Foundry IQ: New governance and enterprise AI security capabilities

· Source: Microsoft Foundry Blog articles · Field: Technology & Digital — Artificial Intelligence & Machine Learning, Cybersecurity & Data Privacy, Cloud Computing & IT Infrastructure · Depth: Intermediate, short

Summary

Foundry IQ (Azure AI Search) has introduced new governance and enterprise AI security capabilities to enhance content access control and data protection in retrieval workflows. The 2026-05-01-preview release improves SharePoint permission synchronization, allowing incremental document ACL updates and SharePoint group support, extending to SharePoint Lists and ASPX pages. Foundry IQ now supports configurable propagation of Microsoft Purview sensitivity labels from source systems through knowledge bases to Foundry Agent experiences, ensuring classification context is maintained. Elevated read access for developers and administrators is now auditable via Microsoft Purview for indexes created with REST API version 2026-05-01-preview, integrating into existing compliance workflows. Private connectivity between Foundry IQ and Foundry resources is enabled using Shared Private Link and Network Security Perimeter, supporting ingestion, enrichment, and retrieval within private network boundaries. Additionally, user-assigned managed identities for indexer pipelines and keyless billing for Foundry Tools processing are generally available, reducing reliance on long-lived credentials.

Key takeaway

For AI Architects and MLOps Engineers deploying enterprise AI, these Foundry IQ updates simplify integrating sensitive content while maintaining strict governance. You can now ensure retrieval systems respect SharePoint permissions and Purview sensitivity labels, reducing data exposure risks. Utilize private connectivity for secure data flows and adopt managed identities to minimize credential management overhead. This allows you to build more compliant and secure AI applications without developing custom security models.

Key insights

Enterprise AI systems require robust security and governance features to integrate sensitive content while preserving existing access controls.

Principles

Method

Foundry IQ integrates SharePoint permission sync, Purview label propagation, Purview auditing, Shared Private Link/NSP for private connectivity, and managed identities/keyless billing to secure enterprise AI.

In practice

Topics

Best for: CTO, VP of Engineering/Data, Director of AI/ML, AI Architect, MLOps Engineer, AI Security Engineer

Related on AIssential

Open in AIssential →

Editorial summary, takeaway, and curation by AIssential. Original article published by Microsoft Foundry Blog articles.