The Lacework integration allows security and compliance teams to automate user access reviews by syncing user and role data directly from Lacework into Drata. This connection streamlines access verification, reduces manual review work, and helps your team maintain accurate, audit-ready compliance records.
Prerequisites & Data Access
Must have Admin, Information Security Lead, DevOps Engineer, or Workspace Manager roles in Drata.
Step-by-Step Setup
Step 1: Create Secret Access Key and ID in Lacework
Log in to your Lacework instance as an Account Admin or a user with write access for API keys.
Navigate to Settings → API Keys.
Click + Create New (or select an existing key, if applicable).
Set the API key scope to admin with read access.
This ensures Drata can retrieve user and role data but cannot modify your Lacework environment.
After creating the key, download the JSON file that includes your credentials.
Copy and securely record:
Access Key ID
Secret Access Key
Step 2: Copy Lacework Domain
When logged in to Lacework, locate your domain in the browser address bar.
Example:
https://my-domain.lacework.net/ui/investigation/Dashboard
In this case, your Domain value is:
my-domain
Complete the Connection
In Drata, go to Connections → Lacework.
Enter the following information:
Drata Field | Lacework Value |
Access Key ID | Your Lacework Access Key ID |
Secret Access Key | Your Lacework Secret Access Key |
Domain | Your Lacework domain (e.g., |
For steps on accessing and using the Connections page in Drata, refer to The Connections Page in Drata.
Additional resources