Account Attributes
The following is the limited list of account attributes supported by SailPoint CyberArk Privilege (Self-Hosted). This list can't be extended.

A Unique ID of the user
This is an Account ID which must not be changed.

The username of the user
Avoid using userName with special characters like ‘&’, ‘%’ , ‘+’, ‘#’,‘?’, ‘<’, ‘>’, ‘*’, ‘"’, ‘/’ or ‘\’ , as they are not supported by CyberArk PAM (Self-Hosted).

The family name

The last name of the user

The middle name of the user

The display name of the user

The type of the user

Determines whether user is active on the managed system

The organization of the user

The department for the user

The SCIM resource type

Resource creation date and time

Last modified date and time

The URL to access SCIM resource

The directory type for the user

Name of the external application on which the object lives
If this is a PAM local object, use null
as its value.

The native identifier of the object on the external application (for example, LDAP DN)
If this is a PAM local object, use null
as its value.

The list of entitlements associated with the user

The list of groups user belongs to