diff --git a/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard.md b/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard.md
index a0ab7e3166..cac0327da7 100644
--- a/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard.md
+++ b/windows/security/threat-protection/windows-defender-exploit-guard/windows-defender-exploit-guard.md
@@ -68,14 +68,20 @@ Attack surface reduction | [Real-time protection](../windows-defender-antivirus/
Network protection | [Real-time protection](../windows-defender-antivirus/configure-real-time-protection-windows-defender-antivirus.md) must be enabled | Required for reporting in the Windows Defender ATP console
Controlled folder access | [Real-time protection](../windows-defender-antivirus/configure-real-time-protection-windows-defender-antivirus.md) must be enabled | Required for reporting in the Windows Defender ATP console
-| Feature | Windows 10 Home | Windows 10 Professional | Windows 10 Enterprise | Windows 10 Education |
+ (X) = not supported
+ (blue checkmark) = supported, limited functionality and manual reporting
+ (green checkmark) = supported, full functionality and full reporting in the Windows Defender ATP console
+
+| Feature | Windows 10 Home | Windows 10 Professional | Windows 10 E3 | Windows 10 E5 |
|-----------------| ------------------------------------ | --------------------------- | ------------------------- | -------------------------------------- |
-| Exploit Protection |  |  |  |  |
-| Attack surface reduction |  |  |  |  |
-| Network Protection |  |  |  |  |
-| Controlled Folder Access |  |  |  |  |
+| Exploit Protection |  | 1,2 | 2 |  |
+| Attack surface reduction |  |  |  |  |
+| Network Protection |  |  | 2 |  |
+| Controlled Folder Access | 2 | 2 | 2 |  |
> [!NOTE]
+> 1 - Exploit Protection is better shielded with [HVCI protection] (https://docs.microsoft.com/windows/security/threat-protection/windows-defender-exploit-guard/enable-virtualization-based-protection-of-code-integrity) in Windows 10 Enterprise.
+> 2 - Limited reporting functionality through Event Viewer. Windows 10 E5 is required for automated reporting in the Windows Defender ATP console
> Each feature's requirements are further described in the individual topics in this library.