Security

Microsoft Security Updates: Agent 365 and Defender

3 min read

Summary

Microsoft has announced new security capabilities across Agent 365, Defender for Cloud, GitHub Advanced Security, and Microsoft Purview. The updates focus on improving visibility into AI agent activity, strengthening code-to-runtime protection, and accelerating data security investigations for security and IT teams.

Need help with Security?Talk to an Expert

Microsoft Security updates focus on AI agents, apps, and data

Introduction

Microsoft has released a new round of security updates aimed at helping organizations secure AI-driven workflows, strengthen cloud and application protection, and improve data investigations. For IT and security administrators, these changes matter because they add more visibility, faster detection, and better coordination across security operations and development teams.

What’s new

Microsoft Defender capabilities for Agent 365 tooling gateway

Microsoft introduced new Microsoft Defender capabilities in preview for the Agent 365 tooling gateway. These features are designed to help security teams detect, block, and investigate threats targeting AI agents and agentic workflows.

Key highlights include:

  • Near real-time protection using webhooks to inspect agent actions.
  • Detection of anomalous or risky behavior before actions are executed.
  • Better visibility and control over how AI agents interact across systems.

This is especially important for organizations deploying autonomous AI agents that can access data and trigger actions across business environments.

Defender for Cloud and GitHub Advanced Security integration now GA

Microsoft also announced general availability of the Microsoft Defender for Cloud integration with GitHub Advanced Security.

This integration provides:

  • Unified visibility from code to production runtime.
  • Automatic mapping of code changes to production environments.
  • Alert prioritization based on real runtime context.
  • Coordinated remediation workflows for development and security teams.
  • AI-powered remediation tools to speed issue resolution.

For DevSecOps teams, this helps close the gap between developer findings and operational risk in production workloads.

New Microsoft Purview Data Security Investigations demo

Microsoft highlighted a new hands-on demo for Microsoft Purview Data Security Investigations. The demo shows how analysts can identify relevant data, use AI-powered deep content analysis, and investigate incidents such as breaches, leaks, fraud, or bribery.

Capabilities demonstrated include:

  • Proactive assessment of data security risks.
  • Reactive investigation of sensitive data involved in incidents.
  • Visualization of correlations between users, content, and activities through the data risk graph.

Impact on IT administrators

For security and IT teams, these updates support a more integrated security model across AI, applications, and data. Administrators can gain stronger oversight of AI agents, improve vulnerability management from source code to runtime, and streamline investigative workflows for sensitive data incidents.

Next steps

  • Evaluate the preview Defender capabilities for Agent 365 if your organization is adopting AI agents.
  • Review the Defender for Cloud and GitHub Advanced Security integration for DevSecOps workflows.
  • Explore the Purview Data Security Investigations demo to assess incident response and insider risk scenarios.
  • Monitor upcoming Microsoft Security announcements, especially ahead of Microsoft Build 2026.

These updates show Microsoft’s continued focus on Zero Trust for AI and more automated, context-aware security operations.

Need help with Security?

Our experts can help you implement and optimize your Microsoft solutions.

Talk to an Expert

Stay updated on Microsoft technologies

Microsoft SecurityMicrosoft DefenderAgent 365GitHub Advanced SecurityMicrosoft Purview

Related Posts

Security

Microsoft Security: Better Questions for AI Risk

Microsoft is urging security leaders to treat AI security as a systems challenge that requires better questions, clearer objectives, and stronger governance across data, identities, and processes. The message matters for IT and security teams adopting AI because success depends not just on more signals or tools, but on layered controls, human oversight, and decision-making designed for resilience.

Security

Project Perception: Microsoft AI Security Preview

Microsoft has introduced Project Perception, a new agentic security system designed to help organizations defend against AI-driven threats at machine speed. Entering public preview on August 3, it combines specialized agents, security context, and a multi-model architecture to improve vulnerability management and automate protection while keeping human defenders in control.

Security

Microsoft AI Red Teaming: Global EXTRA Alliance

Microsoft has launched the External Red Team Alliance (EXTRA), a global expansion of its AI Red Team to improve AI safety and security testing with outside experts. The initiative funds 18 university labs across six continents and builds an external network of specialists to assess emerging AI risks that internal teams alone may miss.

Security

Email Threat Landscape Q2 2026: Key Security Trends

Microsoft’s Q2 2026 email threat report shows a major 92% drop in Tycoon2FA-linked phishing following disruption efforts, alongside declines in QR code and CAPTCHA-gated phishing. However, defenders should note that attackers are shifting tactics, with Teams-based social engineering, credential phishing, and fast-moving business email compromise campaigns continuing to pose significant risk.

Security

Microsoft and AXA XL Expand Cyber Incident Response

Microsoft has partnered with AXA XL to bring Microsoft Defender Experts Cybersecurity Incident Response directly to cyber insurance policyholders. The move aims to speed up containment and recovery by aligning security, legal, executive, and insurance workflows before an incident occurs.

Security

Microsoft Black Hat 2026: AI and Supply Chain Defense

Microsoft used Black Hat USA 2026 to spotlight how attackers are abusing trusted software, identities, cloud services, and AI systems to scale attacks. The company also highlighted ongoing npm supply chain investigations, new Microsoft Defender Experts capabilities, and research sessions that give security teams practical guidance for defending trust paths.