After you have configured connectors, Lucidum can start ingesting data and displaying information about your environment. By default, Lucidum ingests data every 24 hours. After 24 hours, information appears on the Home page.

If you want to start ingesting data immediately, you can go to Monitoring > Data Ingestion Trigger and click Ingest Data to immediately start ingesting data.

The Home page is a convenient way to see what data Lucidum has ingested and check for any previously unknown users or assets.

By default, the home page displays three types of graphics:

  • Pie-charts about Users, Assets, and Data

  • Lists of:

    • users found and their associated risk scores

    • assets found and their associated risk scores

    • data found and their associated risk scores

  • Data Ingestion Flow that shows incoming data sources and the status of the connection to those data sources

Pie Charts

The default pie charts are for User, Asset, and Data.

  • Clicking on a slice of any of the pie charts displays a detailed list of users, assets, or data.

  • For example, in the User pie chart, clicking on the slice for with Asset Found displays this list of details:

User Pie Chart

Lucidum uses machine learning to verify and de-duplicate all the users in your environment. Lucidum then aligns users with assets.

By default, the User Pie Chart displays:

  • Users for whom Lucidum cannot find linked assets

  • Users for whom Lucidum has found linked asset

  • Clicking on a slice displays details about the users in the slice.

Asset Pie Chart

Lucidum uses multiple data sources and machine learning to discover all the assets in your environment.

By default, the Asset Pie Chart displays:

  • Cloud assets

  • Non-cloud assets

  • Clicking on a slice displays details about the assets in the slice.

Data Pie Chart

Lucidum uses machine learning to determine the types of data in your environment. Lucidum then aligns that data with assets and users.

By default, the Data Pie Chart displays all the types of data in your environment.

Clicking on a slice displays details about the data in the slice.

Lists

The Home page includes lists of most recently found Users, most recently found Assets, and most recently found data. These lists include a Risk Score.

Risk Score

Lucidum calculates Risk Score using proprietary rule-based algorithms and machine learning algorithms. The risk score comprises information that Lucidum has discovered about the asset or user combined with the security risk for the data associated with the asset or user.

The lowest possible risk score is “1”. The highest possible score is unbounded; there is no defined highest possible value for risk score.

Risk score changes only if you mitigate the risks that Lucidum has discovered about the asset or user. For example, if Lucidum determines that an asset does not include endpoint protection, you can reduce the risk score for that asset by installing endpoint protection.

New User Found

The New User Found list displays the new users found by Lucidum today.

  • The list displays the user name and the risk score associated with that user. The user with the highest risk is listed first.

  • Clicking on a user name displays the Details page for that user.

The Details page includes two tabs: Data Source and Lucidum Data Group.

  • The Lucidum Data Group tab is the deduplicated and extrapolated information derived from ingested information and machine learning. From this tab, you can view details about the user in multiple categories. For example, if you click Data, you will see the type of data accessed by this user account.

  • The Data Source tab displays the raw data ingested from hardware and software in your environment.

New Asset Found

The New Asset Found list displays the new assets found by Lucidum today.

  • The list displays the asset name and the risk score associated with that asset. The asset with the highest risk is listed first.

  • Clicking on an asset name displays the Details page for that asset.

The Details page includes two tabs: Data Source and Lucidum Data Group.

  • The Lucidum Data Group tab is the deduplicated and extrapolated data derived from ingested data and machine learning. From this tab, you can view details about the asset in multiple categories. For example, if you click Applications, you will see the applications associated with the asset.

  • The Data Source tab displays the raw data ingested from hardware and software in your environment.

New Data Found

The New Data Found list displays the new data stores found by Lucidum today.

  • The list displays the data store name and the risk score associated with that asset. The data store with the highest risk is listed first.

  • Clicking on a data store displays the Details page for that data store.

The Details page includes two tabs: Data Source and Lucidum Data Group.

  • The Lucidum Data Group tab is the deduplicated and extrapolated information derived from ingested information and machine learning. From this tab, you can view details about the data store in multiple categories. For example, if you click Asset, you will see details about the asset where the data store resides.

  • The Data Source tab displays the raw data ingested from hardware and software in your environment.

Data Ingestion Flow

The Data Ingestion Flow chart shows all the sources of data and if the last ingestion by Lucidum was successful or timed out.

Mousing over the solid circle next to a data source displays information about the last time Lucidum ingested data from that data source.