Can agentic AI actually run security operations? The interesting problem is not the triage decision — it is everything around it: authority, tenant isolation, evidence, approval, and audit. This is the full target architecture, published as something you can click through.
Microsoft's AI portfolio is not five versions of the same product — it is a layered enterprise architecture with an experience layer, two build platforms, a control plane, and the identity, data and threat controls underneath. A practical architecture guide to what each platform is for, which workloads belong where, how agent identity and authority actually flow, and what has to be true before an organization scales any of it.