Monday Jun 15

Microsoft Manages AI Agents Like Staff

15JUN
276,000 ON DUTYAGENT 365

AI agents now get managed like employees. Microsoft's Agent 365 gives every agent an identity, security controls, and monitoring. KPMG just put it across all 276,000 of its people.

The enterprise question flipped. It's no longer 'do these bots work,' but 'who's accountable when they act.'

The platform treats each bot as a tracked corporate identity. Defender logs the devices it runs on, the tools it calls, and the data it can reach. It even spots rivals' helpers like Claude Code.

KPMG switched it on for its whole 276,000-person workforce next to Copilot. Ungoverned AI just became a tracked corporate asset.

full brief & sources

Why this matters

  • The agent fight is shifting from raw capability to control and governance.
  • Treating agents as identities lets IT manage them with existing security tools.
  • A 276,000-seat rollout signals agent governance is a real budget line, now.

🔍 What happened

  • Agent 365 is generally available; policy controls hit preview in June.
  • Defender maps each agent's devices, MCP servers, identities, and reachable cloud resources.
  • Local agent discovery expands to 18 types, including GitHub Copilot CLI and Claude Code.
  • Pricing: $15 per user per month, or bundled in the new Microsoft 365 E7 SKU.
  • Jun 9: KPMG commits to Agent 365 plus Copilot across 276,000 staff.

💬 Smart takes

  • Microsoft: positions Agent 365 as turning 'shadow AI' into a governed, observable asset.
  • VentureBeat: framed the launch around shadow AI becoming an enterprise threat.
  • Skeptic: governing agents you don't host, including rivals', is far easier to announce than to enforce.

🧭 Where this goes

  1. Likely'agent identity and governance' becomes a standard enterprise procurement checkbox.
  2. LikelySalesforce, Google, and ServiceNow ship competing agent-control planes in 2026.
  3. Possibleagents get HR-style lifecycle management - onboarding, scopes, offboarding.
  4. Wild Carda regulator requires audit logs for autonomous agents acting on customer data.

🥄 The Spoon Take

The model race has a quieter sibling: the control race. Whoever manages, secures, and audits agents owns the enterprise relationship, not whoever has the smartest model. Microsoft is selling agent governance as plumbing. That Agent 365 discovers and manages Claude Code is the whole strategy.

🤔 Pushback

Managing agents you don't run, including competitors' agents, is a bold control claim that enterprises will test hard before trusting it.