Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
CyberArk Endpoint Privilege Manager
FIN-765
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Edited:
2026-03-27 16:10
Not Verified
What It Detects
Identifies CyberArk EPM-managed endpoints that have no Asset Function assigned. Asset Function defines the operational role of an endpoint (e.g., engineering workstation, finance terminal, build server), which enables function-specific privilege policies in EPM. Endpoints without a defined function cannot be targeted by role-based application control or elevation policies, resulting in overly broad or generic privilege rules.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
Connectors
equals
CyberArk
Asset Function
is_empty
Remediation
×
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Save Changes
Export Lucidum