<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Trend Micro Worry-Free Services + EDR Add-On?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Worry-Free Services protection</strong> – Anti-malware, behaviour monitoring, machine learning, firewall and web reputation.<br /><strong>Endpoint Sensor (EDR)</strong> – Records Windows endpoint activity for investigation and threat hunting.<br /><strong>Threat Investigation</strong> – IoC sweeping and colour-coded root cause analysis across endpoints.<br /><strong>Response actions</strong> – Isolate endpoints, block suspicious objects and submit samples to sandbox.<br /><strong>Device and data control</strong> – Device control, application control, endpoint DLP and full disk encryption.<br /><strong>Important</strong> – No email security, no patch management, no 24/7 managed monitoring.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Trend Micro Worry-Free Services + EDR Add-On?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Trend Micro Worry-Free Services + EDR Add-On combines the cloud-hosted Worry-Free Services endpoint protection with the Endpoint Detection and Response add-on, and both are managed centrally from the same Worry-Free web console. Trend Micro documentation still lists the base product as Worry-Free Business Security Services, and since March 2026 Trend Micro's enterprise business operates under the name TrendAI.<br /><br /><strong>Faster incident answers</strong> – Root cause view shows how a threat entered and spread.<br /><strong>Remote containment</strong> – Isolate a compromised endpoint from the console while investigating.<br /><strong>One agent, one console</strong> – EDR runs inside the existing Security Agent, no second product.<br /><strong>Unknown file analysis</strong> – Suspicious samples are submitted to the Trend Micro cloud sandbox.<br /><strong>Proactive threat hunting</strong> – Sweep all endpoints for indicators taken from new threat reports.<br /><strong>Built-in virtual patching</strong> – Vulnerability protection shields known Microsoft application flaws before patching.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains why built-in Windows protection alone falls short and what an additional security layer adds.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Trend Micro Worry-Free Services + EDR Add-On suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The package fits small and medium-sized companies that need investigation and containment on Windows endpoints without running their own security operations centre. The IT administrator or a managed service provider handles alerts in the same console used for daily endpoint management. Large companies usually need correlation across email, network and cloud, plus round-the-clock monitoring, and this package provides neither.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Common</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Common</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Standard</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">EDR investigation on Windows endpoints</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Partial</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Limited</td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Trend Micro Worry-Free Services + EDR Add-On meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Since 1 April 2025, the revised Information Security Act has required operators of critical infrastructure in Switzerland to report cyberattacks to the Federal Office for Cybersecurity (BACS) within 24 hours of discovery. Most small and medium-sized companies are not directly subject to this obligation, but suppliers to operators of critical infrastructure are often asked to demonstrate comparable incident handling. The Threat Investigation and root cause analysis of the EDR add-on supply the facts such a report needs: which Windows endpoints are affected, how the attack entered and when it was detected. Endpoint isolation documents that containment started. The product does not submit reports to BACS, does not see attacks that arrive by email, and includes no staffed round-the-clock monitoring, so the 24-hour deadline depends on how quickly someone reviews the alerts. This information does not constitute legal advice; the specific obligations of a company should be clarified with a qualified legal adviser.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Trend Micro Worry-Free Services + EDR Add-On meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No software product makes a company compliant with the NIS 2 Directive, because the directive requires organisational risk-management measures as well as technical ones. The directive's measure categories include incident handling, business continuity, supply chain security, vulnerability handling, cryptography and access control. Trend Micro Worry-Free Services + EDR Add-On supports incident handling through EDR investigation and isolation, cryptography through full disk encryption, and vulnerability handling in part through virtual patching of known Microsoft application flaws. It does not cover backup and business continuity, multi-factor authentication, third-party patch deployment, email security or staff awareness training, all of which need separate measures.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Trend Micro Worry-Free Services + EDR Add-On help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes, for the endpoint section of a typical supplier questionnaire, but not for the whole questionnaire. The product lets you answer yes to centrally managed anti-malware on all devices, EDR capability with investigation and isolation on Windows endpoints, full disk encryption, device control, application control and endpoint DLP. It does not let you answer yes to email and phishing protection, third-party patch management, 24/7 security monitoring, backup, or multi-factor authentication. The most economical way to close the gaps within the same family is Worry-Free XDR, which adds email security and correlation between email and endpoint, or Worry-Free with Managed XDR, which adds 24/7 detection and response by Trend Micro analysts. Backup and multi-factor authentication require separate products in every Worry-Free edition.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What is the difference between Worry-Free Services + EDR Add-On and Worry-Free XDR?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The decisive difference is email. Worry-Free XDR adds a cloud email gateway, API-based protection for Microsoft 365 and Google Workspace, and the ability to trace an endpoint threat back to the email it came from. The EDR add-on correlates activity on endpoints only. Endpoint protection, mobile coverage, disk encryption and cloud sandboxing are identical across both editions, and neither includes 24/7 managed detection, which requires Worry-Free with Managed XDR.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Feature</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Worry-Free Services</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Services + EDR Add-On</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Worry-Free XDR</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Windows and macOS protection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">iOS and Android protection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Full disk encryption</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Endpoint Sensor (EDR)</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Endpoint isolation</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Cloud sandboxing</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Email and Microsoft 365 protection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Threat correlation</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Endpoint only</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Endpoint and email</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">24/7 managed detection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Endpoint Sensor, isolation and sample submission are configured in the Windows policy, so EDR investigation and response apply to Windows desktops and servers. macOS, iOS and Android devices receive protection but deliver no EDR investigation data. The documented platform scope covers Windows, macOS, iOS and Android, and Linux servers are not part of it. Email is not covered: phishing and business email compromise protection for Microsoft 365, Google Workspace or Exchange requires Worry-Free Services Advanced or Worry-Free XDR, and this is the most common follow-up purchase. Vulnerability protection shields known flaws but does not deploy third-party patches, and 24/7 analyst monitoring is only available with Worry-Free with Managed XDR.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Trend Micro Worry-Free Services + EDR Add-On</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does the EDR add-on work without Worry-Free Services?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. The EDR add-on is assigned to a specific Worry-Free Services instance and activates the Detection and Response features inside that console. This package combines the base protection and the add-on, so no separate base product is needed.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Is there a European console instance?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes. Trend Micro operates a separate Worry-Free Services web console for the Europe, Middle East and Africa region alongside the instance for North America and other regions.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Can Worry-Free Services be connected to TrendAI Vision One?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes. A Worry-Free instance can be registered in TrendAI Vision One with an enrolment token, and it then forwards detection logs and Security Agent information to the platform. This connection is the basis for using Cyber Risk Exposure Management on top of Worry-Free.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-edr,sec-endpoint,compliance-supplier" data-audience="b2b" data-count="3"> </div>