0% found this document useful (0 votes)
15 views8 pages

CLM - COTS Application Checklist

The document outlines requirements for a contract management system, including features like contract creation, data collection templates, workflow definition, reporting capabilities, and digital signature collection. It also addresses security, support, integration, and technical environment considerations, along with queries regarding mobile support and application deployment. Additionally, it highlights the need for clarity on certain features and the importance of AI integration in the solution.

Uploaded by

shaneclinton
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as XLSX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
15 views8 pages

CLM - COTS Application Checklist

The document outlines requirements for a contract management system, including features like contract creation, data collection templates, workflow definition, reporting capabilities, and digital signature collection. It also addresses security, support, integration, and technical environment considerations, along with queries regarding mobile support and application deployment. Additionally, it highlights the need for clarity on certain features and the importance of AI integration in the solution.

Uploaded by

shaneclinton
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as XLSX, PDF, TXT or read online on Scribd
You are on page 1/ 8

What is the Requirement/User Story?

- ADX
Contract creation as per shared logic and form structure?
Ability to define data collection templates (pre-defined/custom) with UI validation for different types of contracts at self-serv
Ability to define workflow for a respective contract type?
Ability to execute out of the box reports
Ability to define reusable queries & reports for both for individual and department for effective reporting and data analysis to
Abiility to monitor the workflow along with audit trail to see who did what and when
Ability to Identify potential risks during contract execution as a matter of Risk Identification:
Ability to define and collect digital signature
How does your application leverages the power of AI?
nctional Assessment
How does solution implement this? - Partner
Require more clarity on this feature
Require more clarity on this feature
Yes, we can define a unique approval workflow for each contract type/template
I am afraid this feature is not available
Zoho Contracts has 35+ reports. For more info, https://help.zoho.com/portal/en/kb/contracts/user-guide/reports/articles/re
Yes, the audit trail of a contract is stored in the "Activity" tab
I am afraid this feature is not available
Yes, with Zoho Contracts you will receive a subscription of Zoho Sign enabled for all User Licenses
AI based features are in our product roadmap
Implementation Coverage (0 to 100%) - Partner Aragen Reviewer Name

ach contract type/template

//help.zoho.com/portal/en/kb/contracts/user-guide/reports/articles/reports-overview

on of Zoho Sign enabled for all User Licenses


Aragen Reviewer Remarks
Category
1. Requirement
1. Requirement
1. Requirement
1. Requirement
1. Requirement
1. Requirement
2. Security

2. Security
2. Security
2. Security
2. Security
2. Security
3. Support
3. Support
3. Support
3. Support
3. Support
4. Integration
4. Integration
4. Integration
5. Tech Environment
5. Tech Environment
5. Tech Environment
5. Tech Environment
5. Tech Environment
5. Tech Environment
5. Tech Environment
5. Tech Environment
6. Licensing
6. Licensing
Query
What is the support for mobility(Responsive/Native/PWA/None)?
If native mobile app is available then does it supports MDM (Mobile Device Management) and we would need downloadable
We need to see evidence of automated load testing to ensure saclability won't be an issue?
How did you ensure to provide good user experience (UX)? Did you perform any heuristic analysis?
For web app, which all mainstream browsers it support? Any there any known broswer compatibility issues?
We need to see demo and staging site to try out
We need to ensure to have latest VAPT (Vulnerability Assessment Penetration Testing) certificate from empanelled auditor is
landscape?
We need to see code security review report?
What is the type of application (Desktop/Web/Hybrid)?
What kind of encryption algorihtm applied to store connection string and other confidential configuration in web.config/app.
For web app, how does this application support encryption both in transit and at rest?
Does this application collects and PII(Personal Identifiable information) and SII(Sensitive Identifiable Information)
We need to ensure to have AMC for application support all time?
What are the possible support channels and severity wise SLA?
How do we reach out to support team for P1 issue during out of office hours/weekends/Public Holidays?
If this is web application then what are compatible browsers along with version?
How does this application ensures appropriate logging & health monitoring to keep the lights on and green?
How does this application support integration with other applications (XML Web Services/ REST API/Direct DB Connect/etc..)
If this application support REST API then we need to see the documentation?
What kind of authentication types are supported by this application (SSO/AD via LDAP/Forms authentication/etc..)?
Share the Technical & Deployment architecture diagram. We need to ensure that we have license for all dependencies and c
What is the Preferred application hosting model? (On Premise/Cloud/Hybrid)?
How does this application ensures high availability and disaster recovery scenario?
Which database does it support?
If this application needs to be deployed on On Premise then vendor needs to ensure first time deployment as well
If this application needs to be deployed on On Premise then vendor needs to share hardware design (how many VMs and Sizi
What is the back-up mechanism for database/VM/Container?
Vendor has to ensure both OS & application level patch management?
What kind of licenses does this application support (Perpectual/Named License)
What is standard listed price for named license?
nts
Response From Vendor Evidence Provided (Y/N)
Aragen Reviewer Name Aragen Reviewer Remarks

You might also like