defender-for-cloud-ai
Installation
SKILL.md
Microsoft Defender for Cloud — AI Workload Protection
Defender for Cloud's AI plan protects the AI workloads themselves — the Azure OpenAI, Azure AI Foundry, Amazon Bedrock, and Google Vertex AI deployments your organization runs. Two capabilities:
- AI Security Posture Management (AI-SPM): agentless discovery and posture (where AI is deployed, what grounding data is exposed, what misconfigurations exist).
- Runtime threat protection for AI workloads: detections on Azure OpenAI for prompt injection, jailbreaks, sensitive-data leakage, wallet abuse, and credential leakage, integrating Azure AI Content Safety Prompt Shields.
When to use
You build or operate generative AI applications on Azure OpenAI / Azure AI Foundry (and optionally Bedrock/Vertex), and need posture + runtime detection on the workload side.
Do not use this skill for end-user-side AI governance (purview-ai-hub), Content
Safety policy authoring (azure-ai-content-safety), or M365 Copilot rollout
(copilot-for-m365-readiness).