Skip to content

Commit beea8aa

Browse files
committed
replace absolute links with relative links
1 parent 249aca4 commit beea8aa

5 files changed

Lines changed: 26 additions & 26 deletions

File tree

learn-pr/wwl-sci/security-copilot-describe-agents/includes/2-describe-agents.md

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -35,32 +35,32 @@ Security Copilot includes agents that are seamlessly integrated with Microsoft s
3535

3636
#### Agents in the standalone experience
3737

38-
- **[Threat Intelligence Briefing Agent](https://learn.microsoft.com/copilot/security/threat-intel-briefing-agent)**: Automatically curates relevant and timely threat intelligence based on an organization’s unique attributes and threat exposure.
38+
- **[Threat Intelligence Briefing Agent](/copilot/security/threat-intel-briefing-agent)**: Automatically curates relevant and timely threat intelligence based on an organization’s unique attributes and threat exposure.
3939

4040
#### Agents embedded in Microsoft Entra
4141

4242
- **[Conditional Access Optimization Agent](https://aka.ms/EntraAgent)**: Monitors for new users or apps not covered by existing policies, identifies necessary updates to close security gaps, and recommends quick fixes for identity teams to apply with a single click.
43-
- **[Access Review Agent](https://learn.microsoft.com/entra/id-governance/access-review-agent)**: Configured in Microsoft Entra and available in Microsoft Teams, the agent delivers insights and recommendations so reviewers can make fast, accurate access decisions through a simple conversation.
43+
- **[Access Review Agent](/entra/id-governance/access-review-agent)**: Configured in Microsoft Entra and available in Microsoft Teams, the agent delivers insights and recommendations so reviewers can make fast, accurate access decisions through a simple conversation.
4444

4545
#### Agents embedded in Microsoft Defender
4646

47-
- **[Phishing Triage Agent](https://learn.microsoft.com/defender-xdr/phishing-triage-agent)**: Helps security operations analysts triage and classify user-submitted phishing incidents autonomously, providing transparent rationale for classification verdicts in natural language.
48-
- **[Threat Intelligence Briefing Agent](https://learn.microsoft.com/defender-xdr/threat-intel-briefing-agent-defender)**: Also available in the Defender portal, this agent gathers and synthesizes threat intelligence data to deliver concise and actionable insights to security operations teams.
49-
- **[Threat Hunting Agent](https://learn.microsoft.com/defender-xdr/advanced-hunting-security-copilot-threat-hunting-agent)**: Enables threat hunting using natural language, generates KQL queries, interprets results, and guides analysts through full hunting sessions.
50-
- **[Dynamic Threat Detection Agent (preview)](https://learn.microsoft.com/defender-xdr/dynamic-threat-detection-agent)**: An always-on adaptive service that uncovers hidden threats across Defender and Microsoft Sentinel environments by correlating alerts, events, and threat intelligence.
47+
- **[Phishing Triage Agent](/defender-xdr/phishing-triage-agent)**: Helps security operations analysts triage and classify user-submitted phishing incidents autonomously, providing transparent rationale for classification verdicts in natural language.
48+
- **[Threat Intelligence Briefing Agent](/defender-xdr/threat-intel-briefing-agent-defender)**: Also available in the Defender portal, this agent gathers and synthesizes threat intelligence data to deliver concise and actionable insights to security operations teams.
49+
- **[Threat Hunting Agent](/defender-xdr/advanced-hunting-security-copilot-threat-hunting-agent)**: Enables threat hunting using natural language, generates KQL queries, interprets results, and guides analysts through full hunting sessions.
50+
- **[Dynamic Threat Detection Agent (preview)](/defender-xdr/dynamic-threat-detection-agent)**: An always-on adaptive service that uncovers hidden threats across Defender and Microsoft Sentinel environments by correlating alerts, events, and threat intelligence.
5151

5252
#### Agents embedded in Microsoft Purview (preview)
5353

54-
- **[Alert Triage Agent in Data Loss Prevention](https://learn.microsoft.com/purview/copilot-in-purview-agents)**: Evaluates DLP alerts based on sensitivity risk, exfiltration risk, and policy risk, then sorts them into prioritized categories.
55-
- **[Triage Agent in Insider Risk Management](https://learn.microsoft.com/purview/copilot-in-purview-agents)**: Evaluates IRM alerts based on user risk, file risk, and activity risk, then sorts them into prioritized categories.
56-
- **[Data Security Posture Management Agent](https://learn.microsoft.com/purview/copilot-in-purview-posture-agent-get-started)**: Helps identify and address data security posture risks by providing proactive insights and recommendations.
54+
- **[Alert Triage Agent in Data Loss Prevention](/purview/copilot-in-purview-agents)**: Evaluates DLP alerts based on sensitivity risk, exfiltration risk, and policy risk, then sorts them into prioritized categories.
55+
- **[Triage Agent in Insider Risk Management](/purview/copilot-in-purview-agents)**: Evaluates IRM alerts based on user risk, file risk, and activity risk, then sorts them into prioritized categories.
56+
- **[Data Security Posture Management Agent](/purview/copilot-in-purview-posture-agent-get-started)**: Helps identify and address data security posture risks by providing proactive insights and recommendations.
5757

