Session

Microsoft Security Copilot & AI Agents in the Modern SOC

In this practical, scenario-driven session, I’ll take a deep dive into Microsoft Security Copilot’s agentic AI model and demonstrate how Copilot agents are transforming modern SOC operations through automation, contextual reasoning, and intelligent workflow orchestration.
Attendees will gain a clear understanding of what Security Copilot agents are, how they operate, and the foundational components of Microsoft’s agentic ecosystem—including skills, connectors/adapters, grounding, memory, and orchestration layers.
Throughout the session, I will showcase real-world use cases such as a Conditional Access Optimization Agent, Phishing Triage Agent, Threat Intelligence Briefing Agent, and a SOC Analyst Assistant—highlighting how these agents can augment analyst workflows and improve operational efficiency.
In addition, we will explore how these capabilities align with Microsoft 365 E5 and Security Copilot licensing, and what organizations can expect when integrating agentic workflows across Defender XDR, Microsoft Sentinel, and Entra.
By the end of the session, participants will walk away with actionable insights on how to design and implement AI-driven agents that reduce operational overhead, enhance detection and response quality, and empower SOC teams to operate more effectively at scale.

Uros Babic

Lead Product Engineer - Microsoft Security DevOps at Global CoE SoftwareOne team, Microsoft Security MVP, MCT

Belgrade, Serbia

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top