Event details
Security practitioners, bring your real questions.
Join Microsoft Security experts live at RSA Conference or online via Tech Community for a live AMA focused on data and AI security in real-world e...
Trevor_Rusher
Published Jan 22, 2026
chmcconnell
Microsoft
Mar 24, 2026Question from the live event:
Do you differentiate between personal agents that act as an extension of an individual user and shared agents that multiple people or teams use? Do you treat them as two different entities from a security and governance perspective?
- David_BroaddusMar 24, 2026
Microsoft
Answer:
The rules and policies will be very similar, but we have the ability to determine is this a sperate identity or other things to customize your experiences and policies to set guardrails for each of them. We divide agents into agents that assist and agents that are autonomous which we call user agents. They are all AI agents so they are treated as such but if they are being on behalf of the user, external customer, or the broader organization will determine their access.