For the complete documentation index, see llms.txt. This page is also available as Markdown.

Create and Manage Dashboards

Track, visualize, and share the metrics that matter most to you and your team with Prisma Cloud custom dashboards. Widgets with visual representations in various formats such as line and bar graphs and pie charts are available to track key metrics such as assets with the most urgent alerts and vulnerabilities, resource compliance trend charts, and top risks to remediate. Share dashboard visualizations with your management team to quantify your progress in hardening your security posture.

Create New Dashboards

Follow the steps below to create your custom dashboard:

add dashboard
  1. Select Dashboards from the Prisma Cloud administrative console. Make a note of the Prisma Cloud switcher mode you are on, for instance Cloud, Runtime or Application Security. Custom dashboards created in a specific mode are only viewable in that mode.

  2. Select Add Dashboards to create your custom dashboard.

  3. Give your new dashboard a unique identifier in the Add Dashboard drop-down. Select Add New Dashboard to confirm.

  4. Select Edit Dashboard and drag and drop widgets from the Widget Selector to your custom dashboard. You can also use the search bar to filter your search to locate the widgets with the data points required for your custom dashboard. Reference the table below to review specific widgets and their functions.

  5. Select Add Filter to further narrow your search by Time Range, Account Group or Cloud Account.

  6. Select Done Editing to save your changes.

    If the filters in the Edit Dashboard workflow conflict with the filters selected on any given Widget, the Widget filters will take precedence.

Manage Widgets

After you have added any widget to your dashboard you have multiple options to fine-tune the visualization of the data. Move your cursor to the top middle portion of any widget to reposition it as needed. You can also edit, duplicate or delete graphics in the widget, as described below:

The data you view in any given widget varies based on the permissions associated with your role.

  1. Select the Toggle Table icon to convert the data visualization in a widget to a table. You can also choose the Full Screen button to expand widget dimensions to the maximum size.

  2. You can edit the views in any widget once you have added them to your custom dashboard. Follow these steps to edit a widget:

    1. Select the Edit button from the Widget menu. The editable options vary from widget to widget and may include chart name, chart variable such as number of vulnerabilities listed, data source for compliance trends over time and more.

    2. Select the Clone button to duplicate the widget.

    3. Select the Delete button to delete any widget from a dashboard.

The table below provides an overview of all the available widgets and describes their functionality:

Widget Name

Description

Options

Visualization

Adoption Progress

Depicts how well your team has been using the full set of Prisma Cloud capabilities. This percentage is a ratio of the number of tasks completed divided by the total number of tasks available to you. As your cloud footprint grows, use the Adoption Advisor to identify where to focus on your journey to strengthen your cloud security posture.

  • Name

  • Check

  • Category

Alert Coverage

Provides a visualization of alerts coverage.

  • Name

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Alert Rule Name

  • Cloud Account Id

  • Asset Class

Alerts by MTTR

Displays alerts by severity and their mean time to resolution.

(If an alert is opened and resolved more than once a day, the latest resolution time is used for the MTTR calculation. An individual alert may be counted multiple times, if the same alert is resolved many times over multiple days.)

  • Name

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Compliance Standard

  • Policy Name

  • Policy Category

  • Policy Severity

Alerts by Status

Displays the total number of alerts by their current status — Resolved, Open, or Dismissed.

  • Name

  • Alert Status

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Compliance Standard

  • Policy Name

  • Policy Category

  • Policy Severity

Alerts by Resolution Reason

Displays the resolved alerts by their method of resolution. A particular alert will be counted multiple times, if the same alert is resolved several times over multiple days.

  • Name

  • Resolution Reason

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Compliance Standard

  • Policy Name

  • Policy Category

  • Policy Severity

Alerts by Severity

Provides a visualization of alerts by Critical, High, Medium, or Low severity.

