Product Introduction
What is the Security365 Management Center?
The Security365 Management Center isZero Trust-Based Integrated Security Management PlatformIt is possible to centrally manage users, groups, licenses, and access policies for all security services within the organization.
Core Concepts
Integrated Management Platform
- User and group management, license assignment, and security policy settings performed from a single console
- Integrated management of all Security365 services such as SHIELDrive, SHIELD Gate, Document Security, etc.
- Maximizing management efficiency with a consistent policy system
Zero Trust Architecture
- "Never trust blindly, always verify."
- Perform conditional validation for all access attempts
- Dynamic Access Control Based on IP, Time, Country, and Device Conditions
Flexible Account Linking
- Automatic synchronization of Microsoft 365, Google Workspace, and SCI Server accounts
- Elimination of duplicate management through the use of the existing personnel system
- Manual registration and automatic synchronization can be performed concurrently.
Why is the Security365 Management Center necessary?
Changing Security Environment
Introduction of Various SaaS Services
- Simultaneous use of various security solutions such as document security, web isolation, and cloud storage.
- Separate management console for each service → Increased management complexity
- Difficulty in Maintaining Policy Consistency
Distributed Workforce Management
- Diversification of Access Environments Due to Expansion of Remote Work and Telecommuting
- Increase in external personnel such as partners and vendors
- Increased frequency of account creation, modification, and deletion
Strengthened Compliance
- Compliance with the Personal Information Protection Act and Information Security Regulations is necessary.
- Obligation to Submit Access History Tracking and Audit Materials
- Requirement for Applying the Principle of Least Privilege
Limitations of Existing Management Methods
Issues with Individual Service Management
1. Distributed Management
서비스 A 관리 콘솔 → 사용자 100명 등록
서비스 B 관리 콘솔 → 동일 사용자 100명 재등록
서비스 C 관리 콘솔 → 또다시 100명 등록
└─ 문제: 동일 작업 반복, 정보 불일치 위험
- Managing User Information Duplication by Service
- Risk of Missing Deletion of Resigned Employee Accounts
- Individual modifications are required in all services when policy changes occur.
2. Lack of Policy Consistency
- Applying Different Authentication Policies for Each Service
- Different Criteria for Setting Access Conditions
- Security Level Variation Occurs
3. Difficulties in Responding to Audits
- Different log formats by service
- Unable to view integrated history
- Takes a lot of time to gather audit materials
Limitations of Manual Account Management
1. Delay in Synchronization of Personnel Information
인사팀: 신규 입사자 등록 완료
IT팀: 계정 생성 요청 접수 대기
└─ 문제: 입사 후 며칠간 시스템 접근 불가
2. Human Error
- Typos and omissions occur during manual input.
- Authorization Mistakes
- Delay in Deactivating Resigned Employee Accounts
3. Scalability Constraints
- Delay in processing during large personnel changes
- Massive modification work required during organizational restructuring
Differentiators of the Security365 Management Center
1. Unified Management Console
Security365 Management Center: Single Console
모든 서비스의 사용자·정책·라이선스
↓
Security365 관리센터
↓
한 번의 설정으로 전체 서비스 적용
Scope of Management
| Management Target | Function |
|---|---|
| User | Registration, Modification, Deletion, Activation/Deactivation |
| group | Basic Group, Policy Group, Condition-Based Group |
| Administrator | Role-based access control, access policy configuration |
| License | Allocation, Deallocation, Automatic Allocation by Service |
| Policy | Conditional Access Policies, Authentication Policies |
2. Automatic Account Synchronization
Security365 Management Center: Integration with HR System
Microsoft 365 / SCI Server 인사 정보
↓
자동 동기화 (수동/예약)
↓
사용자·그룹 자동 생성·업데이트
└─ 효과: 인사 정보 실시간 반영, 관리 부담 최소화
Synchronization Options
| Options | Description |
|---|---|
| Full Synchronization | Synchronization of all AD groups and user information |
| Designated Group Synchronization | Sync only the selected group and members |
| Automatic Synchronization | Automatic execution according to the set period |
| Manual Synchronization | Execute immediately if the administrator is needed |
3. Conditional Access Control
Security365 Management Center: Multi-Condition Validation
사용자 접근 요청
↓
조건 검증: IP + 시간 + 국가 + 디바이스
↓
조건 충족 → 접근 허용 (추가 인증 선택 가능)
조건 미충족 → 접근 차단
Example of Condition Combinations
| scenario | condition | result |
|---|---|---|
| In-house work | Company IP + Weekday Working Hours | Access Permission |
| Remote Work | Registered Home IP + Weekdays | Access Allowance + OTP Authentication |
| Overseas Business Trip | Overseas IP | Access Denied or Administrator Approval |
| Night Access | Nighttime Time Zone | Access Denied |
4. Granular Permission Management
Security365 Management Center: Role-Based Permissions
최고 관리자: 모든 기능 접근 + 관리자 권한 부여
편집 관리자: 메뉴 조회·편집 (관리자 메뉴 제외)
조회 관리자: 메뉴 조회만 가능
로그 조회 관리자: 로그 메뉴만 조회 가능
Permission Matrix
| role | User/Group | Policy Settings | Admin Management | Log Inquiry |
|---|---|---|---|---|
| Super Administrator | ✅ Edit | ✅ Edit | ✅ Edit | ✅ Inquiry |
| Editor Manager | ✅ Edit | ✅ Edit | ❌ | ✅ Query |
| Query Manager | 👁 View | 👁 View | ❌ | ✅ Inquiry |
| Log Viewer Administrator | ❌ | ❌ | ❌ | ✅ Inquiry |