Guide

Creating a Custom Policy

To add a custom policy to your governance, you need to:

  1. Click on “Policies” on the Nav Panel.
  2. Click “Policy Options([…]), then select “Create Policy”.
  3. This will take you to the “Policy Template Library”. In the “Policy Template Library”, you can search for a template by narrowing down the list of templates by Service, Category, and Severity.
  4. Now, click on the “Create Custom Policy” button in the top-right of the screen.

On the Logic screen:

  1. Select the object that the policy is reporting the violation on using the drop-down selection (e.g. Users).

  2. Click “Add Filter”.

  3. Select a field for the “Filter condition”. It is possible to add multiple configurable filter properties by using the “AND/OR” attributes and also add additional related objects to the logic if required.

    Example: To show users, not in the United States. Select "Is External" in the field and the query "Is False". Then click the "+" button and choose "Add Condition", then in the new field select "Country or Region" set the query to "Does Not Contain", and in value enter "United States".

Summarize Policy Violations

If you want to group/summarize the violations of the policy.

  1. If you want to group/summarize the violations around a related object, click ”+ Summarize By”.

  2. Select the desired Object in the drop-down.

  3. Click the “Preview” button to see a selection of the results from the logic.

    It is good practice to use the "Preview" button when adding additions to the logic to see the results being altered as you progress in constructing the logic for the policy.
  4. Once happy with the logic, click “Next” in the top right corner.

On the Details screen:

  1. In the “Title” field, enter a unique name for the policy. (e.g. Non-USA Users).

    A Green tick will appear when the title is unique, allowing you to proceed and save the policy. The title is limited to 50 characters in length & the description is limited to 250 characters.
  2. In the “Description” field, enter a description for the policy. (e.g. Show users that are outside the United States).

  3. Select the desired “Category” from the drop-down for the policy.

  4. Select the “Severity” for the violations; this can be Information (lowest), Low, Medium, or High (highest).

  5. Select the “Icon” for the policy from the drop-down; this is usually the service the object belongs to.

  6. Once happy with the details and the policy, click “Save” in the top right corner.

After clicking “Save,” the policy will begin gathering data and display the results based on the data from the last scan. If you do not want the scan to be enabled, toggle this off.


Last updated: 7/31/2025