
Explore Jira Cloud security by consolidating best practices across the platform, focusing on access permissions, configuration, and audits, with AWS-backed operations and coverage of ACP 120 focus and bug bounty.
Set up your Atlassian account and access Jira, Confluence, and related services, then master account and administration settings, with optional free fundamentals and ACP 120 prep for the course.
Explore the risk landscape of cloud systems by mapping Atlassian product usage, implementing a layered security model with identity providers, access controls, and automation for Jira, Confluence, and service management.
Set up Google workspace as the identity provider for Jira, enforce Google login, sync users and groups, verify domains, and manage internal access.
Learn to set up authentication processes in Jira Cloud by verifying a domain, uploading the verification file, and keeping the verified domain active for ongoing access.
Learn how to provision Jira users in cloud services using internal and external directories such as Active Directory, Okta, and G Suite. Understand limits, rest API provisioning, and multi-directory synchronization.
Manage users and groups in Jira cloud, covering internal vs external invites, user roles from basic to site administrator, group-based access, and activation, suspension, and monitoring workflows.
Explore how Jira cloud syncs with your identity provider to provision users and groups, manage products by group, and navigate 60-minute polling, external versus native accounts, and deactivation guidelines.
Atlassian Crowd provides an application security framework for web access, offering ssl-based single sign-on, centralized identity management, compliance support, a rest api, and data-center orientation with 50-user pricing.
Learn to create internal users and groups in Jira Cloud, invite via email or sync with Google, assign groups and project roles, suspend access, and manage licenses.
Learn to restore a suspended Jira Cloud user by reinitializing in the users directory, verify invited status, adjust licensing and the default role, and preserve dashboards and filters.
Atlassian access provides a one-stop, identity provider driven solution to manage and enforce security policies at scale, with role-based provisioning, MFA, API tokens, and comprehensive audits.
Explain how security policies differ for internal and external users, enforced via identity providers with MFA and password rules, and how Atlassian access ties into Jira and related products.
Learn to set access policies and manage users across Atlassian products, configure authentication policies with Atlassian access, enforce strong passwords and idle sessions, and reset or migrate directories.
Explore Confluence as a cloud project management and collaboration platform, featuring spaces, page-level permissions, templates, and integration with Jira for scalable security and agile workflows.
Explore how to configure Confluence and Jira admin settings, including site title, languages, attachments, timeouts, and remote APIs, to tailor global templates, HR and ITSM workflows.
Explore hands-on Confluence space permissions, including setting space settings, managing pages, and applying granular access controls across identity provider, Jira, and integrations such as Slack.
Learn how Jira Service Management centralizes the help desk in the cloud, with incident management via Opsgenie, customizable portals, and role-based access to enforce data protection and SLAs.
Explore configuring Jira service management by setting product and access permissions, adding service desk team members, managing customer permissions and notifications, and integrating apps like Slack for incident workflows.
Explore how Opsgenie serves as the underlying scheduling engine for Jira service management. Learn integration, alerts, and automation rules that coordinate Jira issues, on-call schedules, and team notifications with Slack.
Explore how to securely manage Jira Cloud integrations with third-party apps like Slack, Google Sheets, and Confluence by controlling permissions and costs.
Learn to connect Jira Cloud with Slack, authorize the integration, and use simple commands to create issues and sync data through encrypted, permission-driven workflows.
Manage Jira cloud policies for internal, contractor, and anonymous external customers, using default groups, permission schemas, and service desk settings to tailor access and guard against bots.
Explore the general threat surface of amazon web services, Jira, and users; apply avoidance, acceptance, and mitigation, and use CloudTrail and multi-factor authentication for auditing and risk reduction.
Explore Atlassian's bug bounty program with bugcrowd, covering Jira Cloud and Confluence and the marketplace. Learn the scope, rules, and payouts aligned to OWASP top ten.
Explore integrating the MITRE ATT&CK framework with Jira to automate security workflows, map tactics and techniques to Jira issues, and improve detection, response, and auditing using Attack Tegyra.
Perform a hands-on workflow to add Att&ck to Jira as a project by cloning the repo, configuring API token, and auto populating Jira issues from the ATT&CK framework.
