Policy Violations

A violation is created when a policy rule evaluates as true for an entity within the defined scope.

Violations provide visibility into non-compliant or high-risk conditions identified during policy evaluation.

Navigate to Violations

Go to:

Identity Governance & Administration > Policy > Violations

The Violations page provides centralized visibility into all violations generated across policies.

Violations List View

Violations are displayed in a tabular format for monitoring and remediation tracking.

The table includes:

  • Violation ID
  • Execution ID
  • Policy
  • Policy Type
  • Entity Type
  • Entity
  • Severity
  • Status
  • Detected On
  • Last Evaluated
  • Owners

This view enables administrators to assess compliance posture, monitor remediation progress, and identify high-risk conditions across entities.

Filter and Customize the View

The Violations page supports:

  • Search by entity or policy
  • Filter by policy, severity, status, or date range
  • Column visibility control and reordering
  • Table density selection
  • Refresh

These controls allow focused review of specific violations or operational states.

View a Violation

  1. Navigate to Identity Governance & Administration > Policy > Violations.
  2. Select a violation.

The violation detail page displays:

  • Policy reference
  • Entity information
  • Severity
  • Current status
  • Detection timestamp
  • Execution reference
  • Assigned owners
  • Remediation details

This view provides the context required to review and address the violation.

Violation Status

Violations move through defined lifecycle states.

Detected

The violation has been identified and awaits review.

Under Review

The violation is being assessed.

Remediated

Corrective action has been completed.

Exempted

The violation has been formally exempted from enforcement.

Failed

Remediation was attempted but did not complete successfully.

All status transitions are recorded for audit and traceability.

Relationship to Policy Runs

Each violation is linked to a specific policy execution.

The Execution ID references the Policy Run during which the violation was generated.

This linkage provides traceability between:

  • Policy evaluation
  • Violation creation
  • Remediation activity

Policy Runs provide the execution-level context, while Violations provide entity-level outcomes.