Connect Jira or Jira Data Center to automate monitoring and evidence collection for your vulnerability management controls. You can also create a new Jira Ticket directly in Drata or link an existing Jira ticket within Drata.
Note: Additional steps are required for Jira Data Center. These are highlighted during the integration process and in the instructions below.
Prerequisites
Before you begin, confirm the following:
For Jira Data Center, ensure your environment supports token-based authentication and IP allowlisting.
Set Up Jira
You can integrate multiple Jira accounts with Drata.
In Drata, go to the Connections page from the lower-left navigation menu.
Select the Available Connections tab, search for Jira, and click Connect.
Choose Jira or Jira Data Center.
Complete the integration form:
Account Alias: Enter a name to identify this Jira integration (useful when you connect more than one Jira account).
Source: Select how Drata identifies relevant tickets.
Label: Enter the Jira label used to tag security-related tickets.
JQL (Jira Query Language): Enter a JQL query that returns the expected security tickets. Drata does not validate JQL queries. Test your JQL in Jira before using it.
Write Access (optional): Enable to allow Drata to create Jira tickets directly within your selected project.
Jira Authentication
Note: This step applies only to Jira Cloud users. If you are connecting to the Jira Data Center, refer to the next section for authentication details.
After selecting Jira:
Drata redirects you to Jira.
Grant the required permission scopes:
Confirm the permissions in Jira.
You are redirected back to Drata after approval.
Jira Data Center Authentication
For those that are connecting to Jira Data Center:
Choose your authentication method:
Personal Access Token (recommended)
Username and password
Whitelist Drata’s IP addresses:
Go to admin.atlassian.com
Select your organization > Security > IP allowlist
Click Create allowlist, and add the following:
44.194.126.11
44.194.4.0
3.232.227.174
3.214.125.237
Provide your Jira domain:
Enter only the domain portion (e.g., for https://jira.acme.com/jira, enter jira.acme.com/jira)
Generate and enter a personal access token:
In Jira, go to your profile > Personal Access Tokens
Click Create Token, name it, and copy it into Drata
Edit Your Jira Integration
Go to Connections in Drata.
Locate your Jira integration and click View.
Update the alias, modify the Source field, or toggle Write Access on or off.
Note: Drata verifies values in the Jira Priority field only. Priority fields are managed in Jira, not in Drata. Custom or missing Priority fields in Jira may affect monitoring tests such as Test 26.
Additional Resources
Monitoring tests covered: Test 26: Security Issues are Prioritized