Skip to main content

Specification Document


※ Last updated: 2026-01-02

User Management Section

itemContent
Requirement ClassificationUser Management Section
Requirement NameUnified Management of User Information
DefinitionCentralized management of user information distributed across multiple systems to provide consistent user account, profile, and permission management.
Detailed InformationCentralized User Information Management
• Collecting and integrating user information from various systems such as HR systems, Active Directory, and cloud services.
• Integrate and manage information such as user accounts, profiles, and permissions consistently.
• Duplicate account detection and management feature provided
User Add-on Features
• Add Single User: Register individual users on the Security365 platform
• Add Multiple Users: Bulk User Registration Using CSV File
• Directory service integration: User information synchronization through integration with AD, LDAP, Microsoft Entra ID, etc.
Profile Management
• Permission Change: User permission management using Role Based Access Control (RBAC) method
• Change activation status: Control user account activation/deactivation
• Account Password Reset: User Password Reset by Administrator
Automatic Synchronization
• Scheduler-based automatic synchronization support
• Real-time synchronization options available
• Synchronization history and status monitoring

Authentication Management Section

itemContent
Requirement ClassificationAuthentication Management Section
Requirement NameAuthentication Method Management
DefinitionSupports various authentication methods to verify user identity and enhance security.
Detailed InformationSecurity365 Certification
• User authentication with Security365 ID and password
• Password policy configuration and application
• Account Lockout Policy Support
CSP (Cloud Service Provider) Certification
• Microsoft365 Account Authentication: Log in to SHIELD ID service with Microsoft account
• Google Account Authentication: Log in to the SHIELD ID service with your Google account

Multi-Factor Authentication (MFA) Section

itemContent
Requirement ClassificationMulti-Factor Authentication (MFA) Section
Requirement NameMulti-Factor Authentication
DefinitionTo address the security vulnerabilities of single authentication methods, user identity is verified by combining two or more authentication factors.
Detailed InformationEmail-based MFA
• Send from the linked email when requesting an authentication code
• Generate 6-digit authentication code
• Authentication timeout 5 minutes
• Perform authentication with the received authentication code
OTP-based MFA
• Request for authentication code is sent to the OTP authentication app of the linked device.
• Generate 6-digit authentication code
• Perform authentication with the received authentication code

Lifecycle Management Section

itemContent
Requirement ClassificationLifecycle Management Section
Requirement NameUser Account Lifecycle Management
DefinitionAutomatically synchronize user account information between external systems and SHIELD ID, and between SHIELD ID and external applications to manage the lifecycle of account creation, modification, and deletion.
Detailed InformationInbound Provisioning
• Microsoft365 Synchronization: Synchronization of group and user information registered in Microsoft365
- Full Group/User Synchronization
- Only synchronize designated groups/users by the administrator
• SCI Server Integration: Synchronization of user/group information registered in the SCI Server
• AD/LDAP Integration: Synchronization of all groups and user information registered in the AD server
• CSV Bulk Registration: CSV file-based batch processing for efficient management of large numbers of users and groups
• Real-time (manual) / periodic (automatic) synchronization support

SSO Section

itemContent
Requirement ClassificationSSO Section
Requirement NameSAML Federation SSO
DefinitionBased on the SAML 2.0 standard, users can access multiple applications with a single sign-on (SSO) integration with major SaaS applications through one login.
Detailed InformationSecurity365 Platform
• Providing SSO between solutions offered by Security365
Providing SAML Template
• Supported Applications: Microsoft365, AWS, Salesforce, Box, Notion, Slack, Atlassian, GitHub, Naver Works, Zoom, Figma, Snowflake, Miro, Freshworks, Flex, Kintone, etc.(View All Items)
• Automatic access to the application with just one login through the Security365 account.

Security Policy Section

itemContent
Requirement ClassificationSecurity Policy Section
Requirement NameConditional Policy
DefinitionA feature that enhances security by setting and monitoring differentiated access control policies based on conditions.
Detailed InformationAccess Control
• Setting differentiated access policies based on conditions such as users, groups, device types, locations, and times
• Session expiration period setting and management

System Settings Section

itemContent
Requirement ClassificationSystem Settings Section
Requirement NameSystem Settings
DefinitionManage the basic settings and branding of the system to provide a customized environment for each organization.
Detailed InformationBranding Settings
• Customize the login page logo for each company
• Branding application by organization