Microsoft Expands Sentinel SIEM with Data Lake and AI Agent Tools

Microsoft Enhances Sentinel SIEM with Unified Data Lake, AI-Driven Threat Detection, and Advanced Security for AI Agents

  • Microsoft has made its Sentinel Security Incidents and Event Management (SIEM) solution a unified platform with the general release of Sentinel data lake.
  • Sentinel Graph and Sentinel Model Context Protocol (MCP) server are now in public preview to enhance security data integration and AI agent development.
  • Sentinel data lake collects and analyzes diverse security data to enable AI models like Security Copilot to detect threats more effectively.
  • The platform improves detection by linking data through graph-based relationships and integrates with other Microsoft security tools.
  • Microsoft will strengthen protections for AI agents against prompt injection attacks using updates to Azure AI Foundry.

Microsoft announced on Tuesday the full availability of its Sentinel data lake, enhancing its Sentinel Security Incidents and Event Management (SIEM) solution into a unified and agentic platform. Alongside this, the company introduced a public preview of the Sentinel Graph and the Sentinel Model Context Protocol (MCP) server to improve threat detection and AI agent orchestration.

- Advertisement -

The Sentinel data lake, which entered public preview in July, is designed as a cloud-based tool to ingest, manage, and analyze security data from multiple sources. Microsoft stated this feature supports building an agentic defense by providing AI models, such as Security Copilot, with the full context needed for identifying subtle attack patterns and producing high-confidence alerts.

Vasu Jakkal, corporate vice president at Microsoft Security, explained that Sentinel uses graph-based context and semantic access to assemble comprehensive security signals in one platform. She noted that “Sentinel ingests signals, either structured or semi-structured, and builds a rich, contextual understanding of your digital estate through vectorized security data and graph-based relationships.” The integration with Defender and Purview allows teams to trace attacks, understand their impact, and prioritize responses within familiar workflows.

Microsoft highlighted that the expansion enables security teams to investigate attacker behavior over historical data and automate detections based on current threat methods. They also emphasized Sentinel’s role in shifting Cybersecurity approaches from reactive to predictive by organizing and enriching security data at scale.

The company further announced that users can now develop Security Copilot agents tailored to their organizational workflows using the Sentinel MCP-enabled coding platform, such as Visual Studio Code with GitHub Copilot integration.

- Advertisement -

Additionally, Microsoft expressed the importance of securing AI platforms from prompt injection attacks, a vulnerability where malicious input can manipulate AI responses. The firm plans to enhance its Azure AI Foundry to provide stronger protections for AI agents against these types of risks.

For more information, see here, here, and here.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

BlackRock’s Ethereum Staking ETF Debuts With $15.5M Volume

BlackRock's new staked Ethereum ETF, ETHB, launched with $15.5 million in trading volume, described...

$50M AAVE Swap Yields $36K Despite Warning

A trader lost nearly $50 million on Thursday after swapping that amount of USDT...

Teamsters Threaten to Block Paramount-WBD Merger

The International Brotherhood of Teamsters opposes the Paramount Skydance-Warner Bros. Discovery merger without enforceable...

STRC Sales Surge, Eye Record Single-Day Bitcoin Buy

A community dashboard tracking Strategy's STRC sales suggests March 12, 2026 could see the...

SEC’s Peirce Urges Simpler Rules Amid Tokenization Talks

SEC Commissioner Hester Peirce argues regulators should avoid micromanaging markets and consider simplifying disclosure...

Must Read

Buy Domain With Bitcoin: Top 8 Domain Registrars That Accept Bitcoin And Crypto

You are here because you want to buy a domain with bitcoin, right? If you are looking for domain registrars that accept bitcoin or...