Overview
Syllabus
0:00 - Microsoft's mission for adaptive, autonomous defense enabling strategic work
00:07:08 - Addressing alert overload and false positives in SOC workflows
00:13:29 - Attacker federates compromised account into AWS; Defender XDR confirms compromise
00:13:53 - Automatic containment revokes session tokens and disables compromised accounts
00:16:26 - Recap and transition to conversation on agentic AI and trust with analyst Ali Mellon
00:27:10 - Importance of Encoding Runbooks, Guardrails, and Explainability
00:29:19 - Evolving Role of Security Analysts in the Agentic Era
00:36:05 - Importance of Vendor Transparency: Labeling Generative AI and Confidence Levels
00:44:15 - Conversation Wrap-Up and Closing Remarks
Taught by
Microsoft Ignite