Chapter 2 of 6 · Architecture

Microsoft Agent 365 secure rollout and data controls

Governed foundation 4.5 hours in a non-production POC

Chapter 2 of 6

Architecture at a glance#

The selected source platform publishes an agent to Agent Registry; Purview DLP is simulated and propagated before the administrator installs it for one group, then Purview Audit returns payload-free activity.

The source-platform owner publishes the supported agent. The Microsoft 365 administrator confirms its Available Agent Registry entry and completes agent-deployment.json, including the Agent 365 instance ID that DLP and audit use. The Purview operator creates and simulates the policy from the approved change. After propagation, the delivery owner updates the DLP gate in the contract to permit scoped installation. The audit owner queries current Agent 365 operations without exporting content.

coverage-handoff.md assigns the product-boundary owners. Keep the policy, labels, audit events, simulation result, and propagation decision in Purview and the approved change system.

Design choices and tradeoffs#

DecisionChosen approachBenefitsCosts and limitations
Source agentA published Foundry, Copilot Studio, or Agent Builder agentUses a supported Agent 365 entry pathThe source platform still governs its runtime
Rollout scopeOne nonproduction Agent Registry agent and Entra groupLimits access while the control is checkedA broader pilot needs another change
DLP actionThe approved Block or Audit choiceFollows the data owner's decisionAudit records activity but allows it; Block can interrupt work
Installation gateRecorded EnabledAndPropagated state before group installationMakes the handoff explicitThe operator must inspect Purview and the change record first
Audit outputFive metadata fields, with no exportSupports a quick checkInvestigation detail stays in Purview

Architecture guidance#

Session 05

Microsoft Agent 365 secure rollout and data controls slide deck