Skip to content

SSO and provisioning

Single sign-on

SSO is supported and can be configured through your identity provider — Azure AD, Okta, and others.

Once SSO is enabled, users authenticate through your existing identity infrastructure. No separate Base Operations credentials are required.

Multi-factor authentication

MFA is supported. It can be enforced at the platform level, or managed through your SSO provider if you would rather keep enforcement centralized.

What Base Operations needs to provision users

Name and email. That is the whole list.

Standard platform access does not require confidential client data, internal incident records, or sensitive business information. If your organization opts into BaseFusion, that involves a separate data-sharing agreement specific to internal incident feeds.

Security and compliance

Base Operations is SOC 2 compliant and hosted on AWS.

The Trust Center is publicly available for review at app.drata.com/trust.

Getting set up

SSO configuration is handled by your account team. Contact your Customer Success Manager to start, and they will coordinate with the technical team on your identity provider's requirements.