> For the complete documentation index, see [llms.txt](https://docs.oort.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.oort.io/dashboard/posture/identities-dashboard.md).

# Identities Dashboard

The Identities dashboard provides a high-level view into your key metrics about the identities present in your connected Identity Sources. This article provides details on each of the sections or widgets in the Identities dashboard.

The Identities dashboard displays metrics and visualizations on areas of interest including:

* [Posture Scores](#posture-scores)
* [Posture Score Trends](#posture-score-trends)
* [User per Trust Level](#user-trust-level)
* [Risky Users Distribution Over Time](#risky-users-distribution-over-time)
* [Identities](#identities)
* [Administrators](#administrators)

## Posture Scores <a href="#posture-scores" id="posture-scores"></a>

Cisco Identity Intelligence separates posture into three scores. Each score ranges from 0 to 100. Higher scores indicate stronger posture.

* **Users Score** covers human identity hygiene and security controls.
* **MFA Score** covers MFA coverage and hygiene.
* **NHI Score** covers service accounts and other non-human identities.

See [Identity Posture Scores](/identity-posture-score.md) for calculation details and remediation guidance.

### Posture score recommendations

The score widget provides the current score for each posture area. It also shows:

* the score threshold category
* the score change over the last 30 days
* the last calculation date
* prioritized recommendations, including
  * the number of users failing the check associated with the recommendation
  * the severity of the issue that is being recommended for remediation

Recommendations are ordered by expected impact on the relevant score. Fully remediating the first recommendation produces the greatest improvement.

Select a failing-user count to open the Users page filtered for that check.

You may see **Configure** when required HRIS data is missing. Select it to configure HRIS data through **Integrations**.

You may see **View Check** when a contributing check is disabled or fails on settings. Select it to review or enable the check.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2F66HLAWNbSFml3qCTsCON%2Fimage.png?alt=media&amp;token=eac7c485-6641-466a-ab4b-2f1231a35632" alt="" width="563"><figcaption></figcaption></figure>

### Posture score trends <a href="#posture-score-trends" id="posture-score-trends"></a>

The trend widget shows changes to each posture score over time. Use it to track progress and assess the effect of remediation work.

Hover over a data point to view the top three contributors to that score change.

By default, this widget looks at the last 30 days; however, you can use the timeframe filter in the top right-hand corner of the widget to change the widget's timeframe to be longer or shorter depending on your needs.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FxjRyseU2Kv7uvPWOKnKT%2Fimage.png?alt=media&amp;token=dee874b3-f23d-4d48-a4a3-38540667c169" alt="" width="563"><figcaption></figcaption></figure>

## User Trust Level

User Trust Level looks at different components that make up user risk, such as on a user's context, behavior and common tendencies, to calculate a single User Trust Level. Trust Levels allow you to quickly and easily pick the riskiest users out of the crowd, so that you can investigate with urgency and remediate the situation as quickly as possible, reducing the attack timeframe or even preventing an attack from happening in the first place.

To learn more about User Trust Levels, what factors are included in the calculation, how it is calculated, and more, see our documentation about [User Trust Levels](/user-trust-level.md).

There are two widgets in the Dashboard related to User Trust Levels which are described below.

### Users per Trust Level

The Users Per Trust Level widget displays the current breakdown of the number of identities in each Trust Levels across your organization.

Not only does this graph give you a sense of where your users are at today, but it is also a quick and easy way to find users for investigations. Selecting one of the bars in this visualization will take you to the Users page, pre-filtered for the Trust Levels selected, so you can see all users who currently have a particular Trust Level.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FSeAP9TRS2p4fvAI8nCxk%2Fimage.png?alt=media&amp;token=a255d0b1-9dad-45a7-a540-1cce334d52f6" alt="" width="563"><figcaption></figcaption></figure>

### Risky Users Distribution Over Time

The second widget, Risky Users Distribution Over Time, depicts fluctuations to the trust levels of the users in your organization over time. This widget can be useful to identify sudden spikes in User Trust Levels.

