Loading cryptocurrency prices...

Microsoft Expands Sentinel SIEM with Data Lake and AI Agent Tools

Microsoft Enhances Sentinel SIEM with Unified Data Lake, AI-Driven Threat Detection, and Advanced Security for AI Agents

  • Microsoft has made its Sentinel Security Incidents and Event Management (SIEM) solution a unified platform with the general release of Sentinel data lake.
  • Sentinel Graph and Sentinel Model Context Protocol (MCP) server are now in public preview to enhance security data integration and AI agent development.
  • Sentinel data lake collects and analyzes diverse security data to enable AI models like Security Copilot to detect threats more effectively.
  • The platform improves detection by linking data through graph-based relationships and integrates with other Microsoft security tools.
  • Microsoft will strengthen protections for AI agents against prompt injection attacks using updates to Azure AI Foundry.

Microsoft announced on Tuesday the full availability of its Sentinel data lake, enhancing its Sentinel Security Incidents and Event Management (SIEM) solution into a unified and agentic platform. Alongside this, the company introduced a public preview of the Sentinel Graph and the Sentinel Model Context Protocol (MCP) server to improve threat detection and AI agent orchestration.

- Advertisement -

The Sentinel data lake, which entered public preview in July, is designed as a cloud-based tool to ingest, manage, and analyze security data from multiple sources. Microsoft stated this feature supports building an agentic defense by providing AI models, such as Security Copilot, with the full context needed for identifying subtle attack patterns and producing high-confidence alerts.

Vasu Jakkal, corporate vice president at Microsoft Security, explained that Sentinel uses graph-based context and semantic access to assemble comprehensive security signals in one platform. She noted that “Sentinel ingests signals, either structured or semi-structured, and builds a rich, contextual understanding of your digital estate through vectorized security data and graph-based relationships.” The integration with Defender and Purview allows teams to trace attacks, understand their impact, and prioritize responses within familiar workflows.

Microsoft highlighted that the expansion enables security teams to investigate attacker behavior over historical data and automate detections based on current threat methods. They also emphasized Sentinel’s role in shifting Cybersecurity approaches from reactive to predictive by organizing and enriching security data at scale.

The company further announced that users can now develop Security Copilot agents tailored to their organizational workflows using the Sentinel MCP-enabled coding platform, such as Visual Studio Code with GitHub Copilot integration.

- Advertisement -

Additionally, Microsoft expressed the importance of securing AI platforms from prompt injection attacks, a vulnerability where malicious input can manipulate AI responses. The firm plans to enhance its Azure AI Foundry to provide stronger protections for AI agents against these types of risks.

For more information, see here, here, and here.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

XRP Ledger’s Batch Amendment Nears Activation with NFT Trading Boost

The proposed XRP Ledger amendment called Batch (XLS-56) allows multiple transactions to be combined...

Investor Demand Soars for Teucrium’s 2x Long Daily XRP ETF

Investor interest in XRP is very high, with significant inflows since April 2025.Teucrium Trading’s...

Ripple XRP Forms Bitcoin Death Cross, Is a 20% Surge Imminent?

Ripple XRP recently formed a deathcross with Bitcoin, causing initial concerns among analysts.XRP gained...

Bitcoin Breaks $112K as Fed Rate Cut Boosts Market Optimism

Bitcoin pushed past the $112,000 resistance level near the weekly close, showing increased volatility.Traders...

Nexo Adjusts Savings Rates and Minimum Balance Requirements for EEA Users

Nexo will implement new Flexible and Fixed-term Savings rates starting November 24, 2025, with...
- Advertisement -

Must Read

5 Best Hacking eBooks for Beginners

In this article we present the 5 Best Hacking eBooks for beginners as ranked by our editorial teamWelcome to the world of hacking, where...