  • Name

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Alert Rule Name

  • Cloud Account Id

  • Asset Class

  • Cloud Region

  • Service Name

  • Compliance Requirement

  • Compliance Section

  • Compliance Standard

  • Data Profiles

  • Data Patterns

  • Alert Id

  • Asset Id

  • Asset Name

  • Asset Tag

  • Object Exposure

  • Policy Label

  • Policy Name

  • Policy Subtype

  • Policy Category

  • Asset Type

  • Time Range

  • Policy Severity

  • Alert Status

  • Show As

Anomalous Threats Detected

Anomalous Threats Detected are organized by UEBA and Network-based anomaly alerts and policies. The top row displays the number of threats detected for UEBA and Network for the past 30/60/90 days. The bottom row displays the number of enabled versus possible policies.

  • Name

  • Account Group

  • Cloud Accounts

Assets by Classification

Provides a visualization of assets by cloud type, account name, region, or service type.

  • Name

  • Cloud Type

  • Asset Class

  • Service Name

  • Cloud Account ID

  • Asset Type

  • Alert Severity

  • Vulnerability Severity

  • Asset Tag

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Region

  • Cloud Account

  • Account Group

  • Group By

Asset Inventory Overview

Provides an overview of all assets and their alerts by severity.

  • Name

  • Cloud Type

  • Asset Class

  • Service Name

  • Cloud Account ID

  • Asset Type

  • Alert Severity

  • Vulnerability Severity

  • Asset Tag

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Region

  • Cloud Account

  • Account Group

  • Show As

Asset Trend

Provides the total number of assets and passing or failing assets for the last 90 days.

The Asset Trend widget is not available on all tenants. If you want this widget enabled, contact Prisma Cloud Customer Support.

  • Name

  • Cloud Type

  • Asset Class

  • Service Name

  • Cloud Account ID

  • Asset Type

  • Alert Severity

  • Vulnerability Severity

  • Asset Tag

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Region

  • Cloud Account

  • Account Group

Assets with Alerts

Displays the count of risks detected for all policy violations such as Network, Anomaly, Audit Event, and Config policies by a tenant and the assets producing these alerts over a period of time.

  • Name

  • Cloud Type

  • Alert Severity

Code & Build Burndown and Inventory

Trend line of code issues over the last 30 days and Code & Build inventory snapshot of repositories.

  • Name

Code Issues from Latest Branch Scans Over Time

A trend line of code issues over time from the latest branch scans.

  • Name

  • Repositories

  • Code Category

  • Severity

Code Review Issues Over Time

A trend line of code issues over time tracking the number of issues blocked or scanned as part of VCS pull requests.

  • Name

  • Repositories

  • Code Category

  • Severity

Code Vulnerabilities from Latest Branch Scans Over Time

Tracks latest vulnerabilities detected in branch scans.

  • Name

  • Repositories

  • Code Category

  • Severity

Compliance Coverage

Top failing compliance standards.

  • Name

  • Number of policies to show

  • Cloud Type

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Region

  • Cloud Account

  • Account Group

Compliance Overview

Displays the overall health of cloud resources in an organization.

  • Name

  • Cloud Type

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Region

  • Cloud Account

  • Account Group

  • Show As

Compliance Trend

Compliance posture trend over time.

(If you select Time Range > Custom, only the Start Date day will be applied to the widget and the hourly timestamp will be disregarded. In addition, the End Date is always set to the current date, regardless of your selection.)

The Compliance Trend widget is not available on all tenants. If you want this widget enabled, contact Prisma Cloud Customer Support.

  • Name

  • Cloud Type

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Region

  • Cloud Account

  • Account Group

  • Show As

Deploy Burndown and Inventory

Trend line of urgent vulnerabilities over the last 30 days and Deploy inventory snapshot of registries and container images.

  • Name

Discovered vs Secured Resources

Displays the extent to which the Defender is currently protecting your cloud environment. It shows the number of resources detected by Cloud Discovery as well as the number of Secured resources protected by deployed Defenders over a period of time.

  • Name

Errors by Severity

Summary of all code issues by severity.

