Create and Manage Dashboards
Track, visualize, and share the metrics that matter most to you and your team with Prisma Cloud custom dashboards. Widgets with visual representations in various formats such as line and bar graphs and pie charts are available to track key metrics such as assets with the most urgent alerts and vulnerabilities, resource compliance trend charts, and top risks to remediate. Share dashboard visualizations with your management team to quantify your progress in hardening your security posture.
Create New Dashboards
Follow the steps below to create your custom dashboard:

Select Dashboards from the Prisma Cloud administrative console. Make a note of the Prisma Cloud switcher mode you are on, for instance Cloud, Runtime or Application Security. Custom dashboards created in a specific mode are only viewable in that mode.
Select Add Dashboards to create your custom dashboard.
Give your new dashboard a unique identifier in the Add Dashboard drop-down. Select Add New Dashboard to confirm.
Select Edit Dashboard and drag and drop widgets from the Widget Selector to your custom dashboard. You can also use the search bar to filter your search to locate the widgets with the data points required for your custom dashboard. Reference the table below to review specific widgets and their functions.
Select Add Filter to further narrow your search by Time Range, Account Group or Cloud Account.
Select Done Editing to save your changes.
If the filters in the Edit Dashboard workflow conflict with the filters selected on any given Widget, the Widget filters will take precedence.
Manage Widgets
After you have added any widget to your dashboard you have multiple options to fine-tune the visualization of the data. Move your cursor to the top middle portion of any widget to reposition it as needed. You can also edit, duplicate or delete graphics in the widget, as described below:
The data you view in any given widget varies based on the permissions associated with your role.
Select the Toggle Table icon to convert the data visualization in a widget to a table. You can also choose the Full Screen button to expand widget dimensions to the maximum size.
You can edit the views in any widget once you have added them to your custom dashboard. Follow these steps to edit a widget:
Select the Edit button from the Widget menu. The editable options vary from widget to widget and may include chart name, chart variable such as number of vulnerabilities listed, data source for compliance trends over time and more.
Select the Clone button to duplicate the widget.
Select the Delete button to delete any widget from a dashboard.
The table below provides an overview of all the available widgets and describes their functionality:
Widget Name
Description
Options
Visualization
Adoption Progress
Depicts how well your team has been using the full set of Prisma Cloud capabilities. This percentage is a ratio of the number of tasks completed divided by the total number of tasks available to you. As your cloud footprint grows, use the Adoption Advisor to identify where to focus on your journey to strengthen your cloud security posture.
Name
Check
Category

Alert Coverage
Provides a visualization of alerts coverage.
Name
Cloud Type
Account Group
Cloud Account
Policy Type
Alert Rule Name
Cloud Account Id
Asset Class

Alerts by MTTR
Displays alerts by severity and their mean time to resolution.
(If an alert is opened and resolved more than once a day, the latest resolution time is used for the MTTR calculation. An individual alert may be counted multiple times, if the same alert is resolved many times over multiple days.)
Name
Cloud Type
Account Group
Cloud Account
Policy Type
Compliance Standard
Policy Name
Policy Category
Policy Severity

Alerts by Status
Displays the total number of alerts by their current status — Resolved, Open, or Dismissed.
Name
Alert Status
Cloud Type
Account Group
Cloud Account
Policy Type
Compliance Standard
Policy Name
Policy Category
Policy Severity

Alerts by Resolution Reason
Displays the resolved alerts by their method of resolution. A particular alert will be counted multiple times, if the same alert is resolved several times over multiple days.
Name
Resolution Reason
Cloud Type
Account Group
Cloud Account
Policy Type
Compliance Standard
Policy Name
Policy Category
Policy Severity

Alerts by Severity
Provides a visualization of alerts by Critical, High, Medium, or Low severity.
Name
Cloud Type
Account Group
Cloud Account
Policy Type
Alert Rule Name
Cloud Account Id
Asset Class
Cloud Region
Service Name
Compliance Requirement
Compliance Section
Compliance Standard
Data Profiles
Data Patterns
Alert Id
Asset Id
Asset Name
Asset Tag
Object Exposure
Policy Label
Policy Name
Policy Subtype
Policy Category
Asset Type
Time Range
Policy Severity
Alert Status
Show As

Anomalous Threats Detected
Anomalous Threats Detected are organized by UEBA and Network-based anomaly alerts and policies. The top row displays the number of threats detected for UEBA and Network for the past 30/60/90 days. The bottom row displays the number of enabled versus possible policies.
Name
Account Group
Cloud Accounts

