Event banner
AMA: Microsoft Security Copilot
Event details
Thank you all for participating! In addition to the questions posted on this page, we also respond to questions submitted in reply to the event across other social channels (LinkedIn, X, etc.). Below are the questions the panelists answered, along with quick links to the video timestamps:
Question -- Where does Security Copilot fit within the Microsoft Security platform or products? - answered at 1:44.
Question -- How is our data protected within Security Copilot? What controls do we have? - answered at 5:04.
Question -- As a defender customer, and I introduce Security Copilot to my Defender stack, does it give any users of Security Copilot access to anything in defender that they otherwise wouldn't? - answered at 6:55.
Question-- I keep hearing that you can get insights into threats and attack techniques. What type of insights? How much time can I save vs. investigating on our own? - answered at 8:12.
Question-- Can Copilot support enterprise-level requirements or requirements for highly regulated areas like pubsec or finance? - answered at 12:37.
Follow up question -- What other market segments are you seeing traction with Microsoft Copilot? - answered at 14:25.
Question from X -- Does Security Copilot use Chat GPT? - answered at 16:19.
Question -- When you say Security for Copilot is platform/enabler for different experiences across Microsoft, would it be fair then to characterize Security Copilot as an AI orchestration engine, that then leverages individual models for the best task at hand or best response that needs to provide, however it's used? - answered at 17:19
Question from LinkedIn -- Are there any humanoid robots utilizing Copilot? Are there any 2025/2026 releases we can expect? - answered at 20:00.
Question from LinkedIn -- Is there a plan to create any partner specific APIs for Security Copilot? - answered at 21:56.
Question from Tech Community -- Is Microsoft supporting or leveraging the NIST AI Risk Management Framework to document the risks and risk mitigations from deploying Security Copilot? - answered at 24:50.
Question -- To use Security Copilot for threat intel, do I have to have Defender TI or are there Copilot threat intel capabilities I can utilize elsewhere, like maybe Intune or Defender EASM? - answered at 27:28.
Follow up question -- When it comes to MDTI Access, what does that access mean and how does everyone get it? - answered at 30:10.
Follow up question -- Can you talk about what the product team decision was to include threat intelligence like this, and what the inspiration was behind it? - answered at 32:00.
Question from LinkedIn -- Can we integrate Security Copilot with other things like MS SIEM? - answered at 34:33.
Question -- Maybe this is too simple, but what are the prerequisites for Security Copilot? We're a smaller company and don't utilize a large catalog of security products. - answered at 36:00.
Follow up question -- How important would it be for a smaller organization who doesn't have a lot of security products, to go out and get something like threat intelligence, by just using Security Copilot? - answered at 37:58.
Question -- I think you mentioned this earlier, but can you create a JSON plugin for custom needs? - answered at 39:21.
Question -- What type of data sets does Security Copilot bring in for threat intel? - answered at 40:27.
Question -- Where would you start to dive into these datasets for Copilot? - answered at 45:42.
Question from LinkedIn -- Will Copilot help with robust streamlining in the MS XDR space where we are seeing a large gap in inventory/security recommendations? - answered at 48:36.
Question -- Can you share where some of our customers are having success with automation and Security Copilot? - answered at 50:44.