AgentsThe story, in brief

Microsoft unveils Integrated Security Operations Center in Defender for AI agents

Microsoft folds Sentinel into Defender, betting security operations are now an agent problem.

Illustration of independent geometric mechanisms passing paper tasks along branching amber tracks.
AI agents and the coordination of work.AI illustration by KeyNews
The KeyNews take

Why it matters

As attackers deploy AI agents, Microsoft is consolidating its security stack around agent-native detection and response. This signals a major product realignment: security ops are no longer just for humans monitoring dashboards.

The key facts

5 to know
  1. Microsoft Defender now includes Integrated Security Operations Center (ISOC)

  2. SIEM features moved from Sentinel into Defender product

  3. Product rebuild explicitly targets AI agent attack threats

  4. Microsoft frames agent-driven attacks as accelerating security risk

  5. Consolidation suggests agent autonomy is reshaping enterprise security posture

Go to the source

SiliconAnglesiliconangle.com

Publisher excerpt: Microsoft Corp. today unveiled Integrated Security Operations Center in Microsoft Defender as it rebuilds its security operations products around artificial intelligence agents. The service moves security information and event management features from Microsoft Sentinel directly into Defender. ISOC…
Read original report
Back to today's editionMore agents news

Keep reading

Related stories

More from Agents