Skip to content

Identity

The Identity Search page offers users an universal search options to take a closer look at accounts, owners, roles, policies, and groups.

The search results are returned in a table showing colums for

  • Type, which can be account, owner, role, policy, or group.
  • Name, which can be an account, owner, role, policy, or group name.
  • Description, which is the email address for accounts and owner type data, and the role, policy, or group name for those respecitive data types.

Accounts

To search for accounts, a partial match on either the user name, email address, or domain is required.

To look into account details, select a data set returned in the results table to open the Account Details slider. Details provided are:

  • Basic Information:
    • Account ID
    • Account Name
    • Display Name
    • Email
    • UPN
    • Domain
    • Employee ID
    • Manager
  • Organization:
    • Department
    • Title
    • Location
    • Country
    • Cost Center
    • Phone
  • Data Source:
    • Source Name
    • Platform
    • Provider
    • Account Type
    • Account Platform
    • Path
  • Security & Risk:
    • Total Threat
    • Threat Level
    • Risk Score
    • Compliance Status
    • MFA Enrolled
    • Admin Rights
    • Privileged
    • Orphaned
  • Account Status:
    • Status
    • Locked
    • Suspended
    • Disabled
    • Failed Login Attempts
    • Classification
  • Password & Authentication:
    • Password Age (days)
    • Password Age
    • Password Never Expires
    • Password Expired
    • Must Change Password
    • MFA Status
  • Dates & Timeline:
    • Created
    • Updated
    • Account Creation Date
    • Last Login
    • Last Successful Login
    • Last Password Change
    • Last Risk Assessment
    • Login Age
  • PAM & Vaulting:
    • Managed by PAM
    • Vault Safe
    • CyberArk Discovery
    • Data Owner
  • Compromise/Breach Information
    • Compromise Date
    • Compromise Name
    • Compromise Age
    • Breached Accounts
  • Statistics & Metrics
    • Account Activity Total
    • Account Statistics Total
    • Breach Data Total
    • Group Membership Total
    • Onwer Mapping Total
    • Password Security Total
    • Privilage Total
    • Mapped Owners
  • Additional Information:
    • Computer Name
    • Home Directory
    • Login Shell
    • Mapped To
    • Notes
  • Risk Indicators:
    • Account Group Deviation
    • Shared Accounts
    • Inactive Owners with Enabled
    • Account with No Owners

Owners

To search for owners, a partial match on either the user name, email address, or domain is required.

To look into owners details, select a data set returned in the results table to open the Owner Details slider. Details provided are:

  • Basic Information:
    • Name
    • Identity ID
    • Owner ID
    • Type, such as Human, Federated, Service, etc.
    • Status
  • Contact Information
    • Primary Email
  • Organization:
    • Department
    • Title
    • Start Date
    • End Date
  • Security Metrics
    • Total Threat Level
  • Inactive Accounts:
    • Not used in 90+ days
    • Not used in 180+ days
    • Not used in 365+ days
  • Risk Indicators:
    • Privilage Score
    • Breach Data
    • Account Activity
    • Account Statistics
    • Group Membership
    • Owner Mapping
    • Password Security
  • Password Security:
    • Password never set
    • Password 365+ days old
    • Password 180+ days old
    • Password 90+ days old
  • Metadata:
    • Created
    • Updated
    • Internal ID

Group

To search for groups, a partial match on the group name is required.

To look into group details, select a data set returned in the results table to open the Group Members slider. Details provided are:

  • Group Information:
    • Name
    • Description
    • System
    • Critical Group
    • Total Members
  • Members, the cards for each member show:
    • Name
    • Email
    • Type, either Direct or Indirect
    • Added
    • Status, like enabled, disabled, etc.

Policy

To search for policies, a partial match on the policy name is required.

To look into policy details, select a data set returned in the results table to open the Policy Details slider. Details provided are:

  • Policy name and tags, like type and priority level.
  • Description
  • Associated Roles
  • Target Applications
  • Target Groups
  • Policy Rules
  • Information, specific to the policy, like ID, created and last updated, and created by.
  • Understanding This Policy, is a collapsed information drawer that provides helpful explanations about the purpose and processing order of the policy based on priority specification.

Role

To search for roles, a partial match on the role name is required.

To look into role details, select a data set returned in the results table to open the Role Details slider. Details provided are:

  • Role Information:
    • Name
    • Role ID
    • Total Owners
  • Role Attributes:
    • Department
    • Title
  • Dates:
    • Created
    • Updated
  • Owners:
    • Cards for each owner with that specific role association. Details on the cards are owner name, email, department, and title.

Hydden Documentation and Training Hub