1 Introduction

Oracle Retail Brand Compliance Management Cloud Service is an application designed to meet all aspects of sourcing, developing, and protecting retailer brands. The application provides solutions for product development, compliance, quality, and traceability. It is designed specifically for retail, food service, and manufacturing businesses to develop and protect their brands, manage their suppliers, and ensure full end-to-end product lifecycle management.

Oracle Retail Brand Compliance Management Cloud Service is composed of the following modules:

  • Library enables the issue, receipt, and acceptance of policies, guidelines, and key working documents.

  • Product supports the development of products and production specifications.

  • Process supports the development of process briefs, plans, and workflow management.

  • Supplier enables the identification, selection, and approval of suppliers.

  • Reports is a reporting tool for reporting across the system, using standard templates and custom reports.

This document is divided into six main sections:

  • Responsibilities - discusses the shared responsibility model of security.

  • Oracle Retail SaaS Security - outlines the policies and procedures Oracle Retail uses to meet its security responsibilities.

  • Brand Compliance Architecture - details the architecture of the Brand Compliance Cloud Service, particularly as it relates to security.

  • Brand Compliance Authentication and Authorization - describes how Brand Compliance Cloud Service performs authentication and authorization.

  • Brand Compliance Permissions - describes the Brand Compliance Cloud Service role-based security model of roles, authority profiles and permissions.

  • Frequently Asked Questions - a number of specific questions related to security that are frequently asked by prospects, customers, and implementers.

The goals of this document are to:

  • Explain the security responsibilities of Oracle and the retailer/portal owner in the SaaS model.

  • Educate retailers/portal owners about Oracle's cloud security policies and controls.

  • Describe Brand Compliance Cloud Services:

    • general architecture, particularly as it relates to security

    • security features

  • Define additional steps customer IT staff must perform to communicate securely with Brand Compliance Cloud Service.

  • Guide customer administrators in the actions they need to perform to:

    • create application users

    • assign roles to application users

  • Provide answers to frequently asked questions about Brand Compliance Cloud Service security.