Importing Findings Data

Ticketing Systems

The Veracode Integration for Jira enables you to automate finding imports as well as perform one-time imports and selective imports of subsets of findings.

The Veracode Integration for Jira automatically sets the Priority field of an imported finding if that field is available and has default values. The plugin sets the priority based on the severity of the finding in the Veracode scan results, using the following formula:
  • If Severity = 5, the bug priority is set to Highest
  • If Severity = 4, the bug priority is set to High
  • If Severity = 3, the bug priority is set to Medium
  • If Severity <= 2, the bug priority is set to Lowest

After importing findings, you can see them in Jira, assigned to the user.

The title and description of all imported sandbox findings are prefixed by the word Sandbox to differentiate them from regular policy scan findings.



When the plugin creates a Jira issue for each finding, it also adds a comment to the finding in the Veracode Platform.