Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Set up scan configuration for data visualization

Visualize all account violations by scanning them using the selected policy set. Display the severity of all violations on the admin dashboard to take appropriate actions.

Before you begin

Make sure you have referred to the default policies (Policy list for scanning cloud accounts). To create a custom policy set, see Create a policy set.

Role required: sn_itom_cam.cw_admin or sn_itom_ccg.scheduling_admin

Procedure

  1. Navigate to All > Cloud Configuration Governance > Scan Configurations.

  2. Create a scan configuration by selecting New.

  3. Identify the configuration by entering Name and Description.

  4. Under the Configuration tab, select a Cloud Provider Type from the lookup.

  5. Select the Unlock Policy Sets icon (

Image omitted: unlock\_icon.png
Unlock policy sets\) and select a policy set from the list.
  1. Select the Lock Policy Sets icon (
Image omitted: lock\_icon.png
Lock policy sets\).
  1. Select Additional actions icon (
Image omitted: additional-actions.png
Additional actions icon\) or right-click on the top bar and select **Save** to save the current settings.
Image omitted: save-scan-config.png
Save Cloud Configuration Governance Scan Configuration
  1. Under the Service Account column, select all the management accounts and member accounts from the lookup.

    Note: Selecting a management account scans all current and future member accounts automatically. Choosing individual member accounts requires manual selection for each scan.

  2. Select Setup Schedule and set the schedule as necessary.

  3. Select Update.

  4. Synchronize the configuration with the Cloud Account Management app by selecting Sync CAM Config.

Image omitted: sync\_CAM\_config.png
Sync CW Config button on the Scan Configuration page
**Note:**

-   To view the synchronized configuration, navigate to **All** > **Cloud Workspace** > **Configuration**.
-   If you have synchronized the configuration, you don’t have to create a Scan Account configuration mentioned in [Create a scan account configuration](create-scan-account-config.md).
  1. To run an on-demand scan, select Execute.

    Note: You can create unlimited configurations for each account. An account may have multiple scan configurations, with violations and assessments based on all of them.