A Defender for Office 365 Plan 2 tool, also part of Microsoft 365 E5, that runs safe but convincing phishing exercises against staff and enrols anyone who falls for them in training.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Attack simulation training in context, with comparison tables and the common traps.
Terms in this definition
- Defender for Office 365 Plan 2
The higher tier of Defender for Office 365: everything Plan 1 offers, plus advanced hunting, AIR, Threat Explorer, Threat Trackers and Attack simulation training. Microsoft 365 E5 bundles it.
- Chat message roles
Labels on chat messages: instructions go under system, the person's input under user, the model's previous answers under assistant, and results returned by a called tool under tool (or function).
- E5
Top-tier Microsoft 365 licensing bundle that includes Entra ID P2 together with ID Governance capabilities.
- Agents (classic) API
First-generation Foundry Agent Service API, based on threads, messages and runs. It is deprecated, replaced by conversations and responses, and retires on 31 March 2027.
Related terms
- Microsoft Defender for Office 365
Microsoft's protection service for email and collaboration tools. Its basic plan covers impersonation, Safe Attachments, Real-time detections and Safe Links; the higher plan layers on Attack simulation training, automated investigation and response, and Threat Explorer.