November 18th, 2025
celebratelikeheart4 reactions

From Innovation to Enterprise Trust with Microsoft Agent 365

Nirav Shah
CVP, Agent 365

The bridge between agent innovation and enterprise readiness 

While teams can build an agent in just a few days, deploying that agent within a real enterprise environment introduces significant challenges. Key requirements include authentication that respects tenant boundaries, conditional access with least privilege, governed tool calls that adhere to policy, comprehensive telemetry for audits and measuring ROI, and seamless integration into the applications where work happens. With Agent 365, your agents become enterprise-ready, secure, compliant, and ready for scale, so you can focus on their functionality and impact.  

Building on this foundation, Agent 365 enables your agents to seamlessly operate in end-to-end workflows across Microsoft productivity and collaboration tools, drawing on organizational knowledge for context-aware experiences. And through a unified discovery experience, employees can find, deploy and manage the right agents for their roles without leaving their flow of work. 

Understanding Agent 365 

Agent 365 serves as the control plane for agents, providing organizations with a centralized location to manage agent identity, policies, observability, and lifecycle. When agents are enabled with Agent 365, IT departments can enforce governance, security teams can safeguard access, developers can confidently build and innovate, and users can safely work within Microsoft 365. 

Your part: what you build 

Just like building an agent today, you define the agent’s logic and runtime behavior, its reasoning, orchestration, models, memory, tools, protocols, and business rules. While these choices define what the agent can do, they don’t guarantee it will run securely or under enterprise policy. That’s where Agent 365 comes in, ensuring those capabilities run securely in production. 

What you get when you enable your agents on Agent 365 

Agent 365 adds enterprise controls and a first-class identity for every agent, so it can run safely and securely at scale. Each agent receives an Entra Agent ID and is governed by explicit controls applied at well defined points in the flow, from creation and sponsorship to policy evaluation on tool calls, with full logging and audit when agents interact with data, tools, and people. 

These controls translate into capabilities that give organizations confidence and unlock productivity with secure access to Agent 365 MCP servers like Outlook Mail, Calendar, Teams, SharePoint, and OneDrive. Agents can automate real work, enabling interoperability with Work IQ context—sending emails, scheduling meetings, retrieving documents—while enforcing organizational policies like DLP and MIP. Integration with Sentinel and Defender provides observability into actions taken by these tools. 

Here’s what Agent 365 delivers: 

Image of the pillars of Agent 365 - registry, access control, visualization, interoperability, security.

Registry

Gain a complete view of all agents in your organization—including those with agent IDs, self-registered agents, and soon, shadow agents—through a unified registry and inventory. This visibility makes it easy to discover, track, and manage every agent in your environment. 

Access control

Bring agents under management and limit their access to only the resources they need. Enforce least privilege with tenant-scoped identities, sponsor assignment, lifecycle workflows, and risk-based conditional access policies that prevent compromise. 

Visualization

Explore connections between agents, people, and data. Monitor agent behavior and performance in real time, assess their impact, and provide role-based oversight for IT, security, and business teams. Performance metrics and dashboards help you measure ROI and ensure compliance. 

Interoperability

Equip agents with the apps and data they need to simplify human–agent workflows. Connect agents to Work IQ for business context and enable seamless integration into business processes and Microsoft 365 apps—so agents can collaborate and deliver value inside familiar workflows. Interoperability also means freedom of choice: open to any agent, whether built with Microsoft solutions, open-source frameworks or our partner ecosystem, and extending to all relevant tools that agents need from Microsoft and partners.  

Security

Protect agents from threats and vulnerabilities. Detect, investigate, and remediate attacks targeting agents. Safeguarding the data that agents create and use from oversharing, leaks, and risky behavior with adaptive enforcement, insider risk signals, and real-time runtime defense. 

Together, these capabilities turn every agent into a governed, secure, and productive participant in your enterprise — without forcing you to change your development stack or business processes. 

Flexible build paths for any AI stack 

Diagram of Agent 365-enabled agents, showing agent identity and entitlements, interoperability, and agent builder platforms.

Build agents using the tools and frameworks your team knows best. Agent 365 works with all agents—regardless of the platform or tools you use—so you can add enterprise-grade identity, security, governance, observability, and Microsoft 365 integration without changing your core architecture. 

Build with Copilot Studio 

Start fast with Copilot Studio. Connect data and actions, test quickly, and publish into Microsoft 365. Agent 365 enablement adds identity, policy enforcement, security, Microsoft 365 access, and unified tracing without extra glue. 

Build with Microsoft Foundry and the Microsoft Agent Framework  

For advanced logic, multiagent coordination, or deep workflow integration, the Microsoft Agent Framework is ideal. Pair it with Microsoft Foundry to host and manage agents, and add Agent 365 enablement for identity, security, governed tool calls, notifications, and lifecycle hooks. 

Build with any stack with the Agent 365 SDK 

The Agent 365 SDK is your developer toolkit that makes your agents enterprise-ready. Already have an AI stack? Keep it. The SDK is additive—it brings identity, policy-aware tool calls, notifications, observability, and Microsoft 365 app access on top of your existing architecture.  

No matter which path you choose, the outcome is the same: enterprise-ready agents enabled with Agent 365, meeting security, governance, and compliance standards, with seamless access to Microsoft 365 apps, all without sacrificing developer choice. 

How to get started 

Learn more about building and enabling your agent for Agent 365 with Copilot Studio or Microsoft Foundry. 

For code-first development, start enabling your agents with Agent 365 in basic steps: 

  1. Install the Agent 365 SDK for .NETPython or Node.js and define your agent’s identity and permissions. 
  2. Add observability using the unified tracing schema and verify logs within your tenant. 
  3. Integrate governed tools and notifications required for your workflows. 
  4. Publish to Microsoft 365 and connect to the applications where work occurs. Agents can now participate as first‑class citizens in end‑to‑end workflows across Microsoft 365 and collaborate extensively with users. 
  5. Enable governance in Agent 365 so IT and security teams can establish guardrails and monitor usage. 

Discover how to build enterprise-ready agents with Agent 365—watch our video series for practical insights and demos:

Thumbnail image of the presenters of the Make Your Agents Enterprise-Ready with Agent 365 SDK presenters.

What our customers and partners are building 

We’re excited to see early adopters delivering secure, enterprise-ready agents with Agent 365. Telstra is accelerating the scaling of AI by previewing the use of intelligent agents that combine generative AI and enterprise governance, while EY is building multi-agent workflows for finance and operations using the Agent 365 SDK to add identity, lifecycle, and compliance controls. Beyond customers, SDCs are expanding the ecosystem— Adobe, CData, Cognition, Databricks, Genspark, Glean, Kasisto, Manus, Nvidia, n8n, SAP, ServiceNow, Workday and others are integrating with Agent 365 to bring agents into the flow of work with security and observability built in. 

Image showing the partners in the Agent 365 ecosystem, including Adobe, Workday, Zendesk, ServiceNow, and more.

Start building enterprise-ready agents today 

Join us at Ignite and check out BRK305: Build A365-Ready Agents for the Enterprise and these featured sessions to learn how Agent 365 is shaping the future of work by enabling secure, compliant, productive, and scalable agent experiences.

Let’s build together the next generation of trusted enterprise agents with Agent 365.

Author

Nirav Shah
CVP, Agent 365

Nirav Shah is the Corporate Vice President (CVP) overseeing the Business & Industry Copilot Agent Cloud team at Microsoft, leading the development and implementation of platform capabilities that push the boundaries of AI to enable high value and secure AI business solutions.

0 comments