Security for IT Professionals

TMH12 From Prompts to Agents: Unlocking the Full Power of Security Copilot

11/19/2026

2:30pm - 3:45pm

Level: Introductory

Bi Yue Xu

Principal Security Cloud Solution Architect

Microsoft

Security Copilot is transforming how security teams investigate threats, analyze data, and automate workflows. This session explores its core capabilities, beginning with effective prompts and prompt engineering, then moving to plugins that extend Copilot’s functionality. We’ll dive into promptbooks for repeatable workflows, followed by a walkthrough of key agents in Security Copilot. Through live demonstrations and practical examples, attendees will gain a clear understanding of how these features work together in Security Copilot.

You will learn:

  • Highlight the differences between Security Copilot’s embedded experience and its standalone mode.
  • Demonstrate Security Copilot’s core features and capabilities, including prompts, plugins, promptbooks, and agents.
  • Provide practical examples and actionable techniques for leveraging Security Copilot in real-world SOC environments.