Last updated
Detects applications that have been used by less than 90% (customizable) of the assigned users within 30 days(customizable), as configured in the check settings. Removing user access reduces unnecessary access and risk in case of account compromise, improves security posture, and can save licensing costs.
Before revoking access to a particular application, inform the assigned user(s), or their manager, that the app is not utilized and make sure the application is no longer needed. Remove access at the identity source where user access to the application is managed. If the app utilization rate is very low, consider decommissioning it entirely.
If you have many applications failing this check, focus on addressing impacted sensitive applications first. To do so, go to Applications and toggle to select the desired apps as sensitive, then update the check's settings here to only consider sensitive apps.
Configurable Check Settings and Default Settings Only sensitive apps: false
App usage timeframe: 30
Ignore bookmark apps: true
Utilization threshold: 90
Ignore List: empty
Include List: empty
Compatibility
Duo
Last updated