If you hover over a data point in this widget, which are marked by a dot on the trend line, you will see a tooltip with the count of users, segmented by Trust Level, for that given date.

By default, this widget looks at the last 30 days; however, you can use the timeframe filter in the top right-hand corner of the widget to change the widget's timeframe to be longer or shorter depending on your needs.

Selecting a value in the legend below the graph will remove the corresponding data points from the visualization.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FX7Rvu7enqvWozKhCgZZN%2Fimage.png?alt=media&amp;token=bb5e6a97-053e-43ca-93a5-c483d38fde08" alt=""><figcaption></figcaption></figure>

## Identities

**Purpose & Benefit**: Multiple Identity themed widgets to make it easy to quickly assess the size of your total identity estate, as well as recent trends in your identity hygiene and security posture.

### Identity Security Snapshot

The Identities widget provides total identities, protected population metrics, and key metrics around identity hygiene and threats, such as -

* Inactive Guest Accounts
* Never Logged In accounts
* Inactive Account Probing
* User Type Missing in user profile

You can select any of these numbers and it will take you to the corresponding Check details page or to a pre-filtered Users Page for further investigation.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FG4tCHYX8i7QFrYXThaCK%2Fimage.png?alt=media&amp;token=41bd08e3-a39c-4548-b4c8-31d0f27c7455" alt=""><figcaption></figcaption></figure>

### Users per Source

The Users per Source widget further down the dashboard provides a breakdown of the number of identities in each connected identity platform.

Selecting one of the bars in this visualization will take you to the Users page, pre-filtered for the users derived from the selected integration.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FTeaiD03CQHQc3bQcYlwx%2FScreenshot%202024-08-14%20at%205.13.15%E2%80%AFPM.png?alt=media&amp;token=799c8059-2c86-4021-862d-53dec8924352" alt="" width="563"><figcaption></figcaption></figure>

### Monthly Sign-ins

This widget provides details on the total number of monthly sign-ins, including a breakdown of success, failure, and other types of sign-in events.

Trends can be analyzed for changes, such as a high spike in failures or overall sign-in events.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FJpgXPLtJiayvSlhbiSIl%2FDashboard4_2023-06-04_10-14-38.png?alt=media&amp;token=38f7212d-cd5d-4b35-b055-273d34bca6a8" alt="" width="563"><figcaption></figcaption></figure>

## Administrators

**Purpose & Benefit:** Quickly answer an often difficult question for organizations - how many administrators do I have in each platform and where are they logging in from recently?

The Dashboard contains a couple widgets to highlight the administrators within your environment, as well as their recent activity, since these users have higher privileged access to your IDPs and present a higher security risk if their accounts were to be compromised.

### Administrators per Source

The Administrators per Source widget provides a breakdown of the number of Admin users in each connected identity platform.

Selecting any of the bars in this visualization will take you to the Users page, pre-filtered for administrators of that specific integration.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2FenQkp40KVGXYGM1eKFMa%2Fimage.png?alt=media&amp;token=a9263b2f-fa4d-4ee9-8e9c-eaa7bea646ff" alt="" width="563"><figcaption></figcaption></figure>

### Administrator Logins

**Purpose & Benefit:** Quickly monitor activity and spot admin account logins from unexpected networks and locations, including ones that have been tagged with a poor IP reputation or other alerts.

The Administrators logins widget shows a log of each Administrators most recent log in activity, including the user's name, email address, the IP address for their last login and the IP location, any tags for that IP address, and the sign in result - Success, Failure, etc

Selecting the blank space of a row or the 'open in new tab' icon next to the Admin's name will open the Admin's User360 in the same window or a new tab, depending on what is selected.

<figure><img src="https://582105988-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FqPSBzsjxd7KYg9DNVZ4l%2Fuploads%2F9Fw6zfSfuqyLlj8x7vhu%2Fimage.png?alt=media&amp;token=8fa50e25-b56f-4666-86f1-fc934b6bc9f2" alt="" width="563"><figcaption></figcaption></figure>
