Skip to main content
|

Copilot / AI / Governance / Enterprise AI

Microsoft 365 Copilot & Agents Architecture Podcast

Copilot and agents from an architecture perspective: Microsoft Graph, semantic index, grounding, governance and security, when do you choose Copilot, Copilot Studio or a custom agent?

Laura and Mark behind the microphones in the TechExplained studio, with a board about Microsoft 365 Copilot and agents in the background and a laptop on the table

11 episodesavg. 20 minLast update: 6 September 2026EnglishPodcast hosts Laura Bennett and Mark Sullivan

Now playing

Episode 1.10 - Threat Protection for AI: Detecting and Responding to Attacks on Copilot and Agents

0:000:00

Sign in to track your progress automatically in My Learning Journey.

All episodes

Also on Spotify

Practice what you learned

Apply the concepts from this episode right away in the Architecture Lab.

Knowledge check
Question 1 of 6

A user asks Microsoft 365 Copilot to summarize 'the latest project budget file.' Copilot must ensure it only surfaces content the user is already allowed to see. Which mechanism makes this possible?

Question 2 of 6

In the flow the podcast walks through, security trimming is step four, while the model only comes into play at step seven. Why is that order the whole point, and not incidental?

Question 3 of 6

After enabling Microsoft 365 Copilot tenant-wide, several users report that Copilot surfaces content from files they did not know they had access to. What is the root cause?

Question 4 of 6

A healthcare organization wants to expose clinical protocols that currently live outside Microsoft 365 through a Microsoft 365 Copilot connector, so Copilot can find them. What is the most important control to verify beforehand?

Question 5 of 6

While an organization is cleaning up SharePoint oversharing, the security team wants to limit Copilot's exposure to a defined list of sites in the meantime. How should Restricted Content Discovery (RCD) be positioned here?

Question 6 of 6

In the podcast's four architecture layers (experience, orchestration, grounding data, and identity/security/governance), the model sits in layer two. Why does the podcast emphasize layers three and four instead?

Open the Architecture Lab

Learn more?

Go deeper on the same topic.

Do you have a similar challenge?

Use the podcasts as inspiration, or share your own Data & AI challenge with us.

Microsoft 365 Copilot & Agents Architecture | TechExplained