Skip to main content

Organization settings: Key Personnel Information (New Experience)

Define leadership and accountability roles used in audits and compliance reporting.

⚠️ Select your experience

The steps to navigating to your Settings page depend on your interface version. Select a link to skip to the instructions for your version.

Customers who joined Drata on or after Feb 24, 2026 are automatically on the New Experience.

Instructions for the New Experience ⬇️

Key Personnel Information establishes who is accountable for security, compliance, and governance at your organization.

Prerequisites

  • Only Admins can manage Key Personnel Information.

  • Personnel must already exist in Drata to be assigned.

Access Key Personnel Information

  1. Select Settings.

  2. Go to Organization details.

  3. Open the Key personnel tab.

Displays organization details with Key Personnel tab

What you configure here

You assign individuals responsible for core governance functions. Each role represents responsibility, not just a job title. If your organization does not have a formal title (for example, no CISO or Board), assign the person who performs the responsibilities described.


Board of Directors

If your organization has a board:

  • Assign the appropriate individuals

  • Include links to public profiles where applicable (LinkedIn is commonly used)

If you are an early-stage company, it can be acceptable for founders or executives to fulfill board-level responsibilities. Auditors typically evaluate function, not formality


Common mistakes to avoid

  • Leaving roles unassigned: Auditors may flag missing governance ownership.

  • Assigning inactive users: Ensure assigned personnel are current and active in Drata.

  • Using titles instead of responsibility: Auditors care about who owns the responsibility, not the title text.


​Instructions for the Classic Experience ⬇️

Configuring your Drata 'Key Personnel Info' page is key to fulfill several of the controls within your compliance framework.

BEFORE DIVING IN

Only account administrators have access to this section within Drata.

HERE'S HOW

From your company logo in the lower left of any Drata screen, click the Key Personnel Info option. Or, navigate directly from the 'Quick Start Guide' to https://app.drata.com/account-settings/personnel

Click on 'Key Personnel Info' and add the Executive Team, Security Committee as well as the Board of Directors.

Within the space provided, type the person's name and you will be able to select a pill with their name and avatar.

NOTE: Even if you don't have someone on your team with the title listed, use the text below the title to identify who holds the responsibilities listed.

Board of Directors

Add your board members and a link to their public profiles. You must include a link to a public facing profile for each member. A LinkedIn profile is used as a best practice.

If you are still a young company and don't have a board of directors, it is ok that your board may just be your founders. It’s fairly common early on.

Upon completion, click 'Update' to save all details.

Did this answer your question?