Skip to main content

Specification Document


※ Last updated: 2026-01-02

User Management Section

ItemContent
Requirement ClassificationUser Management Section
Requirement NameUnified Management of User Information
DefinitionProvide centralized management of user information distributed across multiple systems to ensure consistent user account, profile, and permission management.
Detailed informationCentralized User Information Management
• Collecting and integrating user information from various systems such as HR systems, Active Directory, and cloud services.
• Integrate and manage information such as user accounts, profiles, and permissions consistently.
• Provides duplicate account detection and management features
User Add-on Feature
• Add Single User: Register individual users on the Security365 platform
• Add Multiple Users: Bulk User Registration Using CSV File
• Directory service integration: Synchronization of user information through integration with AD, LDAP, Microsoft Entra ID, etc.
Profile Management
• Permission Change: User permission management using Role Based Access Control (RBAC) method.
• Change activation status: Control user account activation/deactivation
• Account Password Reset: User Password Reset by Administrator
Automatic synchronization
• Scheduler-based automatic synchronization support
• Provides real-time synchronization options
• Synchronization history and status monitoring

Authentication Management Section

ItemContent
Requirement ClassificationAuthentication Management Section
Requirement NameAuthentication Method Management
DefinitionSupports various authentication methods to verify user identity and enhance security.
Detailed informationSecurity365 Certification
• User authentication with Security365 ID and password
• Set and apply password policy
• Account lockout policy support
CSP (Cloud Service Provider) Certification
• Microsoft365 account authentication: Log in to the SHIELD ID service with your Microsoft account
• Google Account Authentication: Log in to the SHIELD ID service with your Google account.

Multi-Factor Authentication (MFA) section

ItemContent
Requirement ClassificationMulti-Factor Authentication (MFA) section
Requirement NameMulti-Factor Authentication
DefinitionTo address the security vulnerabilities of single-factor authentication, user identity is verified by combining two or more authentication factors.
Detailed informationEmail-based MFA
• The authentication code will be sent to the linked email upon request.
• Generate 6-digit authentication code
• Authentication timeout 5 minutes
• Perform authentication with the received authentication code
OTP-based MFA
• The authentication code is sent to the OTP authentication app of the linked device when requested.
• Generate 6-digit authentication code
• Perform authentication with the received authentication code.

Lifecycle Management Section

ItemContent
Requirement ClassificationLifecycle Management Section
Requirement NameUser Account Lifecycle Management
DefinitionAutomatically synchronize user account information between external systems and SHIELD ID, as well as between SHIELD ID and external applications, to manage the lifecycle of account creation, modification, and deletion.
Detailed informationInbound Provisioning
• Microsoft365 Synchronization: Synchronization of group and user information registered in Microsoft365
- Full group/user synchronization
- Synchronize only specified groups/users by the administrator
• SCI Server Integration: Synchronization of user/group information registered in the SCI Server
• AD/LDAP Integration: Synchronize all groups and user information registered on the AD server.
• CSV Bulk Registration: A CSV file-based batch process for efficiently managing a large number of users and groups.
• Support for real-time (manual) / periodic (automatic) synchronization

SSO section

ItemContent
Requirement ClassificationSSO section
Requirement NameSAML Federation SSO
DefinitionSingle Sign-On (SSO) integration with major SaaS applications based on the SAML 2.0 standard allows users to access multiple applications with a single login.
Detailed informationSecurity365 platform
• Providing SSO between solutions offered by Security365
SAML template provided
• Supported applications: Microsoft365, AWS, Salesforce, Box, Notion, Slack, Atlassian, GitHub, Naver Works, Zoom, Figma, Snowflake, Miro, Freshworks, Flex, Kintone, etc.(View All Items)
• Automatic access to the application with just one login through the Security365 account.

Security Policy Section

ItemContent
Requirement ClassificationSecurity Policy Section
Requirement NameConditional Policy
DefinitionA feature that enhances security by setting and monitoring differentiated access control policies based on conditions.
Detailed informationAccess Control
• Setting differentiated access policies based on conditions such as users, groups, device types, locations, and times.
• Setting and managing session expiration time

System Settings Section

ItemContent
Requirement ClassificationSystem Settings Section
Requirement NameSystem Settings
DefinitionManage the system's basic settings and branding to provide a customized environment for each organization.
Detailed informationBranding Settings
• Customize the login page logo for each company
• Branding application by organization