Microsoft has made Agent 365 generally available, bringing its enterprise identity, security and governance stack to AI agents the way it has long covered human users. The product extends the familiar Microsoft 365 admin console to cover agents acting on behalf of employees, with controls over who an agent can act for, what it can access, and how its actions are logged.
The launch is timed to a real shift in how businesses are deploying AI. Most early enterprise rollouts treated chatbots as glorified search bars, narrowly scoped and isolated from production data. Agents are different. They take actions, file expenses, send emails, update records and kick off workflows, and that means they need the same identity and audit machinery any privileged user would. Without it, organisations face the security version of the Wild West: powerful actors moving across systems with no clear way to trace what they did, on whose authority, or with what permissions.
What Agent 365 actually does
That gap is what Microsoft is trying to close. Agent 365 lets administrators register agents as first-class entities in their directory, attach them to specific users or roles, and apply conditional access rules. It surfaces agent activity in the same security and compliance dashboards that already cover human users, so an investigation into a suspicious chain of actions can include both. Microsoft's bet is that customers who already use its identity tools will prefer to extend them rather than adopt a separate management plane for AI.
The competitive picture is starting to look familiar. Salesforce announced this week that it has shifted to a headless architecture, exposing its full platform via APIs so that agents can directly access data and workflows without going through a user interface. Google and Amazon are pushing comparable agent frameworks across their cloud businesses. The shape of the next platform fight is becoming clear: not which model is best, but which company runs the enterprise plumbing that keeps a workforce of agents from going off the rails.
Governance is the unlock, not the model
For all the talk of agentic AI over the past year, real production deployments have been slow. Companies have run into the practical problems of trust, audit and accountability that any new class of actor brings into a regulated environment. Tools like Agent 365 do not solve those problems on their own. They do, however, give security and compliance teams a shape they recognise, and that may be what unlocks the next phase of adoption.
The harder question, and one Microsoft cannot answer for its customers, is what should be allowed to act autonomously inside a business in the first place. The platform makes that question easier to govern. It does not make it easier to decide.
Commentarii · 0