5858
#### Agents embedded in Microsoft Intune
5959

60-
- **[Vulnerability Remediation Agent](https://learn.microsoft.com/intune/agents/vulnerability-remediation-agent)**: Uses Defender data to identify vulnerabilities on managed devices, prioritize remediation, and provide step-by-step guidance.
61-
- **[Change Review Agent](https://learn.microsoft.com/intune/agents/change-review-agent)**: Evaluates the effect of Multi Admin Approval requests in Intune and makes recommendations for actions to take.
62-
- **[Device Offboarding Agent](https://learn.microsoft.com/intune/agents/device-offboarding-agent)**: Identifies stale or misaligned devices across Intune and Microsoft Entra ID, providing actionable insights before offboarding.
63-
- **[Policy Configuration Agent](https://learn.microsoft.com/intune/agents/policy-configuration-agent)**: Converts plain-language documents and industry baselines into recommended Intune settings and policies.
60+
- **[Vulnerability Remediation Agent](/intune/agents/vulnerability-remediation-agent)**: Uses Defender data to identify vulnerabilities on managed devices, prioritize remediation, and provide step-by-step guidance.
61+
- **[Change Review Agent](/intune/agents/change-review-agent)**: Evaluates the effect of Multi Admin Approval requests in Intune and makes recommendations for actions to take.
62+
- **[Device Offboarding Agent](/intune/agents/device-offboarding-agent)**: Identifies stale or misaligned devices across Intune and Microsoft Entra ID, providing actionable insights before offboarding.
63+
- **[Policy Configuration Agent](/intune/agents/policy-configuration-agent)**: Converts plain-language documents and industry baselines into recommended Intune settings and policies.
6464

6565
### Partner agents
6666

learn-pr/wwl-sci/security-copilot-describe-agents/includes/4-describe-conditional-access-optimization-agent.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ The following agents are currently available for Microsoft Entra. Due to the fas
2929

3030
#### Conditional Access Optimization Agent
3131

32-
The [Conditional Access Optimization Agent](https://learn.microsoft.com/entra/security-copilot/conditional-access-agent-optimization) ensures comprehensive user protection by analyzing your Conditional Access policies and recommending improvements. The agent evaluates your current policy configuration against Microsoft best practices and Zero Trust principles.
32+
The [Conditional Access Optimization Agent](/entra/security-copilot/conditional-access-agent-optimization) ensures comprehensive user protection by analyzing your Conditional Access policies and recommending improvements. The agent evaluates your current policy configuration against Microsoft best practices and Zero Trust principles.
3333

3434
| Attribute | Description |
3535
|-----------|-------------|
@@ -42,7 +42,7 @@ The [Conditional Access Optimization Agent](https://learn.microsoft.com/entra/se
4242

4343
#### Access Review Agent
4444

45-
The [Access Review Agent](https://learn.microsoft.com/entra/id-governance/access-review-agent) with Microsoft Entra ID Governance empowers reviewers to make fast and accurate access decisions. It delivers insights and recommendations so reviewers can complete their work through a simple conversation, right inside Microsoft Teams.
45+
The [Access Review Agent](/entra/id-governance/access-review-agent) with Microsoft Entra ID Governance empowers reviewers to make fast and accurate access decisions. It delivers insights and recommendations so reviewers can complete their work through a simple conversation, right inside Microsoft Teams.
4646

4747
| Attribute | Description |
4848
|-----------|-------------|
@@ -55,7 +55,7 @@ The [Access Review Agent](https://learn.microsoft.com/entra/id-governance/access
5555

5656
#### Identity Risk Management Agent (preview)
5757

58-
The [Identity Risk Management Agent](https://learn.microsoft.com/entra/id-protection/identity-risk-management-agent-get-started) in Microsoft Entra ID Protection helps administrators investigate potential risks, learn about potential effects, and take decisive action to protect their organizations critical assets.
58+
The [Identity Risk Management Agent](/entra/id-protection/identity-risk-management-agent-get-started) in Microsoft Entra ID Protection helps administrators investigate potential risks, learn about potential effects, and take decisive action to protect their organization's critical assets.
5959

6060
| Attribute | Description |
6161
|-----------|-------------|

learn-pr/wwl-sci/security-copilot-describe-agents/includes/5-describe-phishing-triage-agent.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ The following Microsoft Security Copilot agents are available in the Microsoft D
1313