Create and manage api tokens in your Atlassian account by visiting security settings, labeling tokens for AWS integration, copying the token immediately, and revoking tokens when finished.
Security schemas set permissions by roles, groups, and memberships across multiple levels to enable fine-grained access control for Jira issues, with documentation, audit logs, testing, and copy templates.
Link AWS security hub and systems manager to Jira service management with the AWS service connector and service catalog. Automate requests, limit provisioning, and monitor governance with CloudWatch.
Explore a bidirectional Jira workflow that automates tickets from AWS Security Hub findings using a Jira connector, with tag-based routing and automated closing of resolved issues.
Explore securing Jira JPQL searches via permission schemes, secure fields, and custom visibility to enforce data segregation; audit usage with the Jira audit log and apply most restrictive permissions.
Follow Atlassian best practices and map your landscape; implement least privilege, data segregation, identity provider integration, SSO, MFA, and audit service accounts for Jira cloud security.
Learn how Jira cloud data management requires you to own your data, plan backups, and manage data residency, retention, and GDPR considerations across global AWS storage locations.
Learn to generate and import Jira Cloud backups, manage overwrite risks, split data for active objects and attachments, and verify permissions by testing in an alternative org during maintenance windows.
Create and manage Jira backups using the backup manager, and import or export data from Jira Cloud, Jira Server, Trello, or CSV/JSON. Passwords aren’t imported; backups delete after 14 days.
Explore Jira cloud architecture, a cloud-native microservices design on AWS with tenant-isolated data, edge computing, and JWT-based security, enabling scalable compliance with GDPR, HIPAA, SOC 2, ISO 27001.
Explore how Jira JQL enforces data access through global, project, and issue-level permissions, filtering search results to match each user’s security schema and preventing unauthorized visibility.
Learn to query Jira issues with JQL, switch between JQL and basic views, and manage permissions, exports, and dashboards for open and closed tickets, including boss-only fields.
Practical JIRA Security is designed to provide participants with an understanding of security principles and best practices. Students learn to effectively secure JIRA, a widely-used project management, and issue-tracking platform. This course will teach students how to ensure data confidentiality, integrity, and availability within JIRA instances.
In this course, participants will gain a solid understanding of JIRA security. Our first step will be to explore the fundamentals of JIRA and the vulnerabilities that affect them. In this course, students will learn to identify potential security risks and adopt robust security measures. Protecting sensitive information, preventing unauthorized access, and maintaining industry compliance is essential.
Key topics covered in the course include authentication mechanisms, user and group management, secure project configurations, permission schemes, and audit logging. Students will learn how to implement strong user authentication methods, including single sign-on (SSO) integration with external identity providers, to enhance overall system security.
This course will teach you comprehensive strategies for managing users and groups. Participants are able to effectively control access privileges, assign appropriate permissions, and implement the least privilege. The students will explore how to create and manage permission schemes, which ensure that sensitive data and functionality are only accessible to authorized individuals.
Participants will also learn how to configure JIRA projects securely, including setting up project roles, managing workflows, and defining project-level permissions. They will understand the importance of implementing secure workflow transitions, applying appropriate validation rules, and enforcing strict permissions. This will maintain data integrity and prevent unauthorized actions.
In addition, the course covers advanced security features such as secure attachments, secure custom fields, and secure JIRA APIs. Students will learn how to secure file attachments and custom fields to prevent unauthorized access or leakage of confidential information. They will also gain insights into securing JIRA APIs and protecting against potential security vulnerabilities and attacks.
Throughout the course, practical exercises and real-world scenarios will allow participants to apply their knowledge hands-on. They can configure secure JIRA instances, create and manage user accounts, define access controls, and enforce security measures to protect data.
Upon completing the JIRA Security Fundamentals course, participants will deeply understand JIRA security principles, best practices, and techniques. Students will be equipped with the necessary skills to secure JIRA instances effectively. They will also safeguard sensitive information, mitigate potential risks, and maintain compliance within their organizations.
Join us on this comprehensive journey to master JIRA security. This will elevate your ability to safeguard critical data and ensure the integrity of your organization's project management processes.