
In this course, you will learn to deploy and configure Microsoft Security Copilot to deliver AI-powered security operations across Microsoft workloads. You’ll explore embedded and standalone experiences, authentication and prompting techniques, promptbooks, plugins, connectors, agents, and integration with Microsoft Security solutions. Through hands-on labs, you’ll use Security Copilot to analyze alerts, investigate identity risks, gain threat intelligence, and extend its functionality with custom plugins and agents to streamline incident response, strengthen posture, and ensure compliance.
MS Course ID: 00060
Last Updated: Jan 23, 2026
Security operations engineers, security analysts, and cloud security administrators working across Microsoft security workloads
Familiarity with Microsoft 365 security products and the Azure portal.
Module 1: Introduction & Setup
Module 2: Workspace & Core Usage
Module 3: Extensibility
Module 4: Accelerate Threat Hunting and Incident Response with Defender XDR and Security Copilot
Module 5: Strengthen Identity Protection and Access Control with Entra and Security Copilot
Module 6: Simplify Endpoint Security, Management, and Troubleshooting with Intune and Security Copilot
Module 7: Uncover Data Risks, Insider Threats, and Compliance Gaps with Purview and Security Copilot
Module 8: Remediate Cloud Risks and IaC Misconfigurations faster with Defender for Cloud and Security Copilot
Module 9: Extend Security Copilot with Azure and Surface Management Plugins
Module 10: Automate with Agentic Experiences