SSO, SCIM, residency, per-tenant keys, audit streaming, support, and the contract your security team needs before rollout.
SSO groups
18
Audit rows
8.4k
Keys
3
SLA
99.99
Policy controls
SAML SSO
Okta group-mapped
SCIM
JIT provisioning on
Residency
EU Frankfurt
KMS
customer-managed
Audit stream
group.mapped
Legal reviewers → room:read
kms.rotated
EU tenant key v4 promoted
scim.synced
18 users updated from Okta
audit.exported
Datadog stream acknowledged
Enterprise controls
Featured capabilityOkta, Azure AD, Google, JumpCloud, OneLogin. Group-mapped roles via SCIM. Just-in-time provisioning.
SAML SSO & SCIM
Granular access controls
Per-tenant key isolation
Per-link, per-room, per-recipient gates - expiry, view caps, IP and country allow-lists, watermarks, instant revoke.
Customer-managed KMS keys on AWS or GCP. Hold your own keys, revoke on demand.
Stream every action - admin or user - to your SIEM. Splunk, Datadog, Elastic, all supported.
A real human on Slack Connect. 24×7 on-call for Sev-1, with response SLAs in your contract.
99.99% uptime guarantee, with credit math written into your MSA. Audited monthly.
Multi-tenant SaaS
From $50k / yr
Same hosted Dataroom, with enterprise SSO, audit log streaming, and per-tenant key isolation.
Single-tenant cloud
From $150k / yr
Dedicated AWS or GCP account, single-tenant database, customer-managed KMS, isolated networking.
Self-hosted (VPC)
By quote
Run Dataroom inside your own VPC on Kubernetes. Air-gapped option for the most locked-down environments.
We answer custom security questionnaires under NDA. Security overview, subprocessor list, and data-processing terms shared via the trust portal.
Custom MSA, DPA, and the SLA your team wants.