Skip to main content

Functional Specification Document

Last updated: 2026.04.02


RFP Notation Standards

NotationMeaningDescription
RequiredCommon Evaluation CriteriaCommonly Required Features in Account Management System (IAM) RFP
specializationDifferentiation ItemsUnique features of Security365 that give it an advantage over competitors —Recommendation to Add Evaluation Criteria to the RFP
SelectionAdditional ItemsFeatures proposed optionally based on customer requirements

Major CategorySubcategorySubcategoryDetailed DescriptionRFP notationspecifications
Home ScreenStatus DashboardSecurity365 StatusYou can check the total number of users, administrators, groups, and condition items at a glance.Requiredlink
Subscription Service StatusYou can check the service name you are subscribed to, license type, subscription status, and expiration date.Selectionlink
Current Status of Actual UsersYou can check the actual user trends by product in a chart.Selectionlink
Account Synchronization StatusYou can check the synchronization method, frequency, status, and the last synchronization date and time of Microsoft365/SCI Server.Selectionlink
Service MigrationMove to Management CenterYou can directly access the admin page of the linked services from the left menu.Selectionlink
User ManagementUser Registration and IntegrationManual Registration and CSV UploadIndividual user registration or bulk registration is possible, CSV template provided.Requiredlink
CSV Bulk Registration Processing OptionsIt is possible to choose to deactivate or retain existing users not in the CSV during bulk registration — supports downloading the processing result CSV (including CREATED/UPDATED/UNCHANGED status values).specializationlink
Account SynchronizationAutomatic user registration possible with Microsoft 365 and SCI Server integrationRequiredlink
User Activation ManagementUser Activation/Deactivation ControlControl the user's service access availability in an active stateRequiredlink
Automatic Logging of Deactivation ReasonsAutomatically record the reason for account deactivation (automatic deactivation, CSV synchronization, manual deactivation by administrator) and display it on the detail screen — automatically reset when activated.specializationlink
User QueryDisplay Last Access InformationDisplay Last Access Column in User List (Relative Time Format, Sortable) — Exact Access Date and Time Available on Mouse OverRequiredlink
Disconnected Period FilterFiltering long-term inactive users for 7·30·60·90 days or more or direct input — Include the last access column in the downloaded file when filters are applied.specializationlink
Management HistoryBatch Registration Task History InquiryFunction to query the executor, status, and processing result statistics of user bulk registration tasks and download the original file.specializationlink
Password Reset SupportSend Email LinkSend password reset link to user email (valid for 10 minutes)Requiredlink
Issuance of Temporary PasswordThe administrator generates a temporary password and delivers it to the user.Requiredlink
DownloadDownload User ListYou can download all or selected user information as a CSV file.Requiredlink
List SettingsSetting Items to Display in the ListCustomizable settings for table column visibility and orderSelectionlink
Backup and RestoreManual Backup CreationManually backing up user and group data to a specific point in timespecializationlink
Data Restoration (Rollback)Restore Data to Selected Backup Point — Provides Preview of Changes Before Restoration, Automatically Backs Up Current State Right Before Restorationspecializationlink
Admin ManagementSetting Up Administrator RolesAdministrator Permission ClassificationYou can granularly control feature access permissions with the Admin role for View/Edit/Log View.Requiredlink
Admin Notification SettingsReal-time email notifications can be sent upon login/logout of the log query manager.Selectionlink
Administrator Access PolicyAdministrator Access Policy SettingsAccess to the administrator's service (admin page) can be restricted based on conditions such as IP and time.Requiredlink
Additional Authentication SettingsAdditional OTP or email authentication may be required for administrator access.Requiredlink
Group ManagementBasic GroupManual Registration and CSV UploadIndividual group registration or bulk registration is possible, CSV template provided.Requiredlink
CSV Bulk Registration Processing OptionsIt is possible to choose to delete existing groups that are not in the CSV (only empty groups) or to keep them during bulk registration.specializationlink
Account SynchronizationAutomatic group registration through Microsoft365 and SCI Server integrationRequiredlink
Policy GroupManual RegistrationIndividual group registration is possible, and users can be added as members of the group.Requiredlink
Condition-Based Group SettingsIt is possible to create policy groups from users filtered through conditional search, with automatic updates during synchronization.specializationlink
Management HistoryBatch Registration Task History InquiryFunction to query the executor, status, and processing result statistics of group bulk registration tasks and download the original file.specializationlink
DownloadDownload Group ListYou can download the information of the entire group or selected groups as a CSV file.Requiredlink
License ManagementStatus MonitoringCheck License StatusYou can check the status of the subscribed plan, total number of licenses, allocation/remaining status.Requiredlink
License AssignmentManual Allocation/DeallocationUsers can search to assign or revoke licenses individually or in bulk.Requiredlink
Automatic Assignment SettingsAutomatic license assignment upon user activation, automatic release upon deactivation/deletion.specializationlink