  • Name

  • Repositories

  • Code Category

  • Severity

IaC Issues by Category

Total count of IaC misconfigurations by category.

  • Name

  • Repositories

  • Code Category

  • Severity

Incidents Burndown

Displays the last 30/60/90 days of critical and high severity alerts generated from Network, Anomaly, and Audit Events against the assets across your monitored cloud environments and your team’s progress on remediating these incidents. The remediation actions include the states of resolve, dismiss or snooze.

  • Name

  • Days Before

Internet Connected Assets by Traffic Location

Displays internet connected assets by region and provides a closer look at asset relationships.

  • Name

  • Workload Types

Internet Exposed Unmanaged Assets

Top internet exposed unmanaged assets over time.

  • Name

Latest Code Review Scans

Lists 1K latest code scans of VCS pull requests and CI/CD runs.

  • Name

Most Common Code Issues by Policy

Displays the most common policy issues in code category of IaC Misconfigurations, secrets, and licensing. View the corresponding severity, issue count, and labels like Has Fix or Custom Policy to take informed business decisions.

  • Name

  • Repositories

  • Code Category

  • Severity

  • Labels

Object Data Profile by Region

Displays object profiles such as Financial Information, Healthcare, PII and Intellectual Property across AWS Regions.

  • Name

  • Data Profiles

  • Account Group

  • Cloud Account

Open Alerts Over Time

Displays the number of alerts that were opened within a selected time period.

  • Name

  • Account Group

  • Cloud Account

Policies by Severity

Provides a visualization of policies by severity and type.

  • Name

  • Cloud Type

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Account

  • Account Group

  • Asset Class

  • Enabled

  • Remediable

  • Policy Label

  • Policy Name

  • Policy Type

  • Policy Mode

  • Policy Severity

  • Policy Subtype

  • Policy Category

  • Show As

Policies Drilldown

Provides the snapshot policy count for Incidents and Risks and the top 5 policies by alerts.

  • Name

  • Cloud Type

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Account

  • Account Group

  • Asset Class

  • Enabled

  • Remediable

  • Policy Label

  • Policy Name

  • Policy Type

  • Policy Mode

  • Policy Severity

  • Policy Subtype

  • Policy Category

  • Show As

Policy Coverage

Provides a visualization of total enabled polices by type.

  • Name

  • Cloud Type

  • Compliance Standard

  • Compliance Requirement

  • Compliance Section

  • Cloud Account

  • Account Group

  • Asset Class

  • Enabled

  • Remediable

  • Policy Label

  • Policy Name

  • Policy Type

  • Policy Mode

  • Policy Severity

  • Policy Subtype

  • Policy Category

  • Show As

Prioritized Vulnerabilities

Prioritized vulnerabilities data over time.

  • Name

  • Life Cycle

  • Asset Type

Risk Burndown

Displays the number of critical and high severity risks detected using the Configuration policies on Prisma Cloud and your team’s progress on addressing these risks. The addressed actions include the states of resolve, dismiss or snooze.

  • Name

  • Days Before

Runtime Burndown and Inventory

Trend line of urgent incidents and attack paths over the last 30 days and Runtime inventory snapshot of cloud assets and workloads.

  • Name

Security Events Stream

Latest 50 events detected in your cloud estate.

  • Name

Top Assets by Role

Summarizes top open ports in your cloud environments and the percentage of traffic directed at each type of port.

  • Name

  • Account Group

  • Cloud Account

Top Attack Path by Asset

Lists the top five attack paths by asset name, number of alerts, cloud service, and account name.

  • Name

  • Account Group

  • Cloud Account

Top Attack Path By Policy

Provides the top five attack path policies that triggered an alert.

  • Name

  • Account Group

  • Cloud Account

Top Code & Build, Deploy, Runtime Issues by Collection

Lists top issues by Team, Business Unit, and App using Collections.

  • Name

Top Custom Alerts

Displays the top three custom policies by open alert count, highlighting the threats and misconfigurations you are catching through these policies.

