Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by Evan Kirstel. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Evan Kirstel or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

From Reactive to Proactive: Inside Microsoft’s Agentic Security Revolution

19:02
 
Share
 

Manage episode 509558019 series 3499431
Content provided by Evan Kirstel. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Evan Kirstel or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

Interested in being a guest? Email us at [email protected]

Cybercrime now rivals the GDP of major nations, and the pressure on defenders is relentless. We sit down with Microsoft’s CVP Security Vasu Jakkal to explore how AI is becoming the operating system of defense—turning 84 trillion daily signals into clear decisions, faster action, and a truly proactive posture. If you’ve felt stuck in alert fatigue or trapped by tool sprawl, this conversation offers a practical blueprint to simplify your stack, sharpen your visibility, and reclaim time.
We break down the core pillars of a modern security strategy: unifying telemetry with Microsoft Sentinel, using data lake tiers to keep rich history without blowing up costs, and mapping attacker movement with graph-driven insights. Vasu explains why attackers think in graphs, how defenders can do the same, and where consolidation across Defender, Purview, Entra, and Intune cuts complexity across 50+ categories. You’ll hear real results from healthcare and critical industries, with savings up to 50% and better detection through a single, connected view.
The episode also dives into Security Copilot and the new no-code Agent Builder—so any team can create specialized security agents that triage phishing, enrich alerts, and accelerate investigations without writing scripts. We talk about the Microsoft Security Store for discovering partner-built agents, the skills defenders need to thrive with AI, and how to prepare for the expanding attack surface, from prompt injection and jailbreaks to deepfakes and model poisoning. The takeaway is clear: when AI, graph analytics, and unified tooling meet, defenders can move from firefighting to foresight.
If you care about reducing noise, preventing lateral movement, and upskilling your team with AI, this one’s for you. Listen, share with your security peers, and tell us what agent you’d build first. Subscribe for more conversations at the edge of cybersecurity and AI, and leave a review so others can find the show.

Support the show

More at https://linktr.ee/EvanKirstel

  continue reading

Chapters

1. Framing the Cybercrime Crisis (00:00:00)

2. Microsoft’s Mission and Threat Scale (00:01:09)

3. AI as the Operating System of Defense (00:02:59)

4. Unifying the Stack with Sentinel (00:04:21)

5. Real-World Results and Data Lake Savings (00:05:59)

6. Security Copilot and No-Code Agent Builder (00:07:30)

7. The Security Store and Ecosystem (00:09:19)

8. Moving from Reactive to Proactive Defense (00:10:23)

9. Skills for Defenders in an AI Era (00:12:14)

10. Sector Risks and Expanding Attack Surface (00:15:57)

11. Practical Next Steps for Teams (00:17:27)

12. Closing Gratitude and Media Plug (00:18:53)

518 episodes

Artwork
iconShare
 
Manage episode 509558019 series 3499431
Content provided by Evan Kirstel. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Evan Kirstel or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

Interested in being a guest? Email us at [email protected]

Cybercrime now rivals the GDP of major nations, and the pressure on defenders is relentless. We sit down with Microsoft’s CVP Security Vasu Jakkal to explore how AI is becoming the operating system of defense—turning 84 trillion daily signals into clear decisions, faster action, and a truly proactive posture. If you’ve felt stuck in alert fatigue or trapped by tool sprawl, this conversation offers a practical blueprint to simplify your stack, sharpen your visibility, and reclaim time.
We break down the core pillars of a modern security strategy: unifying telemetry with Microsoft Sentinel, using data lake tiers to keep rich history without blowing up costs, and mapping attacker movement with graph-driven insights. Vasu explains why attackers think in graphs, how defenders can do the same, and where consolidation across Defender, Purview, Entra, and Intune cuts complexity across 50+ categories. You’ll hear real results from healthcare and critical industries, with savings up to 50% and better detection through a single, connected view.
The episode also dives into Security Copilot and the new no-code Agent Builder—so any team can create specialized security agents that triage phishing, enrich alerts, and accelerate investigations without writing scripts. We talk about the Microsoft Security Store for discovering partner-built agents, the skills defenders need to thrive with AI, and how to prepare for the expanding attack surface, from prompt injection and jailbreaks to deepfakes and model poisoning. The takeaway is clear: when AI, graph analytics, and unified tooling meet, defenders can move from firefighting to foresight.
If you care about reducing noise, preventing lateral movement, and upskilling your team with AI, this one’s for you. Listen, share with your security peers, and tell us what agent you’d build first. Subscribe for more conversations at the edge of cybersecurity and AI, and leave a review so others can find the show.

Support the show

More at https://linktr.ee/EvanKirstel

  continue reading

Chapters

1. Framing the Cybercrime Crisis (00:00:00)

2. Microsoft’s Mission and Threat Scale (00:01:09)

3. AI as the Operating System of Defense (00:02:59)

4. Unifying the Stack with Sentinel (00:04:21)

5. Real-World Results and Data Lake Savings (00:05:59)

6. Security Copilot and No-Code Agent Builder (00:07:30)

7. The Security Store and Ecosystem (00:09:19)

8. Moving from Reactive to Proactive Defense (00:10:23)

9. Skills for Defenders in an AI Era (00:12:14)

10. Sector Risks and Expanding Attack Surface (00:15:57)

11. Practical Next Steps for Teams (00:17:27)

12. Closing Gratitude and Media Plug (00:18:53)

518 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play