Assets by Classification
Provides a visualization of assets by cloud type, account name, region, or service type.
Name
Cloud Type
Asset Class
Service Name
Cloud Account ID
Asset Type
Alert Severity
Vulnerability Severity
Asset Tag
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Region
Cloud Account
Account Group
Group By

Asset Inventory Overview
Provides an overview of all assets and their alerts by severity.
Name
Cloud Type
Asset Class
Service Name
Cloud Account ID
Asset Type
Alert Severity
Vulnerability Severity
Asset Tag
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Region
Cloud Account
Account Group
Show As

Asset Trend
Provides the total number of assets and passing or failing assets for the last 90 days.
The Asset Trend widget is not available on all tenants. If you want this widget enabled, contact Prisma Cloud Customer Support.
Name
Cloud Type
Asset Class
Service Name
Cloud Account ID
Asset Type
Alert Severity
Vulnerability Severity
Asset Tag
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Region
Cloud Account
Account Group

Assets with Alerts
Displays the count of risks detected for all policy violations such as Network, Anomaly, Audit Event, and Config policies by a tenant and the assets producing these alerts over a period of time.
Name
Cloud Type
Alert Severity

Code & Build Burndown and Inventory
Trend line of code issues over the last 30 days and Code & Build inventory snapshot of repositories.
Name

Code Issues from Latest Branch Scans Over Time
A trend line of code issues over time from the latest branch scans.
Name
Repositories
Code Category
Severity

Code Review Issues Over Time
A trend line of code issues over time tracking the number of issues blocked or scanned as part of VCS pull requests.
Name
Repositories
Code Category
Severity

Code Vulnerabilities from Latest Branch Scans Over Time
Tracks latest vulnerabilities detected in branch scans.
Name
Repositories
Code Category
Severity

Compliance Coverage
Top failing compliance standards.
Name
Number of policies to show
Cloud Type
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Region
Cloud Account
Account Group

Compliance Overview
Displays the overall health of cloud resources in an organization.
Name
Cloud Type
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Region
Cloud Account
Account Group
Show As

Compliance Trend
Compliance posture trend over time.
(If you select Time Range > Custom, only the Start Date day will be applied to the widget and the hourly timestamp will be disregarded. In addition, the End Date is always set to the current date, regardless of your selection.)
The Compliance Trend widget is not available on all tenants. If you want this widget enabled, contact Prisma Cloud Customer Support.
Name
Cloud Type
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Region
Cloud Account
Account Group
Show As

Deploy Burndown and Inventory
Trend line of urgent vulnerabilities over the last 30 days and Deploy inventory snapshot of registries and container images.
Name

Discovered vs Secured Resources
Displays the extent to which the Defender is currently protecting your cloud environment. It shows the number of resources detected by Cloud Discovery as well as the number of Secured resources protected by deployed Defenders over a period of time.
Name

Errors by Severity
Summary of all code issues by severity.
Name
Repositories
Code Category
Severity

IaC Issues by Category
Total count of IaC misconfigurations by category.
Name
Repositories
Code Category
Severity

Incidents Burndown
Displays the last 30/60/90 days of critical and high severity alerts generated from Network, Anomaly, and Audit Events against the assets across your monitored cloud environments and your team’s progress on remediating these incidents. The remediation actions include the states of resolve, dismiss or snooze.
Name
Days Before

Internet Connected Assets by Traffic Location
Displays internet connected assets by region and provides a closer look at asset relationships.
Name
Workload Types

Internet Exposed Unmanaged Assets
Top internet exposed unmanaged assets over time.
Name

Latest Code Review Scans
Lists 1K latest code scans of VCS pull requests and CI/CD runs.
Name

Most Common Code Issues by Policy
Displays the most common policy issues in code category of IaC Misconfigurations, secrets, and licensing. View the corresponding severity, issue count, and labels like Has Fix or Custom Policy to take informed business decisions.
Name
Repositories
Code Category
Severity
Labels

Object Data Profile by Region
Displays object profiles such as Financial Information, Healthcare, PII and Intellectual Property across AWS Regions.
Name
Data Profiles
Account Group
Cloud Account

Open Alerts Over Time
Displays the number of alerts that were opened within a selected time period.
Name
Account Group
Cloud Account

Policies by Severity
Provides a visualization of policies by severity and type.
Name
Cloud Type
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Account
Account Group
Asset Class
Enabled
Remediable
Policy Label
Policy Name
Policy Type
Policy Mode
Policy Severity
Policy Subtype
Policy Category
Show As

