Security and identity
The login you already use.
BlueJam connects to your identity platform with SSO and SCIM. Access is governed by role and need, data is hosted in the EU, and security and privacy documentation is available for your own assessments.

Running inside IT environments with demanding security and administration requirements


Challenges
A new platform. The same security and administration requirements.
BlueJam has to fit into your established IT environment. Sign-in, user administration, access governance and documentation therefore need to be in place from the start.
Another login
New usernames and passwords to manage.
A platform without federated sign-in means separate accounts, separate password rules and one more place to administer access. For the employee, the barrier rises. For IT, the administration grows.

Manual user administration
Access lags behind.
Without automated provisioning, accounts and roles are maintained by hand. On hire, role change or departure, access can be created too late or removed too late.

Requirements to document
The review takes longer than the rollout.
Privacy, access governance, hosting location and sub-processors have to be assessed before the platform is adopted. When the answers are not at hand, the security review stalls waiting for them.

Solution
Identity stays governed by you.
Your identity platform remains the source for users and access. BlueJam uses established standards for sign-in and provisioning, with role-based access inside the platform.

How it works
Connect. Sync. Assign.
No local installation. Sign-in, provisioning and the access model are configured for your organization.
Connect identity
Set up federated sign-in with Entra ID, Google Workspace or another supported OIDC or SAML provider.
Sync the users
SCIM 2.0 creates, updates and deactivates users from your own identity platform.
Assign the right access
Roles are tied to organizational levels and content, so every user gets the access their role requires.

Connect identity
Set up federated sign-in with Entra ID, Google Workspace or another supported OIDC or SAML provider.
Assign the right access
Roles are tied to organizational levels and content, so every user gets the access their role requires.
Sync the users
SCIM 2.0 creates, updates and deactivates users from your own identity platform.
Security and access
Secure access. Control of data and users.
BlueJam connects to your existing identity and access solutions. Security, privacy and traceability are built into the platform and can be documented in your own assessments.

Identity and sign-on
Connect BlueJam to your identity provider using OpenID Connect or SAML 2.0. Employees sign in with the account they already use.

Automatic user administration
SCIM 2.0 creates, updates and deactivates users automatically from your own identity platform.

Role-based access
Govern who can view, edit and administer by organizational level, role and content - so users get the access they need, and no more.

Restricted and external access
Restrict selected objectives and reports, and give external contributors limited access to what they contribute to.

Traceability and audit log
Changes are logged so the organization can follow activity and document who did what.

Secure architecture
Data is protected with TLS and AES-256 in a schema-isolated multi-tenant architecture, developed in line with the OWASP Top 10.

Secure operations in the EU
BlueJam runs in a European cloud region with backup, redundancy and automatic scaling.

GDPR and privacy
A data processing agreement and a current list of sub-processors provide the basis for your privacy, security and risk assessments.

Governed use of AI
AI features are optional and role-based. Customer data is not used to train the underlying models, and the output is assessed and approved by people.

Accessibility and languages
BlueJam is built on React Aria with support for WCAG 2.1 AA. The platform and the AI output support your own language.

Benefits
A lower barrier. Less administration.
A lower barrier to use
Employees sign in with the account they already use. No new passwords, and your established sign-in requirements still apply.
Less user administration
Users are created, updated and deactivated from your own identity platform. IT does not maintain a separate user directory.
Security you can document
Architecture, access governance, hosting location, the data processing agreement and sub-processors are documented for your own assessments.
Need the data connected too?
See Integrations and API

Walk through the security posture with IT.
We show sign-in, provisioning, the access model and the relevant security and privacy documentation.
Platform
Enterprise Strategy
Function-Level Strategy
Multi-Business Strategy
AI for Strategy
Integrations & API
Security & Identity
Pricing
Solutions
Strategy Development
Strategy Execution
Strategy Engagement
Strategy Insights
Results-Based Management
Strategic Risk Management
OKRs
Balanced Scorecard
Public Sector
BlueJam for the Public Sector
Public Sector Governance
Managing for Results
Strategy Execution
Risk Management & Internal Control
The world’s most fun and engaging strategy platform for all employees.
Follow us
Platform
Enterprise Strategy
Function-Level Strategy
Multi-Business Strategy
AI for Strategy
Integrations & API
Security & Identity
Pricing
Solutions
Strategy Development
Strategy Execution
Strategy Engagement
Strategy Insights
Results-Based Management
Strategic Risk Management
OKRs
Balanced Scorecard