same thing as Swiss-hosted, and that distinction is worth confirming before you commit.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="data-loss-backups-avoid-outages"><strong>Data loss is expensive: How backups help you avoid outages</strong><br />Covers the recovery side that endpoint protection does not address, and why a virtual estate still needs a tested backup and restore process.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Bitdefender GravityZone Security for Virtual Env per CPU</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Is the management console cloud-based or on-premises?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Both models exist. GravityZone Control Center is available as a Bitdefender-hosted cloud console, including an EU-hosted option for organisations with data residency requirements, and as an on-premises virtual appliance that you deploy and maintain in your own environment.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does this product protect containers and Kubernetes?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Not as a Kubernetes platform. The Bitdefender endpoint agent includes a container protection module on Linux hosts, but coverage across Kubernetes clusters, registry image scanning and CI/CD pipeline scanning belongs to GravityZone Security for Containers, which is a separate product.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does it protect Microsoft Exchange mailboxes?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. The agent protects the Windows Server operating system that Exchange runs on, but mailbox-level antispam, anti-phishing and attachment scanning is delivered by GravityZone Security for Exchange Servers or GravityZone Extended Email Security, which are licensed separately.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-server,sec-cloud,sec-console" data-audience="b2b" data-count="3"> </div>