Should I stick with Microsoft 365 Business or move up to Enterprise?Alex Fields
Microsoft 365 is best described as a “bundle of bundles”–these new SKU’s go beyond Office 365, and include advanced security products as well as device management and even your Windows licensing. I have been writing a lot about the Microsoft 365 Business SKU, since it has such an attractive price point for the small business market, and can easily replace a legacy “Small Business Server” with equivalent features (and quite a few goodies that you would not have had in that old SBS server).
But, what about the Microsoft 365 “Enterprise” track? This article is to help you decide whether you will need the fancier feature sets that come with these up-level subscriptions.
Quickly, let us review what we mean by a “bundle of bundles”; Microsoft 365 subscriptions generally include the following software packages:
- Office 365 Online services such as Exchange, SharePoint, Skype/Teams, etc.
- Office 365 desktop software such as Word, Excel, PowerPoint, Access, etc.
- Products from the Enterprise Mobility & Security suite, such as Intune for managing devices, etc.
- Windows licensing
User count, and Office software
Now, with regard to the Business track, just know that you are limited first and foremost by the total number of users that this subscription can support. So if your organization is larger than 300 users, you should automatically be looking at the Enterprise track. So that’s easy.
Second, you should be aware that the Office software that is included with the “Business” flavor is indeed the same as Office 365 Business Premium (so the “Business” edition of Microsoft Office vs. the “Pro Plus” edition that you would find in Enterprise). However, you will get some cool upgrades like Azure Information Protection, DLP, Archiving and so forth, which help approximate the Microsoft 365 Business subscription more toward the Office 365 E3 level. The main differences that organizations will care about with regard to the features which are only available in Pro Plus are:
- Group policy support
- Shared computer activation & ability to
run on Remote Desktop Services*
- Some of the more advanced data tools such as spreadsheet compare, database compare and PowerPivot, PowerQuery, etc.
It is worth noting that MSP service providers may have other means, besides Group Policy, of controlling certain experiences in Office (such as disabling macros via registry). Additionally, you are able to license shared computers such as terminal servers with volume copies of office, and this is in fact required with RDS on Windows Server 2019, anyway. Last, it is NOT true that Microsoft Access is missing from the Business edition–it did not used to be included, but it is now, and has been for a while. If you see something that says otherwise, it is out of date. All this is to say, many small to mid-sized orgs may be okay even without the “Enterprise” track. But check out the differences carefully before you make your decision. (See references at the end of this article for more details).
Enterprise Mobility & Security: Cloud vs. Hybrid organizations
Now, in the Business flavor of Microsoft 365, it is important to note that some of the components of the Enterprise Mobility & Security SKU are actually missing/not included: Azure Active Directory and Advanced Threat Analytics (ATA) for example. Otherwise, it does include Azure Information Protection and Microsoft Intune.
Furthermore, since the Business edition does not include a full blown EMS SKU, you also do not have the benefit of Windows Server CAL’s, which are in fact one of the perks of the EMS product–it is one way that organizations can license their users for both cloud-based and premises-based software in one bundle. The reason that Microsoft did this, is because right now it is generally assumed (especially in larger sized enterprises), that we live in a “hybrid” world–that organizations are going to have premises-based or co-location based services installed and running on Windows Servers, as well as content and services in the cloud–whether that be Office 365 or elsewhere.
However, and this is important: the Business edition of Microsoft 365 generally assumes that smaller sized organizations will soon be removing all dependencies on their legacy on-premises Windows Servers of yore. For this reason, certain features of the EMS packages (like Windows Server CAL’s, ATA, etc.) which are intended for hybrid environments, are not necessary here. If you have a lot of hybrid / on-premises infrastructure that isn’t going anywhere anytime soon, then you might want to consider the Microsoft 365 Enterprise track, rather than Business.
However, just remember that hybrid is also indeed an officially supported scenario for Microsoft 365 Business, including Azure AD Connect with an on-premises AD.
Windows 10 Licensing
With regard to cloud-based Windows 10 licensing: Microsoft’s preference in the “Business” SKU is that you simply join your Windows 10 devices to Azure Active Directory, and not at all to a local Active Directory. When you do this, your Windows 10 Pro device will become “Windows 10 Business” (and actually you also qualify for an upgrade from Windows 7/8/8.1 Pro). Now it is important to realize that you are not obligated to do it that way. You can also still join your Windows 10 Pro device to a local on-premises domain, and then also register the device against Azure AD (hybrid join). But the writing on the wall is this: Windows Server for the small business is becoming a thing of the past–and this SKU is good enough to replace most “Small Business Servers” (assuming other line of business apps are no longer on premises, and now being consumed in the cloud).
This is contrasted with Windows 10 Enterprise, which can be licensed via the Microsoft 365 Enterprise E3 or E5 plan. Enterprise editions of Windows 10 should be hybrid-joined (or, they could be joined only to Azure AD–for instance sales folks who are always on the road and hardly ever tethered to the office–your choice how to manage them). Attaching the Windows 10 Enterprise device to Azure AD in either fashion will unlock features that are specific to your subscription level (E3 or E5), which will include fancier cloud-based items (such as Advanced Threat products, Windows Defender extras and so on), as well as premises-based features that integrate with traditional Windows Server environments (for example Branch Cache, etc.).
As always, I like to summarize the feature comparison with a graphic for ease of reference, which will be at the end of this article. To recap our main takeaways: qualify your customers for the right “bundle of bundles” like this:
- Does the customer have more than 300 users (or could they outgrow this number in the future?) –> Recommend Microsoft 365 Enterprise
- Are they heavily reliant on hybrid/premises-based Windows Server infrastructure –> Recommend Microsoft 365 Enterprise
- Are there feature sets that the customer really can’t live without in the Enterprise track such Pro Plus or Windows 10 Enterprise? –> Recommend Microsoft 365 Enterprise
If you can answer no to all of the above, then Microsoft 365 Business is probably your best bang for the buck. Now if you are on the borderline between considering the Business vs. the Enterprise SKU’s, you’re most likely comparing Business to E3, but you might move all the way to E5, for instance, if the customer wants to completely replace their communications platform, including phone system, with Skype/Teams. Only E5 will include those advanced voice capabilities. But otherwise, my guess is that most orgs will simply compare Microsoft 365 Business to E3.
For most small orgs, the “hybrid” aspect is clearly on its way out the door in the next couple of years, since many Line of Business software providers are also now offering SaaS products in the cloud (and if you are holding onto an old domain controller and file shares… consider updating your tech).
Image credit: ITProMentor.com; Pricing is listed here in USD (at the time of this writing).
Bonus references: Service Descriptions
These are excellent references that I use all the time in my job–check them out for more granular detail.
- The service description for Microsoft 365 Business is super helpful–you can quickly compare to key features found in Office 365 Business Premium as well as EMS E3.
- Service description for Office application software
- Service description for Exchange online
- Service description for SharePoint online
- Service description for Skype for Business online
*UPDATE: One of the shocking announcements from Ignite 2018 is that Windows Server 2019 will not support subscription versions of Office software, even the Enterprise / Pro Plus versions. Previously, use of these products was supported on Windows Server 2016, but now in 2019, that support has been removed, and Microsoft will require you to run a volume copy anyway. So that makes the “gap” between Business and Pro Plus versions of Office 365 even less dramatic than previously.
UPDATE: Another announcement is that Windows 10 Enterprise licensing with Microsoft 365 E3 and E5 will now include access to Windows virtual desktop on Azure. From what I have read, it still requires virtual machine runtime to be purchased separately, but all virtualization rights and licensing is included with your subscription.