Configuring your Drata account ensures that the right team members have access to key compliance tools and that your account settings accurately reflect your organization’s operations. Proper configuration also supports evidence collection for frameworks such as SOC 2, ISO 27001, and others.
Prerequisites
Only Administrators have full access to Company Settings.
All users can access their own My Settings to manage personal preferences.
Access the Settings Page
Click your user profile (bottom-left corner of the screen).
Select Settings from the menu.
You’ll land on the Settings page, which is organized into two main sections: My Settings and Company Settings.
My Settings
Setting | Description |
Notifications | Choose which compliance or automation alerts you’d like to receive. |
Language | Select your preferred display language for the Drata app. |
Company Settings
These settings may apply to your organization as a whole
Setting | Description |
Account Access | Grant Drata Support remote access. |
AI Settings | Once you enable AI, users of this workspace will have access to the AI features. |
API Keys | Create and manage API keys for integrations and custom workflows. |
Company Info | Update company name, domain, and workspaces. |
Compliance as Code | Manage automated control mapping and compliance scripts. |
Custom Fields & Formulas | Add organization-specific data fields or computed values to enhance reporting. |
Human Resources | Manage HR compliance activities, including background checks, off-boarding, and key HR documentation such as org charts and employment agreements. |
Internal Security | Configure your organization’s internal security policies, including how Drata monitors workstation configurations and collects related evidence. You can also define your security awareness training requirements and how completion data is synced into Drata. |
Key Personnel Info | Assign and update roles such as Security Officer or CEO. |
Language | Set a default company-wide language preference. |
Notifications | Configure organization-wide notification preferences. |
Plan and Usage | View subscription plan details and usage metrics. |
Role Administration | Define and manage user roles and permissions. |
Ticket Automation | Configure automation rules that generate tickets from compliance tasks. |
Vendor Questionnaires | Manage vendor assessments/questionnaires. |
Workflows | Create automated task flows to streamline evidence collection or approvals. |
