Microsoft has bundled enterprise AI and identity management into a single offering, and the resulting architecture raises a direct question for mobile identity: when Conditional Access and Identity Protection policies apply to AI agents operating across an organization, the scope of mobile identity management expands beyond human users.
Microsoft 365 E7: The Frontier Suite, announced for general availability on May 1, 2026, is priced at $99 per user per month and packages Microsoft 365 E5, Microsoft 365 Copilot, Agent 365, and Microsoft Entra Suite together. The announcement frames identity management as foundational to enterprise AI deployment, not a separate compliance function.
The centerpiece feature for identity is Agent ID. Each AI agent running in the Microsoft environment receives a unique identity in Microsoft Entra, making it subject to the same Conditional Access, Identity Governance, and Identity Protection controls that govern human accounts. For enterprises that have built mobile identity policies around Entra, those same policies now extend to autonomous software agents. An agent accessing corporate resources from a mobile-connected endpoint is treated, from an identity governance perspective, the same as a human employee doing so.
Agent 365 provides a registry where those agents are visible, with risk signals drawn from Microsoft Defender, Entra, and Purview. Microsoft says it currently has more than 500,000 agents visible through Agent 365 internally, generating more than 65,000 daily responses. IDC projects 1.3 billion AI agents will be in circulation by 2028.
The policy implication is significant for mobile identity management. Enterprise mobile deployments have long been shaped by the assumption that the authenticating party is a human with a device. Extending Conditional Access to non-human identities changes what mobile identity infrastructure needs to support: not just verifying who is on a phone, but governing what automated agents can do when they operate in the same identity environment. As enterprises deploy agents that interact with mobile endpoints, send communications on behalf of users, and access cloud resources through the same trust boundaries as human workers, the distinction between human and agent identity becomes a practical governance question, not a theoretical one. The Entra Suite inclusion in the Frontier bundle signals that Microsoft sees identity controls as a prerequisite for AI deployment at scale, not an optional layer on top of it.
Sources: Microsoft Blog, Microsoft Security Blog
–
By the Mobile ID World Editorial Team