If I understand correctly, you are reporting that the clients are NOT auto updating the virus definitions. If however you hit the update task from the EAS console, they update just fine.
You are asking why you need to kick it off by hand and why it doesn't do it auto updates like a personal edition of Avast would do?
In this case, I have to say I have the exact same issue.