M365.FM - Modern work, security, and productivity with Microsoft 365
Mirko Peters (Microsoft 365 consultant and trainer)
435 episodes
17 hours ago
Welcome to the M365.FM â your essential podcast for everything Microsoft 365, Azure, and beyond. Join us as we explore the latest developments across Power BI, Power Platform, Microsoft Teams, Viva, Fabric, Purview, Security, and the entire Microsoft ecosystem. Each episode delivers expert insights, real-world use cases, best practices, and interviews with industry leaders to help you stay ahead in the fast-moving world of cloud, collaboration, and data innovation. Whether you're an IT professional, business leader, developer, or data enthusiast, the M365.FM brings the knowledge, trends, and strategies you need to thrive in the modern digital workplace. Tune in, level up, and make the most of everything Microsoft has to offer. M365.FM is part of the M365-Show Network.
All content for M365.FM - Modern work, security, and productivity with Microsoft 365 is the property of Mirko Peters (Microsoft 365 consultant and trainer) and is served directly from their servers
with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
Welcome to the M365.FM â your essential podcast for everything Microsoft 365, Azure, and beyond. Join us as we explore the latest developments across Power BI, Power Platform, Microsoft Teams, Viva, Fabric, Purview, Security, and the entire Microsoft ecosystem. Each episode delivers expert insights, real-world use cases, best practices, and interviews with industry leaders to help you stay ahead in the fast-moving world of cloud, collaboration, and data innovation. Whether you're an IT professional, business leader, developer, or data enthusiast, the M365.FM brings the knowledge, trends, and strategies you need to thrive in the modern digital workplace. Tune in, level up, and make the most of everything Microsoft has to offer. M365.FM is part of the M365-Show Network.
Stop Delegating AI Decision: How Spec Kit Enforces Architectural Intent in Microsoft Entra
M365.FM - Modern work, security, and productivity with Microsoft 365
1 hour 22 minutes
1 week ago
Stop Delegating AI Decision: How Spec Kit Enforces Architectural Intent in Microsoft Entra
(00:00:00) The AI Governance Dilemma
(00:00:38) The Pitfalls of Unchecked AI-Powered Development
(00:03:16) The Spec Kit Solution: Binding Intent to Executable Rules
(00:05:38) The Mechanics of Privileged Creep
(00:17:42) Consent Sprawl: When Convenience Becomes a Threat
(00:23:00) Conditional Access Erosion: The Silent Threat
(00:28:44) Measuring and Improving Identity Governance
(00:34:13) Implementing Constitutional Governance with Spec Kit
(00:34:56) The Power of Executable Governance
(00:40:11) Identity Policies as Compilers
đ What This Episode Covers In this episode, we explore:
Why AI agents behave unpredictably in real production environments
The hidden risks of connecting LLMs directly to enterprise APIs
How agent autonomy can unintentionally escalate permissions
Why ânon-determinismâ is a serious engineering problemânot just a research quirk
The security implications of letting agents write or modify code
When AI agents help developersâand when they actively slow teams down
đ¤ AI Agents in Production: What Actually Goes Wrong The conversation begins with a real scenario: a team asks an AI agent to quickly integrate an internal system with Microsoft Graph. What should have been a simple task exposes a cascade of issuesâunexpected API calls, unsafe defaults, and behavior that engineers canât easily reproduce or debug. Key takeaways include:
Agents optimize for task completion, not safety
Small prompts can trigger massive system changes
Debugging agent behavior is significantly harder than debugging human-written code
đ Security, Permissions, and Accidental Chaos One of the most critical themes is security. AI agents often:
Request broader permissions than necessary
Store secrets unsafely
Create undocumented endpoints or bypass expected workflows
This section emphasizes why traditional security models break down when agents are treated as âjunior engineersâ rather than untrusted automation. đ§ Determinism Still Matters (Even With AI) Despite advances in LLMs, the episode reinforces that deterministic systems are still essential:
Reproducibility matters for debugging and compliance
Non-deterministic outputs complicate audits and incident response
Guardrails, constraints, and validation layers are non-optional
AI can assistâbut it should never be the final authority without checks. đ ď¸ Best Practices for Building AI Agents Safely Practical guidance discussed in the episode includes:
Treat AI agents like untrusted external services
Use strict permission scopes and role separation
Log and audit every agent action
Keep humans in the loop for critical operations
Avoid letting agents directly deploy or modify production systems
Tools and platforms like GitHub and modern AI APIs from OpenAI can accelerate developmentâbut only when paired with strong engineering discipline. đŻ Who This Episode Is For This episode is especially valuable for:
Software engineers working with LLMs or AI agents
Security engineers and platform teams
CTOs and tech leads evaluating agentic systems
Anyone building AI-powered developer tools
đ Final Takeaway AI agents are powerfulâbut power without control creates risk. This episode cuts through marketing noise to show what happens when agents meet real infrastructure, real users, and real security constraints. The message is clear: AI agents should augment engineers, not replace engineering judgment.
Become a supporter of this podcast:
M365.FM - Modern work, security, and productivity with Microsoft 365
Welcome to the M365.FM â your essential podcast for everything Microsoft 365, Azure, and beyond. Join us as we explore the latest developments across Power BI, Power Platform, Microsoft Teams, Viva, Fabric, Purview, Security, and the entire Microsoft ecosystem. Each episode delivers expert insights, real-world use cases, best practices, and interviews with industry leaders to help you stay ahead in the fast-moving world of cloud, collaboration, and data innovation. Whether you're an IT professional, business leader, developer, or data enthusiast, the M365.FM brings the knowledge, trends, and strategies you need to thrive in the modern digital workplace. Tune in, level up, and make the most of everything Microsoft has to offer. M365.FM is part of the M365-Show Network.