UK and US Microsoft 365 AI rollout outpaces permissions review
Trend
Summary
Hide ▲
Show ▼
UK and US organizations are deploying Copilot and other Microsoft 365 AI tools faster than they are reviewing permissions, widening exposure to broadly shared content. Only 43% completed a thorough oversharing review before rollout, while 91% say they can see active agents and their reach. Access governance is even thinner for agent controls: just 22% have a formal policy, and 9% let an agent inherit the deployer's full permissions. The pattern leaves sensitive SharePoint and file content reachable through AI surfaces that inherit existing access.
Related Happenings
Obsidian Security adds native governance controls for Claude Code and Cowork
Security Tool/Service
H score19
First: 04.08.2026 15:00
Last: 04.08.2026 15:00
Sources 1
About this happening:
Obsidian Security expanded its agent governance platform with native controls for Claude Code and Cowork, tightening enterprise oversight of AI-agent access to production...
Obsidian Security adds native governance controls for Claude Code and Cowork
Security Tool/ServiceAbout this happening: Obsidian Security expanded its agent governance platform with native controls for Claude Code and Cowork, tightening enterprise oversight of AI-agent access to production...
Enterprise AI guardrails for shadow AI and personal-account exposure
Defensive Guidance
H score6
First: 28.05.2026 14:30
Last: 28.05.2026 14:30
Sources 1
About this happening:
Enterprise AI governance is shifting toward AI power users, personal accounts, and inline guardrails as sensitive-data exposure concentrates in a small share of workfl...
Enterprise AI guardrails for shadow AI and personal-account exposure
Defensive GuidanceAbout this happening: Enterprise AI governance is shifting toward AI power users, personal accounts, and inline guardrails as sensitive-data exposure concentrates in a small share of workfl...
Microsoft launches agent guardrails, identities, and Security Copilot updates for agentic AI
Security Tool/Service
H score11
First: 24.03.2026 14:28
Last: 24.03.2026 14:28
Sources 1
About this happening:
Microsoft rolled out new agentic AI security controls at RSAC Conference, adding preview guardrails in Microsoft Foundry, agent identities in Entra ID, and upd...
Microsoft launches agent guardrails, identities, and Security Copilot updates for agentic AI
Security Tool/ServiceAbout this happening: Microsoft rolled out new agentic AI security controls at RSAC Conference, adding preview guardrails in Microsoft Foundry, agent identities in Entra ID, and upd...
Tenable One AI Exposure launches as a cloud-native add-on for AI exposure management
Security Tool/Service
H score11
First: 30.01.2026 22:23
Last: 30.01.2026 22:23
Sources 1
About this happening:
Tenable has launched Tenable One AI Exposure, a cloud-native add-on that helps enterprises detect and govern agentic and generative AI use before it creates data exp...
Tenable One AI Exposure launches as a cloud-native add-on for AI exposure management
Security Tool/ServiceAbout this happening: Tenable has launched Tenable One AI Exposure, a cloud-native add-on that helps enterprises detect and govern agentic and generative AI use before it creates data exp...
Timeline
-
11.09.2026 12:30 2 articles · 0h ago
Syskit report finds Microsoft 365 AI rollouts outpace permissions reviews
Initial DisclosureSyskit's State of Microsoft 365 Governance Report found that 76% of organizations in the UK and US had deployed or piloted an enterprise AI tool such as Copilot on Microsoft 365 data, but only 43% had completed a thorough permissions and oversharing review before rollout. The same survey said only 22% of respondents had a formal policy defining what AI agents may access, 9% let an agent inherit the full permissions of the person who deployed it, and 90% had experienced or suspected a security incident linked to misconfiguration or over-permissioned access in the past two years.
Show sources
- Most Organizations Skip Permissions Reviews Before Deploying AI Tools — www.infosecurity-magazine.com — 11.09.2026 12:30
- Most Organizations Skip Permissions Reviews Before Deploying AI Tools — www.infosecurity-magazine.com — 11.09.2026 12:30