💡 Still using the classic Drata experience? Refer to Personnel Overview for the original UI.
The Personnel page centralizes all employee compliance data in one place. From here, you can view compliance requirements, filter by attributes, and export reports. This page helps organizations stay audit-ready by ensuring no one slips through compliance gaps.
Prerequisites
Required Drata roles: Admins, Information Security Leads, Workspace Managers, or Personnel Compliance Managers.
Personnel data sources: Identity Provider (IdP), HRIS Provider, or Manual entries (for former personnel or accounts not managed in IdP/HRIS)
To access the Personnel page: Go to Governance → Personnel.
Filter and Search Personnel
Use filters and search to quickly narrow down personnel records.
Employment status: Filter by current, former, contractor, or out-of-scope personnel.
Compliance: Identify individuals missing required actions, such as security training or policy acknowledgements.
Sync status: See whether records are synced from an IdP or HRIS.
Group: Filter by IdP groups (available only when group syncing is enabled).
You can also use the search bar to look up individuals by name or job title.
Why this matters: Filters make it easy to target specific remediation work. For example, you can pull a list of only non-compliant contractors and quickly act on them.
Take action on selected personnel
Select one or more personnel to access available actions. Some actions are grouped under the More menu.
Send reminder email
Send a reminder email to selected individuals who have incomplete, user-actionable compliance requirements. The reminder directs them to My Drata to complete required actions in My Drata.
Notes:
Reminder emails are sent only to other personnel. You cannot send a reminder to yourself.
When individuals are selected, reminders are sent only to those selected.
Change employment status
Update an individual’s employment status to reflect their current relationship with your organization. You can also select a new employment status from the Personnel status column dropdown.
Available statuses:
Current employee
Former employee
Current contractor
Former contractor
Out of scope (ignore)
Out of scope (service account)
Notes:
Future hire, Former employee (manually added), and Former contractor (manually added) statuses cannot be updated.
Manually changing employment status pauses IdP or HRIS syncing for that individual.
Create exclusions
Exclude selected individuals from specific compliance checks when those requirements do not apply to them. Exclusions are used to document justified exceptions, such as roles that are not required to complete background checks.
You can apply exclusions in bulk by grouping personnel in your identity provider. For example, create an IdP group for individuals who should be excluded from background checks and sync that group to Drata. Then, on the Personnel page, filter by the group, select the applicable individuals, and create the exclusion.
When creating an exclusion, you define:
Who the exclusion applies to (individuals or groups)
Which compliance checks are excluded
How long the exclusion applies
Why the exclusion exists (this reason appears in audit reports)
Upload evidence
Upload evidence for selected individuals to support specific personnel requirements, such as MFA, security training, or background checks. This is commonly used when evidence is collected outside of automated integrations.
Re-enable IdP/HRIS sync
Re-enable IdP or HRIS syncing for selected individuals. This resumes automated updates to personnel details from connected systems.
Reset training requirements
Reset completed training requirements so individuals must complete them again. This is typically used after policy updates or framework changes.
Available options include:
Reset Security Training
Reset HIPAA Training (HIPAA framework required)
Reset AI Awareness Training (NIST AI framework required)
Download Personnel Data
You can export personnel data directly from the Personnel page as CSV files:
Compliance Overview: A complete snapshot of personnel compliance status, including custom fields.
Policy Acknowledgement: A detailed report showing which policies each individual has acknowledged.


