Skip to content
prod e051e98
Browse

Enterprise readiness

Objective — Sell to teams that require SSO, audit logs, and a compliance story — without breaking vendor update safety.

  • Document gaps vs typical enterprise RFP (SSO, RBAC, data residency, SLA, DPA).
  • Prioritize blockers vs nice-to-have; estimate eng weeks honestly.
  • Prefer SAML/OIDC via Laravel Socialite or dedicated package in ZajModule — not vendor auth controllers.
  • IdP metadata configured per environment
  • JIT provisioning or SCIM documented
  • Fallback local admin break-glass account
  • SOC2: map controls to what you already have (backups, access logs, change management via Git).
  • Admin RBAC: separate SuperAdmin, tenant admin, support — align with three-tier admin.
  • Security questionnaire template + standard DPA.
  • Pilot → paid annual with success criteria in writing.