The directory most enterprises already answer to.
Microsoft Entra ID, formerly Azure Active Directory, is the identity provider holding people, groups, and the policies that govern how they authenticate. Our work is making it authoritative across the Atlassian estate, with group design and access reviews.
Entra ID is authoritative in a large share of organizations. Where it is, the Atlassian estate should resolve access through it rather than maintaining a second list.
What it is
Microsoft Entra ID, formerly Azure Active Directory, is the identity provider holding people, groups, and the policies that govern how they authenticate.
It is relevant to us whenever it is already the record of truth, because everything we govern downstream should derive from it rather than compete with it.
What it does
One record for people and groups
Which is only an advantage if everything downstream actually derives from it.
Conditional policy
Access decisions that account for risk rather than applying one rule everywhere.
It extends to non-human identities
Through Entra Agent ID, which is what makes the lifecycle question answerable.
Where it fits
L1, identity and access. It is the bottom of the Stack in a Microsoft-centred estate. Atlassian, AWS, and every assistant connecting into the estate should resolve through it. Two directories claiming authority is the failure mode worth designing out early.
What we do with it
Making it authoritative downstream
Atlassian Guard and the wider estate provisioning from Entra rather than from a parallel list.
Group and attribute design
Which attributes drive access, which is what makes provisioning automatic rather than requested.
Access reviews across both estates
One cycle covering the directory and the platforms that derive from it.
Where it earns its place
A Microsoft-centred organization adopting Atlassian
The fastest way to a defensible model is to make Atlassian obey what already exists.
An estate with two directories
Choosing which is authoritative is a decision that gets more expensive every quarter it is deferred.
An organization preparing for agents
Agent identity is already available here, which shortens the path considerably.
Proof
Of security leaders say they lack full visibility into the machine identities already running in their environment.
2026 CISO AI Risk Report, 235 large-enterprise leaders.