  • Name

  • Number of Policies

Top CVSS Score Code Vulnerabilities

Lists code vulnerabilities with the highest CVSS score to help you discover and prioritize them using the Risk Factor, Severity and issue count.

  • Name

  • Repositories

  • Severity

  • CVSS Score > x

Top Data Risks by Asset

Provides top five data risks by the assets they are connected to.

  • Name

  • Account Group

  • Cloud Account

Top Data Risks by Policy

Provides the top five data risks by the policies they are connected to.

  • Name

  • Account Group

  • Cloud Account

Top Exposures by Asset

Lists the top five exposures by asset name, number of alerts, cloud service, and account name.

  • Name

  • Account Group

  • Cloud Account

Top Exposure by Policy

Lists the top five policies that triggered an exposure.

  • Name

  • Account Group

  • Cloud Account

Top Identity Risks by Asset

Lists the top five identity risks by asset name, cloud type, service, account group and number of alerts.

  • Name

  • Account Group

  • Cloud Account

Top Identity Risks by Policy

Lists the top five policies that triggered an IAM alert.

  • Name

  • Account Group

  • Cloud Account

Top Impacting Vulnerbilities

Top Impacting Vulnerbilities data over time.

  • Name

  • Life Cycle

  • Top

Top Incidents & Risks

Lists the top five incidents and risks by policy type and number of alerts.

  • Name

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Alert Rule Name

  • Cloud Account Id

  • Asset Class

  • Cloud Region

  • Service Name

  • Compliance Requirement

  • Compliance Section

  • Compliance Standard

  • Data Profiles

  • Data Patterns

  • Alert Id

  • Asset Id

  • Asset Name

  • Asset Tag

  • Object Exposure

  • Policy Label

  • Policy Name

  • Policy Subtype

  • Policy Category

  • Asset Type

  • Time Range

  • Policy Severity

  • Alert Status

  • Show As

Top Incidents & Risks by MITRE ATT&CK

Lists the top five incidents and risks mapped to the MITRE Framework.

  • Name

  • Cloud Type

  • Account Group

  • Cloud Account

  • Policy Type

  • Alert Rule Name

  • Cloud Account Id

  • Asset Class

  • Cloud Region

  • Service Name

  • Compliance Requirement

  • Compliance Section

  • Compliance Standard

  • Data Profiles

  • Data Patterns

  • Alert Id

  • Asset Id

  • Asset Name

  • Asset Tag

  • Object Exposure

  • Policy Label

  • Policy Name

  • Policy Subtype

  • Policy Category

  • Asset Type

  • Time Range

  • Policy Severity

  • Alert Status

  • Show As

Top Incidents by Asset

Lists top five incidents by asset name, number of alerts, cloud service, and account name.

  • Name

  • Account Group

  • Cloud Account

Top Incident By Policy

Lists the top five policies that triggered an alert.

  • Name

  • Account Group

  • Cloud Account

Top Insecure Repositories

Top seven repositories with the highest Critical and High severity issue count.

  • Name

  • Repositories

  • Code Category

  • Severity

Top Internet Trafficked Assets by Traffic Type

Displays top Internet connected assets by traffic type.

  • Name

  • Account Group

  • Cloud Account

Top Misconfigurations by Asset

Lists top five misconfigurations by asset name, number of alerts, service, and account name.

  • Name

  • Account Group

  • Cloud Account

Top Misconfigurations by Policy

Lists the top five policies that triggered a misconfiguration.

  • Name

  • Account Group

  • Cloud Account

Top Non-Compliant Package Licenses

Identifies the frequently occurring non-compliant package licenses within repositories.

  • Name

  • Account Group

  • Cloud Account

Top Publicly Exposed Objects By Data Profile

Displays the five publicly exposed objects with Data Profiles of Financial Information, Healthcare, PII and Intellectual Property.