Policies Drilldown
Provides the snapshot policy count for Incidents and Risks and the top 5 policies by alerts.
Name
Cloud Type
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Account
Account Group
Asset Class
Enabled
Remediable
Policy Label
Policy Name
Policy Type
Policy Mode
Policy Severity
Policy Subtype
Policy Category
Show As

Policy Coverage
Provides a visualization of total enabled polices by type.
Name
Cloud Type
Compliance Standard
Compliance Requirement
Compliance Section
Cloud Account
Account Group
Asset Class
Enabled
Remediable
Policy Label
Policy Name
Policy Type
Policy Mode
Policy Severity
Policy Subtype
Policy Category
Show As

Prioritized Vulnerabilities
Prioritized vulnerabilities data over time.
Name
Life Cycle
Asset Type

Risk Burndown
Displays the number of critical and high severity risks detected using the Configuration policies on Prisma Cloud and your team’s progress on addressing these risks. The addressed actions include the states of resolve, dismiss or snooze.
Name
Days Before

Runtime Burndown and Inventory
Trend line of urgent incidents and attack paths over the last 30 days and Runtime inventory snapshot of cloud assets and workloads.
Name

Security Events Stream
Latest 50 events detected in your cloud estate.
Name

Top Assets by Role
Summarizes top open ports in your cloud environments and the percentage of traffic directed at each type of port.
Name
Account Group
Cloud Account

Top Attack Path by Asset
Lists the top five attack paths by asset name, number of alerts, cloud service, and account name.
Name
Account Group
Cloud Account

Top Attack Path By Policy
Provides the top five attack path policies that triggered an alert.
Name
Account Group
Cloud Account

Top Code & Build, Deploy, Runtime Issues by Collection
Lists top issues by Team, Business Unit, and App using Collections.
Name

Top Custom Alerts
Displays the top three custom policies by open alert count, highlighting the threats and misconfigurations you are catching through these policies.
Name
Number of Policies

Top CVSS Score Code Vulnerabilities
Lists code vulnerabilities with the highest CVSS score to help you discover and prioritize them using the Risk Factor, Severity and issue count.
Name
Repositories
Severity
CVSS Score > x

Top Data Risks by Asset
Provides top five data risks by the assets they are connected to.
Name
Account Group
Cloud Account
Top Data Risks by Policy
Provides the top five data risks by the policies they are connected to.
Name
Account Group
Cloud Account
Top Exposures by Asset
Lists the top five exposures by asset name, number of alerts, cloud service, and account name.
Name
Account Group
Cloud Account

Top Exposure by Policy
Lists the top five policies that triggered an exposure.
Name
Account Group
Cloud Account

Top Identity Risks by Asset
Lists the top five identity risks by asset name, cloud type, service, account group and number of alerts.
Name
Account Group
Cloud Account

Top Identity Risks by Policy
Lists the top five policies that triggered an IAM alert.
Name
Account Group
Cloud Account

Top Impacting Vulnerbilities
Top Impacting Vulnerbilities data over time.
Name
Life Cycle
Top

Top Incidents & Risks
Lists the top five incidents and risks by policy type and number of alerts.
Name
Cloud Type
Account Group
Cloud Account
Policy Type
Alert Rule Name
Cloud Account Id
Asset Class
Cloud Region
Service Name
Compliance Requirement
Compliance Section
Compliance Standard
Data Profiles
Data Patterns
Alert Id
Asset Id
Asset Name
Asset Tag
Object Exposure
Policy Label
Policy Name
Policy Subtype
Policy Category
Asset Type
Time Range
Policy Severity
Alert Status
Show As

Top Incidents & Risks by MITRE ATT&CK
Lists the top five incidents and risks mapped to the MITRE Framework.
Name
Cloud Type
Account Group
Cloud Account
Policy Type
Alert Rule Name
Cloud Account Id
Asset Class
Cloud Region
Service Name
Compliance Requirement
Compliance Section
Compliance Standard
Data Profiles
Data Patterns
Alert Id
Asset Id
Asset Name
Asset Tag
Object Exposure
Policy Label
Policy Name
Policy Subtype
Policy Category
Asset Type
Time Range
Policy Severity
Alert Status
Show As

Top Incidents by Asset
Lists top five incidents by asset name, number of alerts, cloud service, and account name.
Name
Account Group
Cloud Account

Top Incident By Policy
Lists the top five policies that triggered an alert.
Name
Account Group
Cloud Account

