Skip to content
Identity and access

The directory most enterprises already answer to.

Microsoft Entra ID, formerly Azure Active Directory, is the identity provider holding people, groups, and the policies that govern how they authenticate. Our work is making it authoritative across the Atlassian estate, with group design and access reviews.

Entra ID is authoritative in a large share of organizations. Where it is, the Atlassian estate should resolve access through it rather than maintaining a second list.

What it is

Microsoft Entra ID, formerly Azure Active Directory, is the identity provider holding people, groups, and the policies that govern how they authenticate.

It is relevant to us whenever it is already the record of truth, because everything we govern downstream should derive from it rather than compete with it.

identity owner expires one owner recorded, five unaccounted L1 L2 L3 L4

What it does

One record for people and groups

Which is only an advantage if everything downstream actually derives from it.

Conditional policy

Access decisions that account for risk rather than applying one rule everywhere.

It extends to non-human identities

Through Entra Agent ID, which is what makes the lifecycle question answerable.

Where it fits

L1, identity and access. It is the bottom of the Stack in a Microsoft-centred estate. Atlassian, AWS, and every assistant connecting into the estate should resolve through it. Two directories claiming authority is the failure mode worth designing out early.

Where it earns its place

A Microsoft-centred organization adopting Atlassian

The fastest way to a defensible model is to make Atlassian obey what already exists.

An estate with two directories

Choosing which is authoritative is a decision that gets more expensive every quarter it is deferred.

An organization preparing for agents

Agent identity is already available here, which shortens the path considerably.

Proof

92%

Of security leaders say they lack full visibility into the machine identities already running in their environment.

2026 CISO AI Risk Report, 235 large-enterprise leaders.

Questions we get

Entra or Okta?
Whichever is already authoritative. Running both as sources of truth produces two lists that disagree quietly.
Does Atlassian Guard replace this?
No. Guard is how Atlassian obeys the directory. Entra is the directory.

Find out who can reach what.

Fixed scope. The assessment starts at the identity layer: human and non-human access, the accounts nobody owns, and what has to be true before an agent gets one. You get the findings, the ownership gaps, and the order to close them in.