Conditional Policy ManagementService Access PolicyBasic Authentication PolicyService-specific user/group access allow or block settingsRequiredlink
Conditional Access PolicyAccess Control Settings Based on IP, Time, Country, and Device ConditionsRequiredlink
Additional Authentication SettingsAdditional OTP or email verification may be required upon access approval.Requiredlink
Condition Item ManagementRegister Condition ItemsLocation (IP) ConditionSingle IP, IP range, IP range conditions can be registered.Requiredlink
Country ConditionsRegistration of access conditions based on country code is possible.Selectionlink
Time ConditionsStart/End time, day-based access condition registration availableRequiredlink
Security Classification Label ManagementGrade ManagementCreating/Modifying/Deleting GradesCreation and color setting of security level grades such as confidential/sensitive/public, etc.Selectionlink
Label ManagementCreate/Modify/Delete LabelCreate and classify labels as sub-items of the grade (e.g., personnel information, external sharing, etc.)Selectionlink
Unrated ManagementWhen a grade is deleted, the lower label moves to 'Grade Undetermined' and can be reassigned.Selectionlink
Log ManagementLog Integration QueryUser Log InquiryViewable user activity logs for all servicesRequiredlink
Admin Log InquiryViewable admin activity logs for all servicesRequiredlink
Filter SearchFiltering logs by period, user, department, and service is possible.Requiredlink
Security and Authentication SettingsAccount Security SettingsSetting Account Deactivation PeriodAutomatic Deactivation of User Accounts After a Period of InactivityRequiredlink
Unused Account Automatic Deactivation PolicyAutomatically deactivate user accounts that have not logged in for more than the set period (default 90 days) daily via a scheduler — Excluding admin accounts, automatic recording of deactivation reasons.specializationlink
Password Rule SettingsMinimum password length, character combinations, and required characters can be set.Requiredlink
Setting Password Change FrequencyPassword change mandatory cycle and extension count/period settings availableRequiredlink
Password Reuse RestrictionsSetting to prohibit the reuse of the last N passwordsRequiredlink
Automatic Logout SettingsAutomatic logout setting available after a certain period of inactivityRequiredlink
Automatic Logout for Duplicate LoginsAutomatic termination of existing sessions when a new connection occurs from a different IP with the same account — Selectable services for applicationspecializationlink
Recent Access InformationSetting to display the last login date and time and IP addressRequiredlink
Account Authentication Policy SettingsAccount temporary lock settings upon exceeding the number of authentication failures (5/10/15 times, 5/10/30/60 minutes)Requiredlink
Setting User Initial PasswordSetting Initial Password Rules for Manual Registration UsersRequiredlink
Inbound ProvisioningMicrosoft 365 SynchronizationYou can choose between full synchronization or specified AD group synchronization.Requiredlink
SCI Server SynchronizationSCI server integration settings and domain conversion settings availableSelectionlink
Automatic Synchronization Cycle SettingAutomatic synchronization at the set time every dayRequiredlink
Manual SynchronizationProvide immediate synchronization execution buttonRequiredlink
Setting Path Display Reference GroupSetting the Base Group for Displaying User Affiliation Group Path in LogsSelectionlink
User Authentication Method ManagementSecurity365 CertificationSecurity365 Custom ID/Password AuthenticationRequiredlink
CSP Certification (Microsoft)Support for Microsoft 365 account integration loginRequiredlink
CSP Certification (Google)Support for Google Account Integration LoginSelectionlink
SSO Authentication (SAML)Support for SSO authentication based on SAML IdP integrationRequiredlink
Log SettingsLog Backup SettingsBackup Cycle SettingsYou can set the log backup frequency on a daily/monthly/yearly basis.Requiredlink
Log Collection Period SettingsConfiguration of log collection period that can be included in the archive fileRequiredlink
Archive File ManagementSetting the maximum number of archive files to save, with automatic deletion of older files when exceededRequiredlink
External Log TransmissionExternal Transmission of Backup LogsAutomatic transfer of log backup files to an external server using SSH/SFTPSelectionlink
Connection TestProvides external server connection test functionalitySelectionlink
Delete LogAutomatic Deletion of Log FilesAutomatic deletion of original logs after backup completion is possible.Selectionlink
Logo SettingsLogin Page SettingsLogo ChangeUpload and change the logo image on the login page (PNG/SVG/JPG)Selectionlink
Change FaviconUpload and change browser tab favicon image (ICO/PNG)Selectionlink
Change Tab NameChanging the browser tab title text is possibleSelectionlink
Button Hide SettingsPassword reset and sign-up button can be hidden.Selectionlink
Service-specific logo settingsChange GNB LogoIt is possible to change the logo in the top header of each service console.Selectionlink
Favicon/Tab Name by ServiceIndividual settings for favicon and browser tab name by service are available.Selectionlink
SettingsMenu Display ManagementDisplay Settings for the Selection MenuHome Menu · Security Category Label Menu · Optionally set the display of the Conditional Policy Menu to simplify the management screen.Selectionlink
Approval Service SettingsWhether to use the approval serviceActivation/Deactivation Settings for the Approval Process of Integrated ServicesSelectionlink
System MonitoringSystem MonitoringViewing Resource Usage by NodeReal-time monitoring of CPU, memory, disk, and network usageSelectionlink
Service AccessUser Page Access ManagementProviding a user-specific pageSupport for users to navigate to the user page of the subscribed service after logging in.Selectionlink