This is the Trace Id: 6ff903f9a421ea4c2daf3f276a0d78db
Skip to main content Why Microsoft Security AI-powered cybersecurity Cloud security Data security & governance Identity & network access Privacy & risk management Security for AI Unified SecOps Zero Trust Microsoft Defender Microsoft Entra Microsoft Intune Microsoft Priva Microsoft Purview Microsoft Sentinel Microsoft Security Copilot Microsoft Entra ID (Azure Active Directory) Microsoft Entra Agent ID Microsoft Entra External ID Microsoft Entra ID Governance Microsoft Entra ID Protection Microsoft Entra Internet Access Microsoft Entra Private Access Microsoft Entra Permissions Management Microsoft Entra Verified ID Microsoft Entra Workload ID Microsoft Entra Domain Services Azure Key Vault Microsoft Sentinel Microsoft Defender for Cloud Microsoft Defender XDR Microsoft Defender for Endpoint Microsoft Defender for Office 365 Microsoft Defender for Identity Microsoft Defender for Cloud Apps Microsoft Security Exposure Management Microsoft Defender Vulnerability Management Microsoft Defender Threat Intelligence Microsoft Defender Suite for Business Premium Microsoft Defender for Cloud Microsoft Defender Cloud Security Posture Mgmt Microsoft Defender External Attack Surface Management Azure Firewall Azure Web App Firewall Azure DDoS Protection GitHub Advanced Security Microsoft Defender for Endpoint Microsoft Defender XDR Microsoft Defender for Business Microsoft Intune core capabilities Microsoft Defender for IoT Microsoft Defender Vulnerability Management Microsoft Intune Advanced Analytics Microsoft Intune Endpoint Privilege Management Microsoft Intune Enterprise Application Management Microsoft Intune Remote Help Microsoft Cloud PKI Microsoft Purview Communication Compliance Microsoft Purview Compliance Manager Microsoft Purview Data Lifecycle Management Microsoft Purview eDiscovery Microsoft Purview Audit Microsoft Priva Risk Management Microsoft Priva Subject Rights Requests Microsoft Purview Data Governance Microsoft Purview Suite for Business Premium Microsoft Purview data security capabilities Pricing Services Partners Cybersecurity awareness Customer stories Security 101 Product trials How we protect Microsoft Industry recognition Microsoft Security Insider Microsoft Digital Defense Report Security Response Center Microsoft Security Blog Microsoft Security Events Microsoft Tech Community Documentation Technical Content Library Training & certifications Compliance Program for Microsoft Cloud Microsoft Trust Center Security Engineering Portal Service Trust Portal Microsoft Secure Future Initiative Business Solutions Hub Contact Sales Start free trial Microsoft Security Azure Dynamics 365 Microsoft 365 Microsoft Teams Windows 365 Microsoft AI Azure Space Mixed reality Microsoft HoloLens Microsoft Viva Quantum computing Sustainability Education Automotive Financial services Government Healthcare Manufacturing Retail Find a partner Become a partner Partner Network Microsoft Marketplace Marketplace Rewards Software development companies Blog Microsoft Advertising Developer Center Documentation Events Licensing Microsoft Learn Microsoft Research View Sitemap
Microsoft Security Copilot

Get ahead of what could go wrong, so more things go right

Move forward confidently with autonomous Security Copilot agents built right into the Microsoft 365 E5 security tools you use every day.
Person with a backpack walking through a modern office building.

Tackle tomorrow’s security problems, today

Detect, investigate, and respond faster with Security Copilot agents across Microsoft Purview, Defender, Intune, and Entra.
Microsoft Defender

Know which phishing alerts matter

Get clear, natural-language verdicts of reported alerts from the Phishing Triage Agent.
Microsoft Entra

Keep Conditional Access strong and up to date

Identify gaps, optimize policies, and strengthen identity security with the Conditional Access Optimization Agent.
Microsoft Defender

Turn threat intelligence into briefings, in minutes

Get insight-rich reports customized to your organization with the Threat Intelligence Briefing Agent.
Microsoft Purview

Focus on the riskiest data security alerts

Effectively prioritize data loss prevention and insider risk alerts with the Data Security Triage Agent.

Explore Security Copilot resources

Dashboard interface showing security triage marked as completed.

How to get started with agents

Find out how Microsoft 365 E5 customers can access Security Copilot.
Person standing and using a smartphone indoors.

Stay up to date on Security Copilot

Explore new innovations, stories from partners, and best practices in the Microsoft Security Copilot blog.
Two people reviewing content together on a tablet at a table.

Get guidance for adopting and scaling Security Copilot agents

Access adoption guides, training, and other resources to help you make the most of the agents.
Person using a laptop while seated indoors near a window.

Build your Security Copilot skills

Deepen your AI and agent expertise with hands-on Security Copilot workshops.

Frequently asked questions

  • Security Copilot is a generative and agentic AI-powered assistant for daily operations in security and IT. Copilot empowers teams to manage and protect at the speed and scale of AI. By turning global threat intelligence, industry best practices, and organizations’ data from Microsoft and partner tools into tailored insights and actions, Security Copilot helps organizations respond faster and catch what others miss.
  • Microsoft 365 E5 is a subscription that delivers comprehensive security and compliance capabilities through Microsoft Defender, Microsoft Entra, Microsoft Intune, and Microsoft Purview—making it ideal for organizations with complex regulatory or risk management needs. It consolidates multiple premium features into a single license, simplifying procurement and positioning organizations for AI-readiness with built-in support for Microsoft 365.
  • Eligible Microsoft 365 E5 customers will have 400 Security Compute Units (SCUs) per month for every 1000 user licenses, up to 10,000 SCUs per month. This included capacity is expected to support typical scenarios.
     
    • Example 1: An organization with 400 seats gets 160 SCUs/month. 
    • Example 2: An organization with 4,000 seats gets 1,600 SCUs/month.  
  • Microsoft 365 E5 customers already using Security Copilot as of November 18, 2025, can access this benefit now. All other Microsoft 365 E5 customers will be activated through a phased roll-out in the upcoming months. Customers will receive advanced notice.

Follow Microsoft Security