New Agents in Microsoft Purview
Security teams often face alert overload and hidden data risks. This video shows how Microsoft Purview agents, powered by Security Copilot, help you focus on what matters most. Watch how the Data Security Triage Agent prioritizes incidents and how the Data Security Posture Agent surfaces risks through natural language queries.
What are the new agents in Microsoft Purview?
The new agents in Microsoft Purview are AI-powered helpers designed to streamline your daily data security work so you can focus on real risks instead of chasing noise.
There are two main agents:
1. **Data Security Triage Agent**
- Helps you work through alert overload from Insider Risk Management and Data Loss Prevention (DLP).
- Filters out likely false positives so you can quickly see which incidents actually need attention.
- Provides clear, contextual reasoning for each alert, so you understand *why* something is risky.
- Can automate user outreach, helping you follow up with employees directly from the workflow.
2. **Data Security Posture Agent**
- Lets you uncover hidden risks using natural-language queries (you can ask questions in plain English instead of building complex queries).
- When it finds issues, you can apply sensitivity labels and trigger security policies right from the insight, helping you proactively prevent data loss.
Both agents are powered by Security Copilot and are built to give security and compliance teams a faster, more efficient way to manage data security inside Microsoft Purview.
How does the Data Security Triage Agent reduce alert overload?
The Data Security Triage Agent is designed to help your team rethink how you handle Insider Risk and DLP alerts by reducing noise and surfacing what truly needs action.
Here’s how it helps:
- **Cuts through alert overload**: Instead of manually reviewing a long list of alerts, the agent analyzes them for you and highlights the ones that are most likely to represent real risk.
- **Eliminates many false positives**: By using context around user behavior and data activity, it can deprioritize alerts that are unlikely to be problematic, so your analysts spend less time on non-issues.
- **Explains the “why” behind alerts**: Each prioritized alert comes with clear, contextual reasoning, so your team can quickly understand what happened and why it matters.
- **Supports automated user outreach**: You can stay in control of the process while using the agent to automate parts of user communication, such as asking for clarification or reminding users of policies.
The result is a more focused triage process where your team spends time on the incidents that are most likely to impact your organization, instead of getting stuck in a backlog of low-value alerts.
What does the Data Security Posture Agent do for proactive protection?
The Data Security Posture Agent helps you reimagine how you discover and address data risks by making it easier to ask questions about your environment and act on the answers.
Key capabilities include:
- **Natural-language risk discovery**: You can use plain-language queries (for example, “Show me data at risk in our finance department”) to uncover risks that might be hard to find with traditional, rule-based searches.
- **Context-aware insights**: The agent looks at the context around data—such as where it’s stored, how it’s accessed, and by whom—to surface issues that might otherwise stay hidden.
- **Inline remediation**: When the agent identifies a risk, you can immediately apply sensitivity labels or trigger security policies directly from the insight, without switching tools or building new rules from scratch.
- **Proactive data loss prevention**: By continuously uncovering and addressing posture issues, you move from reacting to incidents to proactively reducing the chances of data loss.
Because it’s powered by Security Copilot and integrated into Microsoft Purview, the Data Security Posture Agent helps your security and compliance teams work more efficiently while tightening your overall data protection posture.
New Agents in Microsoft Purview
published by Innovative Technology Solutions
Could you imagine having someone to call the moment your network went down? How about the ability to recover a document from a previous saved state?
Even worse, you have to recover your entire file system because you have the crypt-o-wall virus. That’s what your MSP is all about. Innovative Technology Solutions, LLC provides Managed IT Services to small businesses in the Flint, MI area.
We are based out of Swartz Creek, MI and provide all of our clients with 24/7 emergency support and service. We also monitor your network 24/7 to prevent your emergency from happening. All of our clients receive full antivirus and back up services included with your contract. You also receive a network router that allows for simple VPN connections and remote monitoring tools.
We offer all potential clients a FREE Network Audit. Call us today or complete the form on this page to schedule your audit!
Innovative Technology Solutions, LLC began in 2007 as a small computer repair shop. It was always the vision of the company to provide high quality, professional services to small businesses at an affordable cost. We have spend the last 10 years learning from other managed service providers in the state. Innovative Technology Solutions has developed the best Managed IT program for your company.
Learn more here: https://www.youtube.com/watch?v=llXgF4GVc8c&feature=emb_err_watch_on_yt