decoded365
← All changes
NewMicrosoft Purview · Insider Risk Management

Microsoft Purview: Insider Risk Management- Insider risk management for agents

Insider Risk Management will extend monitoring capabilities to AI agents, enabling detection of malicious or inadvertent risks from agentic activities. Admins can create policies tailored to agent behavior patterns alongside existing human-insider risk detection.

Action required: Review and configure insider risk policies to include agent-based indicators and activities; assess monitoring scope for AI agents in your organization.

Key dates

  • preview (Feature currently in development; general availability timeline not specified)

Microsoft's description

As AI agents become deeply embedded in enterprise ecosystems, they are evolving beyond simple tools or workflows into a digital workforce. These agents can interpret intent, access and manipulate enterprise data, execute actions and even make real-time decisions. In many ways, they operate like human insiders only with machine-speed data processing capabilities. To govern and protect these agents effectively, Microsoft Purview Insider Risk Management is being expanded to agents, with specific indicators and insider risk score built for agents based on agentic activities. Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, data leakage, and security violations. Insider Risk Management enables customers to create policies based on their own internal policies, governance, and organizational requirements. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

View on Microsoft roadmap →