Create your organization
Walk through the six-step organization wizard: frameworks, company details, context, billing details, and your first data source.
What it is
The organization wizard creates the workspace everything else lives in. In six steps it picks a starting framework, creates the organization, records the company context that tailors policies and guidance, offers a few optional hand-offs, takes a payment card where one is needed, and connects a first data source. Clicking Finish marks the organization onboarded and starts the background jobs that generate its first policies and evidence.
Any signed-in user can run the wizard. The person who does becomes the organization's first admin.
Where to find it
Sign in with no organization/org/newYou also reach it from the create option on /org/select. The header reads
"Step N of 6" above a slim progress bar; the footer has Back and
Continue, which becomes Finish on the last step.
Key actions
Step 1: choose your starting framework
The heading is Choose your starting framework with the note "You can add more frameworks later — this just sets the baseline." Pick one radio option. ISO 27001 and GDPR are listed first; Show all N frameworks expands the rest and Show less collapses it. ISO 27002 is never shown here: choosing ISO 27001 links it automatically.
Step 2: set up your organization
| Field | What to enter | Required |
|---|---|---|
| Company name | The legal or trading name that appears across the app and on the trust page | Yes |
| Website | The domain, entered after the fixed https:// prefix (placeholder example.com) | Yes |
| Industry | Pick from Select your industry | Yes |
| Number of employees | 1-10, 11-50, 50-200, 200-1000, or 1000+ | Yes |
| Country | Pick from Select country | Yes |
| Logo | Auto-fetched from the website; Change company logo accepts JPEG, PNG, GIF, WebP, or SVG under 5 MB | No |
Continue creates the organization, both for sign-in and inside Noru, and links the framework you chose. From here on the wizard can be resumed.
Step 3: onboard your virtual CISO
The heading is Onboard your virtual CISO: "This tailors compliance guidance, policies, and risk assessments to your business context." Every question is required; leaving one empty shows "Please fill in all required fields."
| Question |
|---|
| Describe your company in a few sentences |
| How is corporate governance and oversight structured? |
| What devices do your team members use for work? |
| How do team members sign in to your tools and systems? |
| What key business software do you use? |
| Where are your applications and data hosted? |
| What types of data does your company handle? |
| Where do your employees primarily work? |
| Where is your data physically stored? |
You can revise the answers later under Settings → Context.
Step 4: you're almost done
The heading is You're almost done: "Connect your data sources so we can start system scans and automate your controls." Four optional cards follow: Connect data sources now jumps ahead, Invite your IT admin opens the Invite Your IT Admin dialog, Schedule a free 20min call opens the booking page, and Watch a quick demo opens the Noru Demo video.
Step 5: billing
Where your agreement calls for it, this step collects the payment details for the organization in a form served by the payment provider. Use Change or remove card to swap a card. The step is skipped when billing is already set up for the organization.
Step 6: connect your data sources
The heading is Connect your data sources: "Connect one or more sources to automatically start collecting evidence." Under Data sources, GitHub, GitLab, and Google Workspace are pinned first, followed by sources prioritised from your context answers. Connecting shows a "Connecting..." overlay while the provider's authorisation completes. Finish requires at least one connected source; otherwise you see "Please connect a data source before finishing".
Resume an interrupted wizard
Close the tab at any point after Step 2 and the organization still exists.
The next time you open /org/new, the server works out which step you
reached and puts you back there. An organization that has already finished
is sent to /; with several memberships you go to /org/select first.
Statuses and fields
| Header text | Meaning |
|---|---|
| "Step N of 6" | Position in the wizard; the progress bar mirrors it |
| "Connecting..." | A data source authorisation is in flight |
| "Background jobs started successfully" | Finish succeeded and the onboarding jobs are queued |
Tips and gotchas
Finish starts background work
Finish sets the organization to onboarded and queues the default onboarding jobs, including policy generation and the first syncs. There is no undo from the wizard, so pick the framework and context carefully.
Write the Step 3 answers as if briefing a new security lead. Specific hosting, device, and identity details produce policies that need fewer edits, and Cortex reads the same context in every conversation.
You cannot add a second framework inside the wizard. Finish first, then use Choose frameworks.
What Noru does not do
The policies generated at Finish are starting content written from your framework and context answers, not reviewed documents; they describe your organization only once someone edits and approves them. The wizard does not verify your website, industry, or headcount; it takes what you enter.
Related
Last updated on