N
Notion·policy
How to buy software at Northwind
Software Procurement
TL;DR
| Annual cost | Approver |
|---|---|
| < $1,200 | Manager |
| $1,200–$10k | VP of function |
| $10k–$50k | CFO |
| > $50k | CFO + CEO |
Required for ANY purchase
- SOC 2 Type II report on file (request from vendor before signing).
- DPA executed by Legal (Erik Lindqvist).
- Listed in our vendor inventory (Vanta).
- SSO via Okta — non-negotiable for tools touching customer data.
Vendor red flags (do not sign)
- No SOC 2 (or "in progress" without auditor letter).
- No SSO available even on enterprise tier.
- Data residency outside US/EU/Canada.
- Subprocessor list not provided.
Renewals
- Slack notifications go out 90 days before renewal via Vanta.
- Default action: do NOT auto-renew. Re-evaluate.
- Procurement reviews any renewal > $10k.