Microsoft launches new security AI agents to help overworked cyber professionals
The new AI tools will come as a part of a preview in April to help IT teams deal with high-volume security threats


Microsoft is expanding its Security Copilot service with new AI agents to help overworked IT teams deal with surging security threats.
The company is adding 11 agents in total – six developed by Microsoft and five built by its partners – to the Security Copilot as part of an April preview.
The generative AI-powered Security Copilot was launched by Microsoft a year ago as a $4 per hour consumption model (pay-as-you-use). The service was designed to help to improve security outcomes at machine speed and scale, with natural language models.
It can be used as both a standalone experience or in tandem with other products in the Microsoft Security portfolio, such as Microsoft Defender XDR, Microsoft Sentinel, Microsoft Intune, Microsoft Entra, and other third-party services like Red Canary and Jamf.
All the new agents will be focused on helping teams tackle the ever increasing threats they face. Microsoft said they are all purpose-built for security and that they can learn from feedback and adapt to workloads.
What’s more, all 11 are aligned to the tech giant’s Zero Trust framework.
“This is just the beginning; our security AI research is pushing the boundaries of innovation, and we are eager to continuously bring even greater value to our customers at the speed of AI,” Alexander Stojanovic, VP of Microsoft Security AI Applied Research, wrote in a blog post.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
The agents will add security ‘Triages’ onto different products, such as a ‘Phishing Triage’ in Microsoft Defender with alerts and simplified explanations for the decisions it makes.
Agents will also offer optimization in different products, such as the ‘Conditional Access Optimization Agent’ which will be deployed in Microsoft Entra.
This, the tech giant revealed, will monitor new users or apps that are not covered by existing policies, and help to identify the need for updates or security gaps they might create – the agent will recommend quick fixes.
Other agents will deal with security information, such as the Threat Intelligence Briefing agent and the Vulnerability Remediation agent.
MORE FROM ITPRO
Bobby Hellard is ITPro's Reviews Editor and has worked on CloudPro and ChannelPro since 2018. In his time at ITPro, Bobby has covered stories for all the major technology companies, such as Apple, Microsoft, Amazon and Facebook, and regularly attends industry-leading events such as AWS Re:Invent and Google Cloud Next.
Bobby mainly covers hardware reviews, but you will also recognize him as the face of many of our video reviews of laptops and smartphones.
-
Are Copilot+ PCs finally ready for the enterprise?
The next generation of AI PCs has high-performance NPUs and generative AI features – but are they right for your business?
-
‘LaMDA was ChatGPT before ChatGPT’: Microsoft’s AI CEO Mustafa Suleyman claims Google nearly pipped OpenAI to launch its own chatbot – and it could’ve completely changed the course of the generative AI ‘boom’
News In a recent podcast appearance, Mustafa Suleyman revealed Google was nearing the launch of its own ChatGPT equivalent in the months before OpenAI stole the show.
-
Microsoft is doubling down on multilingual large language models – and Europe stands to benefit the most
News The tech giant wants to ramp up development of LLMs for a range of European languages
-
An executive producer at Xbox Games Studios told laid off staff to use AI for counseling, and it’s the most ludicrous thing I’ve ever seen in my life
Opinion In the aftermath of Microsoft layoffs, promoting AI career advice feels supremely cold
-
‘Using generative AI as a copilot is the sweet spot’: A look at Nationwide’s AI approach
Case study Nationwide Building Society is expanding its use of generative AI in 2025, with the core focus of making the lives of its staff easier
-
“Governance is an irreplaceable role”: Microsoft Security VP on why diversity and sector expertise will keep security workers relevant in the age of agentic AI
News Improved AI skills and a greater focus on ensuring agents are secure at point of deployment will be key for staying ahead of attackers
-
Microsoft says workers should believe the hype with AI tools: Researchers found Copilot users saved three hours per week sifting through emails, gained more focus time, and completed collaborative tasks 20% faster
News Using AI tools paid dividends for some workers, but alternative research shows it could create problems for others down the line.
-
Third time lucky? Microsoft finally begins roll-out of controversial Recall feature
News The Windows Recall feature has been plagued by setbacks and backlash from security professionals