aSaaS (أساس) · Getting Started
Getting started with aSaaS (أساس) on Google Cloud Marketplace
Deploy secure, compliant Google Cloud landing zones in minutes, with AI-guided automation and human approval at every step. aSaaS (أساس) is available directly through Google Cloud Marketplace. This guide walks through getting access, connecting your organisation, and deploying your first landing zone.
Prerequisites
- A Google Cloud organisation with billing enabled
- Organization Administrator role (or equivalent) on your Google Cloud organisation
- A Google Cloud Marketplace account linked to an active billing account
Step 1
Get access to aSaaS (أساس)
aSaaS (أساس) is available through Google Cloud Marketplace via private offer.
- Contact C-9INE: reach out to discuss your landing zone requirements.
- Receive a private offer: we send a customised offer through Google Cloud Marketplace.
- Accept the offer: review the pricing, select your billing account, and accept it.
- Your subscription activates immediately, and stays visible any time in your Marketplace Orders.
Step 2
Sign up and activate your account
After subscribing, Google Cloud redirects you to the aSaaS (أساس) sign-up page.
- A secure token (JWT) verifies your identity automatically.
- Your aSaaS (أساس) account is created and approved within seconds.
- You land on the aSaaS (أساس) Marketplace Portal, showing your account status.
Step 3
Connect your Google Cloud organisation
From the aSaaS (أساس) Marketplace Portal:
- Click "Connect Organization".
- Sign in with an account that has Organization Administrator permissions.
- Authorise aSaaS (أساس) to manage landing zone resources in your organisation.
- Behind the scenes: a dedicated service account is created, scoped to Folder Admin, Organization Admin, Project Creator and Billing User. Every action stays scoped to landing zone resources only.
Step 4
Choose your foundation type
| Type | Best for | What's included |
|---|---|---|
| Proof of Concept | Evaluating Google Cloud | Organisation + billing setup, basic IAM, minimal hierarchy |
| Production | Production workloads | Full setup: networking, security, IAM, environments, monitoring |
| Enhanced Security | Regulated industries | Everything in Production + Cloud KMS with Autokey encryption |
The AI assistant adapts the deployment workflow to your choice: a Proof of Concept deploys faster with sensible defaults, while Production and Enhanced Security guide you through every configuration detail.
Step 5
Deploy your first landing zone
Once your organisation is connected and your foundation type selected, the aSaaS (أساس) AI assistant guides you through the entire landing zone deployment.
5.1 Open the Landing Zone Dashboard
Navigate to the main aSaaS (أساس) dashboard. The AI assistant is ready to start.
5.2 Start the guided deployment
What the AI assistant deploys, stage by stage
| Stage | What it does |
|---|---|
| 0: Bootstrap | Creates the seed project, enables APIs, sets up OpenTofu state storage |
| 1: Organization | Configures organisation policies, creates top-level folders |
| 1: Services | Enables required Google Cloud APIs across the organisation |
| 2: Networking | Sets up Shared VPC, subnets, Cloud NAT, firewall rules |
| 3: Security | Configures Security Command Center, Cloud Armor, IAM hardening |
| 4: Environments | Creates development, staging, and production environment folders |
| 5: Projects | Provisions projects within each environment with proper IAM |
| 6: App Deployment | Deploys workload infrastructure (Cloud Run, GKE, etc.) |
Which stages you see depends on your foundation type: a Proof of Concept deploys a subset with sensible defaults, while Production and Enhanced Security include every stage.
5.3 Review and approve each step
You approve every change before it happens
At every critical step, the AI assistant pauses and asks for your approval before making changes:
- 01
Review
The assistant explains what will be created or modified.
- 02
Approve
Click Approve to proceed, or ask the assistant for more detail.
- 03
Apply
OpenTofu applies the infrastructure changes to your Google Cloud environment.
- 04
Verify
The assistant confirms the changes were applied successfully.
Full control, throughout
No infrastructure changes are ever made without your explicit approval. You maintain full control throughout the process.
5.4 Monitor progress
Track the deployment in real time
- Stage progress: see which stages are complete, in progress, or pending.
- Resource details: view the specific Google Cloud resources being created.
- Architecture diagrams: auto-generated diagrams of your landing zone topology.
Step 6
Post-deployment
After all stages complete, your landing zone is ready:
- Organisation policies are enforced.
- Networking is configured with Shared VPC and proper segmentation.
- Security controls are active (Cloud Armor, Security Command Center, IAM).
- Environment folders and projects are provisioned.
- A GitOps pipeline is set up: all infrastructure is managed via a GitLab IaC repository with Cloud Build pipelines for ongoing management.
Next steps
- Customise the OpenTofu templates for your organisation's requirements.
- Extend the landing zone with more environments, projects or workloads through the AI assistant.
- Monitor landing zone health using Google Cloud's operations suite.
Managing your subscription
- View subscription status in the aSaaS (أساس) Portal.
- View offer and billing details in Google Cloud Marketplace Orders.
- To cancel, contact C-9INE or manage it through Marketplace Orders; your existing infrastructure stays in place.
Troubleshooting
| Issue | Solution |
|---|---|
| "No Active Subscription" on the portal page | Ensure you subscribed via Marketplace and are signed in with the same Google account. |
| Organization connection fails | Verify you have Organization Administrator permissions. Check that the organisation has billing enabled. |
| A deployment stage fails | The AI assistant provides error details and remediation steps. You can retry any failed stage. |
| Need to re-run the signup flow | Contact support: we can reset your account to re-trigger the Marketplace signup. |
Support
Need a hand?
Email contact@c9ine.com, reach us through our contact page, or use the Support link on the aSaaS (أساس) listing in Google Cloud Marketplace.