How to Set Up Identity Governance, Auditing & Access Control via JSM with GitHub

This guide explains how to configure GitHub integration inside the Identity Governance, Auditing & Access Control via JSM so that users are automatically invited to your GitHub organization when an access request is approved.

App Overview

The Identity Governance, Auditing & Access Control via JSM is an advanced solution built on Jira Service Management (JSM) to simplify and automate access request workflows across your organization.

Instead of relying on manual request and approval steps, the app enables:

  • End users to submit access requests through the JSM portal.
  • Automated routing of approval workflows based on predefined rules.
  • Instant provisioning actions once approvals are complete.

By automating these processes, the Identity Governance, Auditing & Access Control via JSM ensures secure, policy-driven, and audit-ready access management across your tech ecosystem.

Pre-requisites

Before you begin, make sure you have the following:

  • You are a GitHub organization owner, or have sufficient permissions to manage organization invitations.
  • You are able to create a GitHub Personal Access Token (PAT) with the required organization-level permissions.

1: Retrieve GitHub Credentials

A. Create a GitHub Personal Access Token

The app uses a Fine-grained Personal Access Token to authenticate with GitHub securely for organization invitation actions. This token grants the app the minimum permissions it needs to invite users to your organization.

Follow these steps to generate the token:

  • Go to GitHubSettingsDeveloper settingsPersonal access tokens.
  • Navigate to Developer settings → Personal access tokens in GitHub
  • Click Generate new token under Fine-grained tokens.
  • Set a Resource owner to your organization.
  • Click Generate new token under Fine-grained tokens in GitHub
  • Under Organization permissions, set Members to Read and write. This permission allows the app to send and manage organization invitations.
  • Set an appropriate expiration date based on your organisation's security policy and generate the token.
  • Navigate to Developer settings → Personal access tokens in GitHub
  • Click on Generate Token. Copy the token immediately and store it securely. The token is shown only once and cannot be retrieved after you leave this page.
  • Copy the token immediately and store it securely

B. Find Your Organization Slug

The organization slug is the unique identifier for your GitHub organization and is used by the app to direct invitations to the correct organization.

  • Open your GitHub organization page in a browser.
  • Find the URL and copy the organization name that appears after github.com.

For example, if your organization URL is https://github.com/my-org, then your organization slug is my-org. This is the value you will enter in Step 2. 

2: Connect GitHub to the Identity Governance, Auditing & Access Control via JSM

Navigate to App Connections from the sidebar

With the token and organization slug ready, open the Identity Governance, Auditing & Access Control via JSM app and navigate to App Connections from the sidebar. Click + Add Integration and select GitHub from the list. Enter the following details in the Connect GitHub panel:

Enter the connection details for GitHub
  • Connection Name: A friendly name to identify this GitHub connection for other admins (e.g., "My GitHub").
  • API Token: Create a token in GitHub → Settings → Developer settings → Personal access tokens, and ensure it has permission to invite members to your organization.
  • Organization Slug: Enter your GitHub organization name/slug (e.g., "acme"). You can find it in your org URL: https://github.com/acme.
  • Application Admin: Select a licensed Atlassian user who will manage this connection.
Note: The personal access token requires admin:org and repo scopes for full functionality. Credentials are encrypted in transit and at rest, and are only used for sync and governance operations.

Once all fields are filled in, click Connect GitHub to save the integration.

Configure Automation Rules for GitHub

Now that GitHub is connected, configure automation rules to define how access requests are routed, approved, and provisioned in GitHub. Follow the guides below to set up each rule type:

Did this page help you?

miniOrange Atlassian Contact Us

Book a Free Consultation with
Our Experts Today!

Schedule a call now!


Contact Us