# Zero Trust security for AI agents Page: https://stenobird.com/podcast/microsoft-mechanics-podcast-54050/zero-trust-security-for-ai-agents Text version: https://stenobird.com/podcast/microsoft-mechanics-podcast-54050/zero-trust-security-for-ai-agents.md Podcast: [Microsoft Mechanics Podcast](https://stenobird.com/podcast/microsoft-mechanics-podcast-54050) Published: 2026-07-02T13:19:00+00:00 Episode link: https://microsoftmechanics.libsyn.com/zero-trust-security-for-ai-agents Audio file: https://traffic.libsyn.com/secure/microsoftmechanics/Zero_Trust_security_for_AI_agents.mp4?dest-id=411333 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/microsoft-mechanics-podcast-54050/episodes/zero-trust-security-for-ai-agents Duration seconds: 637 ## Resource Apply Zero Trust controls to every AI agent in your environment across identity, tool usage, and data access. Extend Conditional Access in Microsoft Entra to evaluate every agent authorization request in real time against the same risk signals as human users. Assign each agent its own managed identity with Entra Agent ID and scope permissions with Access Packages. Govern your MCP catalog as a software supply chain — unapproved tools don't run, and approved servers lock behind Azure API Management. Log every agent tool call, API access, and data lookup into Microsoft Sentinel for continuous anomaly detection. Purview Insider Risk Management auto-assigns risk levels so you can investigate fast or revoke access entirely. DLP and sensitivity labels in Microsoft Purview restrict what agents can reach and auto-inherit to everything they generate, and Data Access Governance maps exactly what each agent can access before a prompt fires. Jeremy Chapman, Microsoft 365 Director, shares how to put these controls into practice across every managed, self-hosted, and shadow agent in your estate. ► QUICK LINKS: 00:00 - How AI changes Zero Trust 01:20 - Zero Trust principles 02:27 - How to apply Zero Trust principles 03:40 - Conditional Access for Agent Identities 04:59 - Entra Agent ID + Access Packages 06:07 - Runtime Observability 06:58 - DLP, Sensitivity Labels + Data Access Governance 07:47 - MCP catalog 08:36 - AI apps & experiences 09:24 - Wrap up ► Link References Watch the rest of this series at https://aka.ms/ZTMechanics For additional resources, check out https://aka.ms/GoZeroTrust ► Unfamiliar with Microsoft Mechanics? As Microsoft's official video series for IT, you can watch and share valuable content and demos of current and upcoming tech from the people who build it at… ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/microsoft-mechanics-podcast-54050/episodes/zero-trust-security-for-ai-agents/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/microsoft-mechanics-podcast-54050/zero-trust-security-for-ai-agents.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.