1414
#### Phishing Triage Agent
1515

16-
The [Phishing Triage Agent](https://learn.microsoft.com/defender-xdr/phishing-triage-agent) helps security operations analysts triage and classify user-submitted phishing incidents. The agent operates autonomously, provides a transparent rationale for its classification verdicts in natural language, and continuously learns and improves its accuracy based on feedback from analysts.
16+
The [Phishing Triage Agent](/defender-xdr/phishing-triage-agent) helps security operations analysts triage and classify user-submitted phishing incidents. The agent operates autonomously, provides a transparent rationale for its classification verdicts in natural language, and continuously learns and improves its accuracy based on feedback from analysts.
1717

1818
| Attribute | Description |
1919
|-----------|-------------|
@@ -27,7 +27,7 @@ The [Phishing Triage Agent](https://learn.microsoft.com/defender-xdr/phishing-tr
2727

2828
#### Threat Intelligence Briefing Agent
2929

30-
The [Threat Intelligence Briefing Agent](https://learn.microsoft.com/defender-xdr/threat-intel-briefing-agent-defender) provides security operations teams with regular, customized threat intelligence briefings. The agent autonomously gathers and synthesizes relevant threat intelligence data from various sources, delivering concise and actionable insights to help analysts stay informed about emerging threats and trends.
30+
The [Threat Intelligence Briefing Agent](/defender-xdr/threat-intel-briefing-agent-defender) provides security operations teams with regular, customized threat intelligence briefings. The agent autonomously gathers and synthesizes relevant threat intelligence data from various sources, delivering concise and actionable insights to help analysts stay informed about emerging threats and trends.
3131

3232
| Attribute | Description |
3333
|-----------|-------------|
@@ -41,9 +41,9 @@ The [Threat Intelligence Briefing Agent](https://learn.microsoft.com/defender-xd
4141

4242
#### Threat Hunting Agent
4343

44-
The [Threat Hunting Agent](https://learn.microsoft.com/defender-xdr/advanced-hunting-security-copilot-threat-hunting-agent) enables you to investigate threats using natural language from start to finish. It not only generates Kusto Query Language (KQL) queries but also interprets results, surfaces insights, and guides you through full hunting sessions. These capabilities empower you to hunt threats faster, more accurately, and with greater confidence.
44+
The [Threat Hunting Agent](/defender-xdr/advanced-hunting-security-copilot-threat-hunting-agent) enables you to investigate threats using natural language from start to finish. It not only generates Kusto Query Language (KQL) queries but also interprets results, surfaces insights, and guides you through full hunting sessions. These capabilities empower you to hunt threats faster, more accurately, and with greater confidence.
4545

4646
#### Dynamic Threat Detection Agent
4747

48-
The [Dynamic Threat Detection Agent](https://learn.microsoft.com/defender-xdr/dynamic-threat-detection-agent) in the Defender portal is an always-on, adaptive backend service that uncovers hidden threats across Defender and Microsoft Sentinel environments. It uses AI to identify gaps and uncover false negatives by correlating alerts, events, anomalies, and threat intelligence. When the agent identifies a gap, it generates a dynamic alert with the full context in the alert details, including natural language explanations, mapped MITRE ATT&CK techniques, and tailored remediation steps.
48+
The [Dynamic Threat Detection Agent](/defender-xdr/dynamic-threat-detection-agent) in the Defender portal is an always-on, adaptive backend service that uncovers hidden threats across Defender and Microsoft Sentinel environments. It uses AI to identify gaps and uncover false negatives by correlating alerts, events, anomalies, and threat intelligence. When the agent identifies a gap, it generates a dynamic alert with the full context in the alert details, including natural language explanations, mapped MITRE ATT&CK techniques, and tailored remediation steps.
4949

learn-pr/wwl-sci/security-copilot-describe-agents/includes/5a-describe-purview-agents.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ The following Microsoft Security Copilot agents are available in Microsoft Purvi
99

1010
#### Triage Agent in Insider Risk Management
1111

12-
The [Triage Agent in Insider Risk Management](https://learn.microsoft.com/purview/copilot-in-purview-agents) helps security teams by evaluating alerts based on user risk, file risk, and activity risk. The agent then sorts the triaged alerts into categories that are presented in the insider risk management solution on the **Alerts** tab.
12+
The [Triage Agent in Insider Risk Management](/purview/copilot-in-purview-agents) helps security teams by evaluating alerts based on user risk, file risk, and activity risk. The agent then sorts the triaged alerts into categories that are presented in the insider risk management solution on the **Alerts** tab.
1313

