/cdx → M365 Copilot → chapter-3-2-perception
Chapter 3.2: Perception
Part of the scenario: MCAPS START FY27
This chapter shows how codename Perception coordinates AI agents to investigate, validate, and remediate a real-world threat (Onyx Sleet targeting healthcare) end-to-end, building on vulnerabilities MDASH surfaced. It walks through agents mapping the attack surface, validating which vulnerabilities are truly exploitable, building new detections, and queuing remediation — all from a single question. The result: what normally takes hours of cross-team investigation happens in minutes, with agents doing the work while the user retains full visibility and control. Runs in a live demo tenant with realistic data — you try the real thing, not a slide deck.
More from M365 Copilot
3 related24x7 Threat Monitoring, Investigation, and Respons
Microsoft Defender Experts for XDR provides managed 24x7 monitoring, expert-led investigation, and rapid response to stop threats before they escalate. By correlating signals across endpoints, identities, email, and cloud, Defender Experts for XDR detects and validates real threats, reducing noise and accelerating response. Get real-time threat validation, automated containment, and seamless collaboration. Strengthen your security operations with always-on protection and expert-driven insights.
Account Reconciliation Agent
This demo shows how Julia, a financial analyst at Contoso Coffee, works with the Account Reconciliation Agent to close the books at month end, ensuring finance leaders have timely insights to make critical business decisions.
Acquire to Dispose
Acquire to Dispose