Asset detail card - Administrator Guide - Cortex CLOUD

KSPM-Documentation

Product
Cortex Cloud Application Security > Cortex CLOUD
Creation date
2025-05-11
Last date published
2026-06-11
Category
Administrator Guide

To analyze a resource in more detail, select View Asset to open the asset card. The card includes these tabs:

Tab

Description

Overview

Provides a high-level summary of the resource's identity, security posture, and critical threats such as vulnerabilities or malware. It includes a health status of security scans and an interactive graph to visualize dependencies.

Resource Explorer

Provides a breakdown of associated assets, featuring visual graphs for Assets per Namespace and Assets per K8S Category, along with a detailed table listing resource specifics such as asset name, type, category, and tags.

Identity

Maps the permissions and access controls associated with the resource, illustrating relationships between its identity and associated roles or services.

Configurations

Displays cloud configuration issues associated with the asset, tracking details such as severity and category. It also provides the raw Asset Configuration JSON for deep inspection of the asset's properties and metadata.

Vulnerabilities

Provides a detailed breakdown of all detected security findings associated with the resource. It offers a centralized view to help assess and prioritize the remediation of known security issues.

SBOM

Provides a comprehensive inventory of all software components and dependencies detected within the resource, tracking identification metadata and scan timing.

Network

Summarizes the resource's connectivity and exposure by displaying networking metadata and security controls. It allows users to analyze traffic boundaries, firewall policies, and network rules governing the assets across the cloud or cluster network.

Compliance

Evaluates the resource's adherence to regulatory requirements and industry benchmarks by presenting an overall security score. It provides a breakdown of audit results, highlighting which controls are met and which require immediate attention to mitigate risk.

Note

Workloads context: The workloads section specifically identifies managed workloads, including Deployments, DaemonSets, StatefulSets, CronJobs, and ReplicaSets not managed by deployments, and jobs not managed by a CronJob.