  • Name

  • Account Group

  • Cloud Account

Top Risks from Unmanaged Assets

Lists top risks from unmanaged assets over time.

  • Name

Top Vulnerable Hosts

Lists the top five vulnerable hosts.

  • Name

  • Account Group

  • Cloud Account

Top Vulnerable Images

Lists the top five vulnerable images.

  • Name

  • Account Group

  • Cloud Account

Total Objects

Displays the total number of objects discovered in all your S3 storage buckets.

  • Name

  • Account Group

  • Cloud Account

Total Resources

Provides a visualization of total resources.

  • Name

  • Account Group

  • Cloud Account

Total Urgent Issues

Provides a tally of urgent issues grouped by Incidents, Exposures, Misconfigurations, Identity, and Data Risks.

  • Name

  • Account Group

  • Cloud Account

Unamanaged and Managed Asset Trend

Tally of unamanaged and managed asset data over time.

  • Name

Unamanaged Exposed Assets by Country

Tally of exposed assets by country over time.

  • Name

Urgent Alerts

Provides a visualization of Critical, and High severity incidents.

  • Name

  • Urgent Alert Category

  • Account Group

  • Cloud Account

Urgent Vulnerabilities

Provides a visualization of Critical, and High severity vulnerabilities.

  • Name

  • Account Group

  • Cloud Account

VCS Pull Requests Over Time

Analyzes the impact of Enforcement rules on new code deliveries. Observe the adoption of secure coding practices over time, including the reduction of failed PRs.

  • Name

  • Repositories

Vulnerabilities Overview

Top vulnerabilities data over time.

  • Name

Vulnerabilities Trends

Displays the vulnerabilities discovered and resolved over time across images, hosts, containers and functions for the impacted resources.

  • Name

  • Resource Type

  • Vulnerability Severity

Vulnerability Impact by Stage

Displays vulnerability impact data over time.

  • Name

  • Life Cycle

  • Asset Type

  • Severity

Manage Dashboards

Follow the steps below to manage the dashboards you’ve created.

  1. Select Manage Dashboards to clone or delete any existing dashboard.

    1. Select the dashboard you want to delete from the drop-down list and select Clone or Delete.

    2. Select the action button on any dashboard to easily copy or delete the selected dashboard.

      System generated dashboards available out of the box cannot be deleted.

Share Dashboards

Share the custom dashboards you have created with members of your organization or tenant to further collaboration and communication. Once you’ve configured the dashboard access levels, sharing is as simple as providing the URL to your team. The steps below capture the workflow:

  1. Select Dashboards from the Prisma Cloud administrative console. Make a note of the Prisma Cloud switcher mode you are on. For instance, Cloud, Runtime or Application Security. Custom dashboards created in a specific mode are only viewable in that mode.

  2. Share Dashboards: Update Access Setting

    1. Select the Menu dropdown from the Dashboards navigation menu.

    2. Click the actions menu to the left of your custom dashboard and select Share.

    3. Select Public from the Access Settings drop-down and click Update.

    4. Share the URL of your dashboard with anyone in your organization to provide access.

  3. Optionally, follow the steps below to help your users discover the Dashboard you’ve created:

    1. We recommend that you guide users to toggle on the the Visibility setting of the shared Dashboard under Dashboards> Menu > Manage Dashboards.

    2. Once the dashboard is shared globally, it will appear by default at the bottom of the Manage Dashboards list and can be reordered to the top by individual users for easy access. If the user you wish to share a dashboard with, is currently on the Dashboards page, they will also need to refresh the page to see the shared dashboard.

Keep the following caveats in mind when sharing dashboards:

  • If you received a shared dashboard URL and haven’t updated the dashboard’s Visibility settings, the shared dashboard will only show up temporarily on the Menu tab. To ensure it’s always accessible from the Menu tab follow the steps listed above.

  • Users accessing a shared dashboard may see a permission denied error message if they do not have the appropriate access levels for individual widgets within the dashboard.

Last updated

Was this helpful?