A security engineer is configuring Microsoft Security Copilot and needs to ensure that analyst-created promptbooks are only accessible to members of the Security Operations Center team. Which feature in Security Copilot supports this access control?
Select an answer to reveal the explanation.
Short Explanation and Infographic
Here's the deal — c is correct because Microsoft Security Copilot allows promptbook owners to control who can access a promptbook through sharing settings—promptbooks can be set to private (owner only), shared with specific people, or shared with the organization. This controls SOC team access without requiring Entra role changes.
Full explanation below image
Full Explanation
C is correct because Microsoft Security Copilot allows promptbook owners to control who can access a promptbook through sharing settings—promptbooks can be set to private (owner only), shared with specific people, or shared with the organization. This controls SOC team access without requiring Entra role changes. B is wrong because Entra ID roles (Copilot owner vs. contributor) control administrative access to Security Copilot itself, not individual promptbook sharing. A is wrong because capacity units control compute allocation for Security Copilot, not content access. D is wrong because plugin access controls determine which data sources are available in Copilot, not who can use specific promptbooks.