1414
| Attribute | Description |
1515
|-----------|-------------|
@@ -23,7 +23,7 @@ The [Triage Agent in Insider Risk Management](https://learn.microsoft.com/purvie
2323

2424
#### Alert Triage Agent in Data Loss Prevention (preview)
2525

26-
The [Alert Triage Agent in Data Loss Prevention](https://learn.microsoft.com/purview/copilot-in-purview-agents) helps security teams by evaluating alerts based on the sensitivity risk, exfiltration risk, and policy risk. The agent then sorts the triaged alerts into categories that are presented in the DLP solution on the **Alerts** page.
26+
The [Alert Triage Agent in Data Loss Prevention](/purview/copilot-in-purview-agents) helps security teams by evaluating alerts based on the sensitivity risk, exfiltration risk, and policy risk. The agent then sorts the triaged alerts into categories that are presented in the DLP solution on the **Alerts** page.
2727

2828
| Attribute | Description |
2929
|-----------|-------------|

learn-pr/wwl-sci/security-copilot-describe-agents/includes/5c-describe-intune-agents.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ The following Microsoft Security Copilot agents are available in Microsoft Intun
99

1010
#### Vulnerability Remediation Agent
1111

12-
The [Vulnerability Remediation Agent](https://learn.microsoft.com/intune/agents/vulnerability-remediation-agent) uses data from Microsoft Defender Vulnerability Management to identify Common Vulnerabilities and Exposures (CVEs) on managed devices. The results are prioritized for remediation and include step-by-step instructions to guide you in using Intune to remediate the threat.
12+
The [Vulnerability Remediation Agent](/intune/agents/vulnerability-remediation-agent) uses data from Microsoft Defender Vulnerability Management to identify Common Vulnerabilities and Exposures (CVEs) on managed devices. The results are prioritized for remediation and include step-by-step instructions to guide you in using Intune to remediate the threat.
1313

1414
| Attribute | Description |
1515
|-----------|-------------|
@@ -22,7 +22,7 @@ The [Vulnerability Remediation Agent](https://learn.microsoft.com/intune/agents/
2222

2323
#### Change Review Agent
2424

25-
The [Change Review Agent](https://learn.microsoft.com/intune/agents/change-review-agent) evaluates Multi Admin Approval requests for PowerShell scripts on Windows devices. It aggregates signals from Microsoft Defender Vulnerability Management, Microsoft Entra ID, and Microsoft Intune to provide risk-based recommendations and contextual insights that help administrators make informed decisions about whether to approve or deny requests.
25+
The [Change Review Agent](/intune/agents/change-review-agent) evaluates Multi Admin Approval requests for PowerShell scripts on Windows devices. It aggregates signals from Microsoft Defender Vulnerability Management, Microsoft Entra ID, and Microsoft Intune to provide risk-based recommendations and contextual insights that help administrators make informed decisions about whether to approve or deny requests.
2626

2727
| Attribute | Description |
2828
|-----------|-------------|
@@ -35,7 +35,7 @@ The [Change Review Agent](https://learn.microsoft.com/intune/agents/change-revie
3535

3636
#### Device Offboarding Agent
3737

38-
The [Device Offboarding Agent](https://learn.microsoft.com/intune/agents/device-offboarding-agent) identifies stale or misaligned devices across Intune and Microsoft Entra ID. It provides actionable insights and requires admin approval before offboarding any devices. The agent complements existing Intune automation by surfacing insights and handling ambiguous cases where automated cleanup may not suffice.
38+
The [Device Offboarding Agent](/intune/agents/device-offboarding-agent) identifies stale or misaligned devices across Intune and Microsoft Entra ID. It provides actionable insights and requires admin approval before offboarding any devices. The agent complements existing Intune automation by surfacing insights and handling ambiguous cases where automated cleanup may not suffice.
3939

4040
| Attribute | Description |
4141
|-----------|-------------|
@@ -48,7 +48,7 @@ The [Device Offboarding Agent](https://learn.microsoft.com/intune/agents/device-
4848

4949
#### Policy Configuration Agent
5050

51-
The [Policy Configuration Agent](https://learn.microsoft.com/intune/agents/policy-configuration-agent) converts plain-language documents and industry baselines into recommended Intune settings and policies. Admins can upload compliance standards or organizational security policies, and the agent identifies relevant Intune settings catalog settings, recommends values, and guides the creation of configuration profiles.
51+
The [Policy Configuration Agent](/intune/agents/policy-configuration-agent) converts plain-language documents and industry baselines into recommended Intune settings and policies. Admins can upload compliance standards or organizational security policies, and the agent identifies relevant Intune settings catalog settings, recommends values, and guides the creation of configuration profiles.
5252

5353
| Attribute | Description |
5454
|-----------|-------------|

0 commit comments

Comments
 (0)