Identity
The Identity Search page offers users an universal search options to take a closer look at accounts, owners, roles, policies, and groups.
The search results are returned in a table showing colums for
- Type, which can be account, owner, role, policy, or group.
- Name, which can be an account, owner, role, policy, or group name.
- Description, which is the email address for accounts and owner type data, and the role, policy, or group name for those respecitive data types.
Accounts
To search for accounts, a partial match on either the user name, email address, or domain is required.
To look into account details, select a data set returned in the results table to open the Account Details slider. Details provided are:
- Basic Information:
- Account ID
- Account Name
- Display Name
- UPN
- Domain
- Employee ID
- Manager
- Organization:
- Department
- Title
- Location
- Country
- Cost Center
- Phone
- Data Source:
- Source Name
- Platform
- Provider
- Account Type
- Account Platform
- Path
- Security & Risk:
- Total Threat
- Threat Level
- Risk Score
- Compliance Status
- MFA Enrolled
- Admin Rights
- Privileged
- Orphaned
- Account Status:
- Status
- Locked
- Suspended
- Disabled
- Failed Login Attempts
- Classification
- Password & Authentication:
- Password Age (days)
- Password Age
- Password Never Expires
- Password Expired
- Must Change Password
- MFA Status
- Dates & Timeline:
- Created
- Updated
- Account Creation Date
- Last Login
- Last Successful Login
- Last Password Change
- Last Risk Assessment
- Login Age
- PAM & Vaulting:
- Managed by PAM
- Vault Safe
- CyberArk Discovery
- Data Owner
- Compromise/Breach Information
- Compromise Date
- Compromise Name
- Compromise Age
- Breached Accounts
- Statistics & Metrics
- Account Activity Total
- Account Statistics Total
- Breach Data Total
- Group Membership Total
- Onwer Mapping Total
- Password Security Total
- Privilage Total
- Mapped Owners
- Additional Information:
- Computer Name
- Home Directory
- Login Shell
- Mapped To
- Notes
- Risk Indicators:
- Account Group Deviation
- Shared Accounts
- Inactive Owners with Enabled
- Account with No Owners
Owners
To search for owners, a partial match on either the user name, email address, or domain is required.
To look into owners details, select a data set returned in the results table to open the Owner Details slider. Details provided are:
- Basic Information:
- Name
- Identity ID
- Owner ID
- Type, such as Human, Federated, Service, etc.
- Status
- Contact Information
- Primary Email
- Organization:
- Department
- Title
- Start Date
- End Date
- Security Metrics
- Total Threat Level
- Inactive Accounts:
- Not used in 90+ days
- Not used in 180+ days
- Not used in 365+ days
- Risk Indicators:
- Privilage Score
- Breach Data
- Account Activity
- Account Statistics
- Group Membership
- Owner Mapping
- Password Security
- Password Security:
- Password never set
- Password 365+ days old
- Password 180+ days old
- Password 90+ days old
- Metadata:
- Created
- Updated
- Internal ID
Group
To search for groups, a partial match on the group name is required.
To look into group details, select a data set returned in the results table to open the Group Members slider. Details provided are:
- Group Information:
- Name
- Description
- System
- Critical Group
- Total Members
- Members, the cards for each member show:
- Name
- Type, either Direct or Indirect
- Added
- Status, like enabled, disabled, etc.
Policy
To search for policies, a partial match on the policy name is required.
To look into policy details, select a data set returned in the results table to open the Policy Details slider. Details provided are:
- Policy name and tags, like type and priority level.
- Description
- Associated Roles
- Target Applications
- Target Groups
- Policy Rules
- Information, specific to the policy, like ID, created and last updated, and created by.
- Understanding This Policy, is a collapsed information drawer that provides helpful explanations about the purpose and processing order of the policy based on priority specification.
Role
To search for roles, a partial match on the role name is required.
To look into role details, select a data set returned in the results table to open the Role Details slider. Details provided are:
- Role Information:
- Name
- Role ID
- Total Owners
- Role Attributes:
- Department
- Title
- Dates:
- Created
- Updated
- Owners:
- Cards for each owner with that specific role association. Details on the cards are owner name, email, department, and title.
