Specification Document
※ Last updated: 2026-01-02
User Management Section
| item | Content |
|---|---|
| Requirement Classification | User Management Section |
| Requirement Name | Unified Management of User Information |
| Definition | Centralized management of user information distributed across multiple systems to provide consistent user account, profile, and permission management. |
| Detailed Information | Centralized User Information Management • Collecting and integrating user information from various systems such as HR systems, Active Directory, and cloud services. • Integrate and manage information such as user accounts, profiles, and permissions consistently. • Duplicate account detection and management feature provided User Add-on Features • Add Single User: Register individual users on the Security365 platform • Add Multiple Users: Bulk User Registration Using CSV File • Directory service integration: User information synchronization through integration with AD, LDAP, Microsoft Entra ID, etc. Profile Management • Permission Change: User permission management using Role Based Access Control (RBAC) method • Change activation status: Control user account activation/deactivation • Account Password Reset: User Password Reset by Administrator Automatic Synchronization • Scheduler-based automatic synchronization support • Real-time synchronization options available • Synchronization history and status monitoring |
Authentication Management Section
| item | Content |
|---|---|
| Requirement Classification | Authentication Management Section |
| Requirement Name | Authentication Method Management |
| Definition | Supports various authentication methods to verify user identity and enhance security. |
| Detailed Information | Security365 Certification • User authentication with Security365 ID and password • Password policy configuration and application • Account Lockout Policy Support CSP (Cloud Service Provider) Certification • Microsoft365 Account Authentication: Log in to SHIELD ID service with Microsoft account • Google Account Authentication: Log in to the SHIELD ID service with your Google account |
Multi-Factor Authentication (MFA) Section
| item | Content |
|---|---|
| Requirement Classification | Multi-Factor Authentication (MFA) Section |
| Requirement Name | Multi-Factor Authentication |
| Definition | To address the security vulnerabilities of single authentication methods, user identity is verified by combining two or more authentication factors. |
| Detailed Information | Email-based MFA • Send from the linked email when requesting an authentication code • Generate 6-digit authentication code • Authentication timeout 5 minutes • Perform authentication with the received authentication code OTP-based MFA • Request for authentication code is sent to the OTP authentication app of the linked device. • Generate 6-digit authentication code • Perform authentication with the received authentication code |
Lifecycle Management Section
| item | Content |
|---|---|
| Requirement Classification | Lifecycle Management Section |
| Requirement Name | User Account Lifecycle Management |
| Definition | Automatically synchronize user account information between external systems and SHIELD ID, and between SHIELD ID and external applications to manage the lifecycle of account creation, modification, and deletion. |
| Detailed Information | Inbound Provisioning • Microsoft365 Synchronization: Synchronization of group and user information registered in Microsoft365 - Full Group/User Synchronization - Only synchronize designated groups/users by the administrator • SCI Server Integration: Synchronization of user/group information registered in the SCI Server • AD/LDAP Integration: Synchronization of all groups and user information registered in the AD server • CSV Bulk Registration: CSV file-based batch processing for efficient management of large numbers of users and groups • Real-time (manual) / periodic (automatic) synchronization support |
SSO Section
| item | Content |
|---|---|
| Requirement Classification | SSO Section |
| Requirement Name | SAML Federation SSO |
| Definition | Based on the SAML 2.0 standard, users can access multiple applications with a single sign-on (SSO) integration with major SaaS applications through one login. |
| Detailed Information | Security365 Platform • Providing SSO between solutions offered by Security365 Providing SAML Template • Supported Applications: Microsoft365, AWS, Salesforce, Box, Notion, Slack, Atlassian, GitHub, Naver Works, Zoom, Figma, Snowflake, Miro, Freshworks, Flex, Kintone, etc.(View All Items) • Automatic access to the application with just one login through the Security365 account. |
Security Policy Section
| item | Content |
|---|---|
| Requirement Classification | Security Policy Section |
| Requirement Name | Conditional Policy |
| Definition | A feature that enhances security by setting and monitoring differentiated access control policies based on conditions. |
| Detailed Information | Access Control • Setting differentiated access policies based on conditions such as users, groups, device types, locations, and times • Session expiration period setting and management |
System Settings Section
| item | Content |
|---|---|
| Requirement Classification | System Settings Section |
| Requirement Name | System Settings |
| Definition | Manage the basic settings and branding of the system to provide a customized environment for each organization. |
| Detailed Information | Branding Settings • Customize the login page logo for each company • Branding application by organization |