Introduction
Contoso is a global financial services company with a growing security organization. The Security Office recently invested in Microsoft Security Copilot to accelerate threat detection and response across the SOC team. As adoption grows, the compliance team wants access to Security Copilot but requires all data storage and processing to remain within the European Union for regulatory compliance. The security architecture team also needs a sandbox environment to test custom plugins and promptbooks before rolling them out organization-wide.
You're the Cloud and AI Security Engineer responsible for segmenting Security Copilot usage across these three distinct environments. Each team has different requirements for capacity allocation, data residency, role-based access, and agent configuration. Your task is to plan and configure Security Copilot workspaces that meet these diverse needs while maintaining compliance, optimizing costs, and enabling secure collaboration.
In this module, you learn how to plan workspace deployments by evaluating capacity and compliance requirements, create workspaces with appropriate Security Compute Unit (SCU) configurations. Then you learn to assign roles and configure workspace-level settings, route integrated agent traffic to specific workspaces, and monitor capacity usage across your workspace portfolio.
Learning objectives
By the end of this module, you're able to:
- Plan a workspace deployment by evaluating capacity, data residency, and role requirements
- Create a Security Copilot workspace with appropriate SCUs, geo selection, and data sharing settings
- Assign and manage roles and permissions within a workspace
- Configure workspace-level owner settings and plugins
- Assign workspaces for integrated Microsoft Security Copilot agents
- Monitor and adjust workspace capacity usage
Prerequisites
- Familiarity with Microsoft Security Copilot concepts and features
- Understanding of Azure Role Based Access Control (RBAC) and Azure subscription management
- Knowledge of Microsoft Entra role-based access control
- Completion of Describe the core features of Microsoft Security Copilot is recommended