Automate the Audit Log shipping from Atlassian cloud to a Security Provider

XMLWordPrintable

    • 4

      Issue Summary

      The information registered in the Audit Log helps to monitor the Jira Cloud interactions and with other sources of information is possible to build a solid and reliable data block when a network security risk or threats are in place. With that in mind it is important to have an integration between Jira Cloud and Security Providers (e.g Microsoft Azure Sentinel) that will allow to ship the Audit Log in real time (desirable) or regular basis.

      Steps to Reproduce

      N/A

      Expected Results

      With the integration between Jira Cloud and a Security Provider (e.g Microsoft Azure Sentinel) the Audit Log date should be polluted in real time (desirable) or regular basis.

      Actual Results

      So far similar integrations doesn't exist.

      Workaround

      Use a script that exports the audit logs on a regular interval then possibly, ingest that content to the Security Provider (e.g Microsoft Azure Sentinel). See the API documentation below:
      https://developer.atlassian.com/cloud/jira/platform/rest/v3/api-group-audit-records/#api-rest-api-3-auditing-record-get

            Assignee:
            Unassigned
            Reporter:
            Jairo Ortiz
            Votes:
            6 Vote for this issue
            Watchers:
            6 Start watching this issue

              Created:
              Updated:
              Resolved: