Understanding The Fog and human–AI misalignment
- Introduction to The Fog as a behavioural and organisational pattern.
- How vague requests and weak context reduce AI effectiveness.
- The role of human judgement in guiding machine intelligence.
Foundations of generative AI for security teams
- Overview of generative AI and its evolution within artificial intelligence.
- Understanding large language models and how they generate responses.
- Strengths and limitations of generative AI in security scenarios.
Responsible AI and risk management
- Principles of responsible generative AI development.
- Identifying potential harms in AI-assisted security workflows.
- Measuring bias, inaccuracies, and unintended outcomes.
- Mitigation strategies to improve reliability and trust.
Introduction to Microsoft Copilot for Security
- What Microsoft Copilot for Security is and how it supports analysts.
- Core terminology and concepts used within the platform.
- How Copilot processes prompts, context, and security signals.
Prompting strategies that cut through The Fog
- Elements of an effective prompt for security investigations.
- Providing context, constraints, and clarity in prompts.
- Common prompting mistakes and how to avoid them.
- Adapting prompts for different security use cases.
Copilot integration across the Microsoft security stack
- Using Microsoft Copilot with Microsoft Defender XDR for threat investigation.
- Applying Copilot insights within Microsoft Purview for compliance and governance.
- Supporting identity and access decisions with Microsoft Entra and Copilot.
- Enhancing endpoint and device management with Microsoft Intune and Copilot.
TeamQuest missions and applied collaboration
- Team-based missions simulating real security operations scenarios.
- Cross-functional collaboration to solve complex security challenges.
- Applying improved prompting and analysis under time pressure.
- Translating lessons learned back into day-to-day security workflows.
Exams and assessments
There are no formal exams included in this course. Learning is reinforced through team-based challenges, scenario-driven missions, and instructor-led discussions that assess understanding through application rather than written testing.
Hands-on learning
This course includes:
- Gamified, team-based missions aligned to real security operations scenarios.
- Guided exercises using Microsoft Copilot for Security across multiple tools.
- Instructor-led facilitation and feedback throughout each mission.