Top Insecure Repositories
Top seven repositories with the highest Critical and High severity issue count.
Name
Repositories
Code Category
Severity

Top Internet Trafficked Assets by Traffic Type
Displays top Internet connected assets by traffic type.
Name
Account Group
Cloud Account

Top Misconfigurations by Asset
Lists top five misconfigurations by asset name, number of alerts, service, and account name.
Name
Account Group
Cloud Account

Top Misconfigurations by Policy
Lists the top five policies that triggered a misconfiguration.
Name
Account Group
Cloud Account

Top Non-Compliant Package Licenses
Identifies the frequently occurring non-compliant package licenses within repositories.
Name
Account Group
Cloud Account

Top Publicly Exposed Objects By Data Profile
Displays the five publicly exposed objects with Data Profiles of Financial Information, Healthcare, PII and Intellectual Property.
Name
Account Group
Cloud Account
Top Risks from Unmanaged Assets
Lists top risks from unmanaged assets over time.
Name

Top Vulnerable Hosts
Lists the top five vulnerable hosts.
Name
Account Group
Cloud Account

Top Vulnerable Images
Lists the top five vulnerable images.
Name
Account Group
Cloud Account

Total Objects
Displays the total number of objects discovered in all your S3 storage buckets.
Name
Account Group
Cloud Account

Total Resources
Provides a visualization of total resources.
Name
Account Group
Cloud Account

Total Urgent Issues
Provides a tally of urgent issues grouped by Incidents, Exposures, Misconfigurations, Identity, and Data Risks.
Name
Account Group
Cloud Account

Unamanaged and Managed Asset Trend
Tally of unamanaged and managed asset data over time.
Name

Unamanaged Exposed Assets by Country
Tally of exposed assets by country over time.
Name

Urgent Alerts
Provides a visualization of Critical, and High severity incidents.
Name
Urgent Alert Category
Account Group
Cloud Account

Urgent Vulnerabilities
Provides a visualization of Critical, and High severity vulnerabilities.
Name
Account Group
Cloud Account

VCS Pull Requests Over Time
Analyzes the impact of Enforcement rules on new code deliveries. Observe the adoption of secure coding practices over time, including the reduction of failed PRs.
Name
Repositories

Vulnerabilities Overview
Top vulnerabilities data over time.
Name

Vulnerabilities Trends
Displays the vulnerabilities discovered and resolved over time across images, hosts, containers and functions for the impacted resources.
Name
Resource Type
Vulnerability Severity

Vulnerability Impact by Stage
Displays vulnerability impact data over time.
Name
Life Cycle
Asset Type
Severity

Manage Dashboards
Follow the steps below to manage the dashboards you’ve created.
Select Manage Dashboards to clone or delete any existing dashboard.
Select the dashboard you want to delete from the drop-down list and select Clone or Delete.
Select the action button on any dashboard to easily copy or delete the selected dashboard.
System generated dashboards available out of the box cannot be deleted.
Share Dashboards
Share the custom dashboards you have created with members of your organization or tenant to further collaboration and communication. Once you’ve configured the dashboard access levels, sharing is as simple as providing the URL to your team. The steps below capture the workflow:
Select Dashboards from the Prisma Cloud administrative console. Make a note of the Prisma Cloud switcher mode you are on. For instance, Cloud, Runtime or Application Security. Custom dashboards created in a specific mode are only viewable in that mode.
Share Dashboards: Update Access Setting
Select the Menu dropdown from the Dashboards navigation menu.
Click the actions menu to the left of your custom dashboard and select Share.
Select Public from the Access Settings drop-down and click Update.
Share the URL of your dashboard with anyone in your organization to provide access.
Optionally, follow the steps below to help your users discover the Dashboard you’ve created:
We recommend that you guide users to toggle on the the Visibility setting of the shared Dashboard under Dashboards> Menu > Manage Dashboards.
Once the dashboard is shared globally, it will appear by default at the bottom of the Manage Dashboards list and can be reordered to the top by individual users for easy access. If the user you wish to share a dashboard with, is currently on the Dashboards page, they will also need to refresh the page to see the shared dashboard.
Keep the following caveats in mind when sharing dashboards:
If you received a shared dashboard URL and haven’t updated the dashboard’s Visibility settings, the shared dashboard will only show up temporarily on the Menu tab. To ensure it’s always accessible from the Menu tab follow the steps listed above.
Users accessing a shared dashboard may see a
permission deniederror message if they do not have the appropriate access levels for individual widgets within the dashboard.
Last updated
Was this helpful?

