Struggling to Keep Up With Microsoft’s Copilot Changes? Let’s Break It Down

Microsoft has quickly expanded Copilot, its AI assistant, but the variety of versions and features can be confusing. Here are the main distinctions and new features:

All Windows Users

  • Free Copilot features are built into Windows, accessible from the taskbar, the Edge browser, or copilot.microsoft.com.
  • Basic use doesn’t require an M365 license and relies on web data and prompts.
  • Microsoft aims for easy, universal access to Copilot’s AI tools.

Consumer Microsoft 365 Users

  • Copilot in Personal, Family, or Premium plans can help draft or summarize documents and analyze Excel data.
  • Premium users get more AI credits and exclusive agents, such as Researcher and the upcoming Analyst.
  • New integrations include File Explorer, Notifications Center, and enhanced calendar functions.

Copilot+ PCs

  • These have a neural processing unit (NPU) for advanced local AI tasks.
  • Features include semantic search, PDF-to-Excel conversion, video enhancements, and Paint’s Cocreator.

M365 Business Users

  • Get consumer features plus enterprise-specific ones, such as Copilot Chat with enterprise data protection.
  • Shareable Copilot Pages, deeper Outlook integration, and richer interactive “agent mode” in Office apps.
  • M365 Copilot adds Work IQ, leveraging corporate knowledge to deliver personalized answers and automate tasks.

https://uk.pcmag.com/ai/161897/struggling-to-keep-up-with-microsofts-copilot-changes-lets-break-it-down

Three Things to Know About Implementing Workplace AI Tools

Summary: AI tools in workplaces may disrupt workflows and impair performance, often affirming poor judgment rather than enhancing decision-making. Research indicates that human-AI combinations typically underperform compared to their individual capabilities. Before implementation, leaders should assess potential benefits and drawbacks of AI for employee performance.

https://sloanreview.mit.edu/article/three-things-to-know-about-implementing-workplace-ai-tools/

Block All AI Browsers for the Foreseeable Future: Gartner

Gartner recommends organizations ban AI-powered web browsers due to significant security and privacy risks. These browsers have features like AI sidebars and the ability to act autonomously on behalf of users. Still, they risk leaking sensitive data to cloud services and are vulnerable to attacks and mistakes. Even with possible mitigations—such as stricter privacy settings, backend security evaluation, and user education—Gartner believes the risks outweigh the benefits, so most organizations should block AI browsers for the foreseeable future.

https://www.theregister.com/2025/12/08/gartner_recommends_ai_browser_ban/

Splunk CISO on the Promise and Risks of Agentic AI

Splunk's CISO, Michael Fanning, discusses agentic AI's dual nature in security. While it enhances efficiency by automating tasks, it also introduces new complexities and risks. Key shifts include moving to proactive security, ensuring AI aligns with secure principles, and improving communication between technical and executive teams. Balancing innovation with safety, particularly in a rapidly evolving threat landscape, remains a significant challenge for CISOs.

https://www.frontier-enterprise.com/splunk-ciso-on-the-promise-and-risks-of-agentic-ai/

The State of the 2025 Cyber Workforce: Skills Gaps, AI Opportunity and Economic Strain

TLDR: The 2025 ISC2 Cybersecurity Workforce Study reveals staff and budget cuts heightening perceived security risks, while AI adoption reshapes skills needs and career opportunities. Key findings include economic pressures affecting hiring, heightened skills shortages raising cybersecurity risks, positive workforce sentiment towards AI, and the need for organizations to invest in personnel development to retain skilled workers amidst changing job markets.

https://www.govtech.com/blogs/lohrmann-on-cybersecurity/the-state-of-the-2025-cyber-workforce-skills-gaps-ai-opportunity-and-economic-strain

Vertical AI Development Agents Are the Future of Enterprise Integrations

Vertical AI development agents outperform generic coding tools in enterprise integration by providing higher accuracy, better governance, and more predictable outcomes. They are specially designed for EAI and iPaaS environments, enabling quicker, error-free integrations while maintaining compliance and quality standards. Their single-shot task execution simplifies developer workflows, reducing rework and enhancing delivery consistency. Organizations adopting these agents report improved integration quality and efficiency, marking a shift towards specialized AI in enterprise applications.

https://www.cio.com/article/4101810/vertical-ai-development-agents-are-the-future-of-enterprise-integrations.html

Rethinking the CIO-CISO Dynamic in the Age of AI

Organizations are restructuring CIO and CISO roles in response to digital transformation, AI, and increasing regulations. CIOs are expected to rapidly implement AI while keeping IT goals aligned with business needs. CISOs face new risks and wider attack surfaces, especially from AI tools. Reporting structures can create conflicts, especially if CISOs report to CIOs, potentially reducing security’s influence. Some recommend CISOs report to CEOs or legal instead. Alternative C-suite roles, such as Chief AI Officer, are emerging, reshaping how CISOs fit within organizations. Smaller organizations may outsource security or combine roles. Overall, strong collaboration between CIOs and CISOs is critical as AI brings new, unpredictable risks.

https://www.govinfosecurity.com/rethinking-cio-ciso-dynamic-in-age-ai-a-30211

US, Allies Urge Critical Infrastructure Operators to Carefully Plan and Oversee AI Use

US and allies issue guidance for critical infrastructure operators on safe AI integration, emphasizing risk assessment, governance, and operational safety protocols. They stress employee education, clear AI use procedures, continuous validation, and human oversight to mitigate AI risks in existing systems.

https://www.cybersecuritydive.com/news/ai-critical-infrastructure-government-guidance/807052/

NIS2 Directive Explained Part 3 Supply Chain Security

NIS2 directive mandates in-scope organizations to enhance supply chain security, involving supplier contract renegotiations and due diligence due to cybersecurity risks. Key compliance steps include creating security policies, risk assessments, contractual flow-downs, and maintaining an up-to-date supplier register. While NIS2 primarily targets direct suppliers, it encourages consideration of their subcontractors. Challenges may arise in contract modifications with large suppliers, and the directive indirectly affects suppliers by increasing compliance expectations and assessments. Overall, NIS2 emphasizes the importance of cybersecurity in supply chains, with further guidance from the Implementing Regulation and ENISA.

https://www.dlapiper.com/en/insights/publications/2025/12/nis2-directive-explained-part-3-supply-chain-security

Scroll to Top