Glossary

ACA

The federal law requiring applicable large employers to offer affordable health coverage to full-time employees and report annually on coverage offered.

HR & Compliance

Access review

A periodic audit confirming that every user retains only the access their current role requires, with documented attestations from the appropriate manager.

Compliance

AI agent

A software system that uses an LLM to execute a workflow against the customer's connected systems, reading from sources, taking actions, and writing results back through the standard authorization model.

Concepts

AI agent workforce

A coordinated set of specialized AI agents that work alongside a human team to run operational workflows across every department of a business.

Concepts

AI orchestrator

The component of an AI agent platform that coordinates the chain of actions across systems, handles error recovery, manages approval gates, and writes the audit log.

Concepts

Auto-renewal clause

A contract clause that extends the agreement automatically for successive terms unless the customer provides written cancellation notice by a specified deadline.

Procurement & Legal

COBRA

A federal law requiring employers with twenty or more employees to offer continued health coverage to terminated employees and qualifying dependents.

HR & Compliance

I-9

The US Form I-9 documents employee identity and work authorization, with Section 1 completed by the employee and Section 2 verified by the employer.

HR & Compliance

Joiner, mover, leaver (JML)

The identity lifecycle process covering account creation on hire (joiner), access changes during tenure (mover), and account revocation on exit (leaver).

IT & Identity

OIDC

An identity layer built on OAuth 2.0 that adds a standardized identity token (id_token) for authenticating users, using JSON instead of XML.

IT & Identity

Procure-to-pay (P2P)

The end-to-end workflow from a purchase need being identified through the vendor being paid, covering requisition, sourcing, approval, PO, receipt, invoice, and payment.

Finance & Procurement

Quarterly Business Review (QBR)

A scheduled review meeting between a customer success manager and the customer's executive sponsors, covering usage, outcomes, and strategic direction.

Customer Success

Request for proposal (RFP)

A formal procurement document soliciting structured bids from multiple vendors against the buyer's defined requirements and evaluation criteria.

Procurement

Role-based access control (RBAC)

An access-control model that assigns permissions to roles and users to roles, rather than assigning permissions directly to users.

IT & Identity

SaaS spend

The total annual cost of all SaaS subscriptions across an organization, including sanctioned tools, shadow tools, and underused seats paid for but not used.

Finance & Procurement

SAML

An XML-based standard for exchanging authentication assertions between an identity provider and a service provider, dominant in enterprise SSO.

IT & Identity

SCIM

An IETF standard for provisioning user records between identity providers and SaaS applications, covering create, read, update, delete operations on user and group objects.

IT & Identity

Shadow IT

Software, services, or devices used inside an organization without the IT team's knowledge or approval.

IT & Identity

SOC 2

An AICPA audit framework evaluating a service organization's controls across security, availability, processing integrity, confidentiality, and privacy.

Compliance

Three-way invoice match

An accounts payable control that reconciles three documents (the purchase order, the goods receipt, and the vendor invoice) before the invoice posts for payment.

Finance

W-4

An IRS form that determines federal income tax withholding from an employee's wages, with state-specific equivalents required in most states.

HR & Payroll