Microsoft Expands Purview, Entra ID, and Agent 365 Security Capabilities

Network Security

Key Takeaways:

  • Microsoft adds new AI monitoring and investigation capabilities to Purview.
  • The new account recovery features aim to reduce social engineering risks.
  • Windows 365 for Agents introduces a more controlled environment for AI agents.

Microsoft has detailed the recent security enhancements designed to give organizations stronger oversight, management, and defense across increasingly complex digital environments. These updates help ensure that data, applications, and operations remain secure and well‑governed across the entire ecosystem.

First off, Microsoft has launched a new Claude Compliance API for Microsoft Purview. This new integration allows organizations to monitor and investigate usage of Anthropic’s Claude within the Purview solution. It helps security teams maintain centralized oversight of activity and data across mixed environments.

The new Microsoft Purview Data Security Posture Management (DSPM) is now generally available for commercial customers. It provides a unified workflow for discovering sensitive data, assessing risks, and taking corrective actions. This release brings various improvements, including better reporting, easier remediation, and visibility across third‑party sources.

Microsoft has also upgraded its Purview Data Security Investigations tool with optical character recognition (OCR) and custom examination capabilities. The OCR tool allows security teams to extract text from images, and custom analysis options help to tailor investigations. It allows deeper analysis of both structured and unstructured data, including visuals that were previously hard to scan.

Microsoft Expands Purview, Entra ID, and Agent 365 Security Capabilities
Microsoft Purview Data Security Investigations can extract text from images (Image Credit: Microsoft)

Microsoft Entra ID introduces stronger account recovery protections

In Microsoft Entra ID, the account recovery feature allows users to regain access to their accounts when they have lost all authentication methods (such as devices or credentials) by verifying their identity through secure external methods rather than relying on passwords or helpdesk support.

This feature uses third‑party identity verification (like government IDs and biometrics) to re‑establish trust and treat recovery as a fresh onboarding process. It reduces the risk of social engineering attacks while enabling organizations to automate and securely manage account access restoration in situations like device loss, full lockout, or account compromise.

Last but not least, Windows 365 for Agents and Microsoft Agent 365 work together to create a unified and secure setup for managing and running AI agents. Agent 365 focuses on defining what tasks agents are allowed to perform by applying organizational policies and identity controls. Windows 365 for Agents also provides the environment where those tasks are carried out through dedicated Cloud PCs.