Prisma Cloud Compute Collections must be used to partition views and enforce organizational-defined need-to-know access.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-253525SRG-APP-000038-CTR-000105CNTR-PC-000130SV-253525r960801_rule2024-12-062
Description
Prisma Cloud Compute Collections are used to scope rules to target specific resources in an environment, partition views, and enforce which views specific users and groups can access. Collections can control access to data on a need-to-know basis.
ℹ️ Check
Navigate to Prisma Cloud Compute Console's >> Manage >> Collections and Tags >> Collections tab. Review the Collections according to organizational policy. If no organizational-specific Collections are defined, this is a finding.
✔️ Fix
Navigate to Prisma Cloud Compute Console's >> Manage >> Collections and Tags >> Collections tab. Create a collection: - Click "Add Collection". - Enter a name and description and then specify a filter to target specific resources. - Click "Save".