Establish the Foundry Security Foundation
Lock down the Microsoft Foundry platform, its network path, and its data before any agent ships — scoped access, private networking, and customer-controlled encryption as the baseline every project inherits.
Core capabilities
-
Authenticate every caller with Microsoft Entra ID and scope access with least-privilege roles down to individual agents, disabling local key auth
-
Put the Foundry resource and its dependencies on a private network path with Private Link and a managed virtual network, removing public exposure
-
Encrypt project data with customer-managed keys and bind Foundry to your own storage, search, and secret resources so data stays under your control
Supporting capabilities 3
-
Discover the AI bill of materials and continuously assess Foundry and other Azure AI workloads for posture recommendations, attack paths, and IaC misconfigurations
-
Score models and agents against built-in risk and safety evaluators before release, and gate deployment on groundedness, prompt-injection resistance, and prohibited-action thresholds
-
Run automated adversarial scans over candidate models and agents to surface prompt-injection and jailbreak weaknesses before they reach production