Before You Begin
Ensure you have:
Admin access to your DSALTA account
Your organization's basic information is ready
A list of team members to invite
Access credentials for key integrations (Google Workspace, AWS, etc.)
Step 1: Complete Your Organization Profile (5 minutes)
Start by configuring your organization's basic information. Navigate to Settings and complete your organization profile with:
Company name and description
Primary industry and business model
Company size and location
Primary contact information
This information helps DSALTA tailor framework recommendations and provide relevant guidance throughout your compliance journey.
Step 2: Select Your Compliance Framework(s) (5 minutes)
Navigate to Compliance > Frameworks to view available compliance frameworks. DSALTA recommends frameworks based on your organization's profile, but you can activate any framework relevant to your business.
Popular starting frameworks include:
SOC 2: For SaaS companies and service providers
ISO 27001: For organizations seeking international recognition
GDPR: For companies handling EU resident data
HIPAA: For healthcare-related organizations
Click Explore on your chosen framework to review requirements, then click Activate to add it to your compliance program. You can activate multiple frameworks—DSALTA intelligently maps overlapping controls to minimize duplicate work.
Step 3: Review the Onboarding Roadmap (3 minutes)
Once you've activated a framework, access your personalized Onboarding Roadmap from the dashboard. This roadmap provides a structured path through four key phases:
Onboarding: Initial setup and configuration
Policies & People: Document creation and team assignment
Automated Tests & Risks: Integration setup and monitoring
Trust & Audit Readiness: External-facing preparation
The roadmap shows estimated completion times for each task and tracks your overall progress. Use this as your guide for the coming weeks.
Step 4: Invite Your Team Members (5 minutes)
Compliance is a team effort. Navigate to Personnel > People to invite team members who will own different aspects of your compliance program.
Key roles to assign:
Compliance Lead: Oversees the entire program
Security Owner: Manages technical controls and security tools
Policy Owner: Maintains policies and documentation
Legal/Privacy: Handles data protection and privacy requirements
Click Invite your team and send invitations with appropriate role assignments. Team members will receive an email to join and can be assigned specific controls and policies.
Step 5: Connect Your Identity Provider (7 minutes)
Your first integration should be your Identity Provider (IdP), either Google Workspace or Microsoft 365. This integration is foundational because it:
Automatically syncs your user directory
Enables authentication controls monitoring
Provides evidence for access management controls
Navigate to Integrations and select your IdP. Click Connect and follow the authorization flow. DSALTA will request read-only permissions to collect compliance evidence automatically.
Step 6: Connect Core Integrations (5 minutes)
After your IdP, connect additional integrations based on your tech stack:
Cloud Infrastructure: AWS, Google Cloud Platform, or Azure
Code Repositories: GitHub or GitLab
Communication: Slack or Microsoft Teams
Each integration enables automated evidence collection for relevant controls. The more integrations you connect, the less manual work you'll need to do later.
You don't need to connect everything immediately. You can add more integrations as you progress through your compliance program.
What Happens Next?
After completing these initial setup tasks:
Automatic Evidence Collection Begins: DSALTA starts gathering evidence from your connected integrations
Tests Start Running: Automated compliance tests begin monitoring your environment
Controls Are Mapped: Your frameworks' requirements are mapped to your organization's setup
Roadmap Updates: Your Onboarding Roadmap reflects completed tasks and surfaces next steps
Next Steps
With your foundation in place, you're ready to:
Review and customize your security policies
Assign owners to specific controls
Set up additional integrations for comprehensive coverage
Begin addressing any failing tests or missing evidence
Check the Onboarding Roadmap regularly—it will guide you through each subsequent phase of your compliance journey.





