Skip to main content

Jira Connection

Set up and manage your Jira or Jira Data Center in Drata to automate security ticket monitoring and enable write access.

Updated this week

Connect Jira or Jira Data Center to automate monitoring and evidence collection for your vulnerability management controls. You can also create a new Jira Ticket directly in Drata or link an existing Jira ticket within Drata.

Note: Additional steps are required for Jira Data Center. These are highlighted during the integration process and in the instructions below.

Prerequisites

Before you begin, confirm the following:

Set Up Jira

You can integrate multiple Jira accounts with Drata.

  1. In Drata, go to the Connections page from the lower-left navigation menu.

  2. Select the Available Connections tab, search for Jira, and click Connect.

  3. Choose Jira or Jira Data Center.

  4. Complete the integration form:

    • Account Alias: Enter a name to identify this Jira integration (useful when you connect more than one Jira account).

    • Source: Select how Drata identifies relevant tickets.

      • Label: Enter the Jira label used to tag security-related tickets.

      • JQL (Jira Query Language): Enter a JQL query that returns the expected security tickets. Drata does not validate JQL queries. Test your JQL in Jira before using it.

    • Write Access (optional): Enable to allow Drata to create Jira tickets directly within your selected project.

Jira Authentication

Note: This step applies only to Jira Cloud users. If you are connecting to the Jira Data Center, refer to the next section for authentication details.

After selecting Jira:

  1. Drata redirects you to Jira.

  2. Grant the required permission scopes:

    1. read:jira-user

    2. Read:jira-work

  3. Confirm the permissions in Jira.

  4. You are redirected back to Drata after approval.

Jira Data Center Authentication

For those that are connecting to Jira Data Center:

  1. Choose your authentication method:

    1. Personal Access Token (recommended)

    2. Username and password

  2. Whitelist Drata’s IP addresses:

    1. Select your organization > Security > IP allowlist

    2. Click Create allowlist, and add the following:

      1. 44.194.126.11

      2. 44.194.4.0

      3. 3.232.227.174

      4. 3.214.125.237

  3. Provide your Jira domain:

    1. Enter only the domain portion (e.g., for https://jira.acme.com/jira, enter jira.acme.com/jira)

  4. Generate and enter a personal access token:

    1. In Jira, go to your profile > Personal Access Tokens

    2. Click Create Token, name it, and copy it into Drata

Edit Your Jira Integration

  1. Go to Connections in Drata.

  2. Locate your Jira integration and click View.

  3. Update the alias, modify the Source field, or toggle Write Access on or off.

Note: Drata verifies values in the Jira Priority field only. Priority fields are managed in Jira, not in Drata. Custom or missing Priority fields in Jira may affect monitoring tests such as Test 26.

Additional Resources

Did this answer your question?