Skip to content

Introduction

This document provides instructions on how to use the Jira integration feature within Prowler SaaS. The Jira integration allows for the creation and management of security issue tickets directly within your Jira environment.

Prerequisites

Before you begin, ensure that you have the following:

  • An active Prowler SaaS account.
  • Administrative access to your Jira Organization.
  • The appropriate permissions to create and manage projects and issues in Jira.

Step-by-Step Guide

Step 1: Accessing the Integration Page

  1. Log in to your Prowler SaaS account.
  2. Go to Integrations

Step 2: Setting Up Jira Integration

  1. Locate the Jira section within the integrations page.
  2. Click on the 'Enable' button to configure authorize Prowler SaaS to access your Jira Organization. Jira Setup
  3. You'll be asked to review the permissions that Prowler Saas requires.
  4. Click Accept to authorize Prowler Saas to:
    1. read:jira-work: Read Jira Project & Issue Data
    2. write:jira-work: Create and Edit issues in Jira
    3. read:me: Issues created by Prowler will use your user name Jira Authorize
  5. If successful, you'll see this page: Jira Integrations

For more information on permissions used by Prowler SaaS, see Jira scopes for OAuth 2.0 (3LO) and Forge apps

Step 3: Configuring Jira Projects

By default no projects are added to the accounts that are monitored by Prowler SaaS. You must configure Prowler SaaS for the Jira projects you want to use.

  1. Click the Manage Projects link under the Jira integration tab
  2. Here you will be able to select which Jira projects you want Prowler SaaS to use
  3. Clicking the Apply to all Cloud Accounts checkbox will automatically enable the selected projects for all of your Cloud Accounts
  4. Click Save to save your Jira configuration

Manage Jira Projects

Step 4: Configuring Jira Projects & Issues for each Cloud Account

You can limit the Projects & Issues available to your users

  1. In the 'Projects' column, select the Jira project where you want the issues to be created.
  2. In the 'Issue Types' column, select the type of issue that will be created in Jira (e.g., Bug, Task, Story). Jira Select Projects and Issues

If no Projects or Issue Types are selected, all Projects and Issues Types will be available when Sending Findings to Jira.

Sending Findings to Jira

Once the Jira Integration has been configured, you can send findings directly to your Jira project from the Findings page

Step 1: Access the Findings Page

  1. Log in to your Prowler SaaS account.
  2. Go to Findings

Step 2: Send to Jira

  1. Click the three vertical dots for a finding.
  2. On the dropdown menu that opens, select Send to Jira, a window will open. Send to Jira button
  3. Review the finding information
  4. (optional) Change the Jira Project.
  5. (optional) Change the Jira Issue Type.
  6. Click Send Send to Jira modal
  7. If successful, you'll see a flash message that indicates the issue key. Send to Jira success

Step 3: Review finding in Jira

In Jira a new issue has been created with this format:

Jira Issue sample

Removing Jira Integration

If you no longer want to use the Jira integration, you can remove it and all your Jira configuration data from Prowler SaaS.

  1. Log in to your Prowler SaaS account.
  2. Go to the Jira Integration
  3. Click Delete
  4. In the modal that opens you must enter REMOVE
  5. Click Remove to completely remove your Jira Configuration

Remove Jira

Troubleshooting

If you encounter any issues with the Jira integration:

  • Check that the issue types selected are available and properly configured in your Jira project.
  • Ensure that the Prowler SaaS account has the necessary permissions to create issues in the selected Jira project.

Re-authorize Prowler SaaS to access Jira

If you are not able to send findings to Jira, the integration may be disabled. You can review this and re-authorize Prowler SaaS to access your Jira Organization.

  1. Log in to your Prowler SaaS account.
  2. Go to the Jira Integration
  3. Click the Click to Re-authorize Link.
  4. You'll be taken to Jira to confirm your settings
  5. Click Accept to enable Prowler SaaS again

Reauthorize Jira