DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE

Similar documents
Project Charter. Identity & Access Management Strategy. Executive Summary. Business Need and Background. Document Version 1.

Identity & Access Management: Strategic Roadmap. April 2013

CASI Project Charter. Centralized Authentication System Implementation. Executive Summary. Business Need and Background

Project Charter. Office Migrations Document Version 2.0 Prepared by Sabina Winters, ITS Last Edited February 19, 2015

AT&T Global Network Client for Windows Product Support Matrix January 29, 2015

IAM Committee Meeting Agenda 3/14/2016

COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) CHARTERED BANK ADMINISTERED INTEREST RATES - PRIME BUSINESS*

COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) CHARTERED BANK ADMINISTERED INTEREST RATES - PRIME BUSINESS*

DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE. This project is part of the Identity and Access Management Roadmap.

Case 2:08-cv ABC-E Document 1-4 Filed 04/15/2008 Page 1 of 138. Exhibit 8

Enhanced Vessel Traffic Management System Booking Slots Available and Vessels Booked per Day From 12-JAN-2016 To 30-JUN-2017

Project Charter. VoIP Plan Task Force Document Version 3 Prepared by Sandra Germenis, ITS Last Edited October 19, VoIP Plan Task Force

GOVERNING BODY MEETING held in public 29 July 2015 Agenda Item 4.4

Identity and Access Management Memorial s Strategic Roadmap

IAM Committee Meeting Notes 11/9/2015

Analysis One Code Desc. Transaction Amount. Fiscal Period

In accordance with risk management best practices, below describes the standard process for enterprise risk management (ERM), including:

Project Charter. Secure Message System Upgrade

Process Validation Workshops. Overview Session

CENTERPOINT ENERGY TEXARKANA SERVICE AREA GAS SUPPLY RATE (GSR) JULY Small Commercial Service (SCS-1) GSR

P/T 2B: 2 nd Half of Term (8 weeks) Start: 26-AUG-2013 End: 20-OCT-2013 Start: 21-OCT-2013 End: 15-DEC-2013

P/T 2B: 2 nd Half of Term (8 weeks) Start: 25-AUG-2014 End: 19-OCT-2014 Start: 20-OCT-2014 End: 14-DEC-2014

Consumer ID Theft Total Costs

How To Write A System Replacement Plan

PROJECT: Online Shop STATUS REPORT September 2015

Bb Upgrade Timeline. Oct Nov Dec Jan 2011 Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec Jan PDFmyURL.com

24x7 Help Desk Services Questions & Answers for RFP 40016_

Ashley Institute of Training Schedule of VET Tuition Fees 2015

From: Steve Berberich, Vice President of Technology and Corporate Services and Chief Financial Officer

Project Cost & Schedule Monitoring Process Using MS Excel & MS Project

II. Apps Contract Overview (Catherine Camillone, Julienne VanDerZiel)

Academic Calendar Arkansas State University - Jonesboro

Stephen Hess. Jim Livingston. Program Name. IAM Executive Sponsors. Identity & Access Management Program Charter Dated 3 Jun 15

Sage ERP MAS 90, 200, 200 SQL, and Sage ERP MAS 500. Supported Versions

Drupal Foundation Project Charter

P/T 2B: 2 nd Half of Term (8 weeks) Start: 24-AUG-2015 End: 18-OCT-2015 Start: 19-OCT-2015 End: 13-DEC-2015

Enterprise Resource Planning (ERP) Program: Overview and Status Update

EMA SPOR master data management roadmap

Task Force Charter. Mobile Strategy Document Version 3.0 Chief Information Officer, ITS Last Edited December 17, 2012.

Important Dates Calendar FALL

DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE

SharePoint 2013 Project Charter

BOARD OF REGENTS AUDIT/COMPLIANCE AND INVESTMENT COMMITTEE 2 STATE OF IOWA FEBRUARY 3-4, 2010 INTERNAL AUDIT REPORTS ISSUED

Organizational Development Plan

Architectural Services Data Summary March 2011

ACTIVE MICROSOFT CERTIFICATIONS:

Financial Operating Procedure: Budget Monitoring

Computing & Telecommunications Services Monthly Report March 2015

STRATEGIC IT ACCOUNTABILITY BOARD (SITAB) AGENDA WEDNESDAY, JUNE 15, :30 3:30 p.m. STARK LIBRARY

Portal Annual Report 2012/13

Texas Nursing: Our Future Depends on It

Supervisor Instructions for Approving Web Time Entry

Managing Open Source Code Best Practices

BROMSGROVE DISTRICT COUNCIL PERFORMANCE MANAGEMENT BOARD 16 DECEMBER 2008 PERFORMANCE MANAGEMENT BOARD PROPOSED PROGRAMME 2008/09

Annexure B: Planning, Budgeting and Performance Management Programme

AgriLife Information Technology IT General Session January 2010

oct 03 / 2013 nov 12 / oct 05 / oct 07 / oct 21 / oct 24 / nov 07 / 2013 nov 14 / 2013.

Shared Services Canada and Cloud Computing Architecture Framework Advisory Committee

Detailed guidance for employers

Supply Quality Assurance

COLLEGE BOARD: HUMAN RESOURCES COMMITTEE TERMS OF REFERENCE (TOR)

How To Get A Certificate From Ms.Net For A Server Server

ACTIVE MICROSOFT CERTIFICATIONS:

The Unique Alternative to the Big Four. Identity and Access Management

Identity and Access Management: Access Management Survey 1

Key Components of Enterprise Risk Management (ERM) Framework

CAFIS REPORT

2015 Ohio MemberSource Newsletter Targeted Production Schedule (Laura Huff/Courtney Stewart)

The Impact of Medicare Part D on the Percent Gross Margin Earned by Texas Independent Pharmacies for Dual Eligible Beneficiary Claims

Resource Management Spreadsheet Capabilities. Stuart Dixon Resource Manager

VoIP Deployment Committee Charter

Centers of Academic Excellence in Cyber Security (CAE-C) Knowledge Units Review

Transcription:

SOLUTION PLAN REQUIREMENTS ANALYSIS DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE Executive Summary The project will document campus requirements for IAM functionality and select and procure one or more technology solutions to satisfy those requirements. The project will also develop an implementation plan for those solutions and procure expert vendor assistance for the solution implementation. Business Need and Background Identity and Access Management refers to the systems and processes that enable students, faculty, staff, and other groups (like alumni) to gain access to campus systems they should have access to while preventing them from accessing the systems they should not. At a high level, IAM includes creating EIDs, managing the access an EID should have, and the removing access when it is no longer needed. The university s current IAM systems are aging and no longer meet the needs of campus. For example, they: Do not easily integrate with new cloud- based services; Do not provide easy- to- use services for groups like alumni and applicants; and Do not allow for efficient management of access across our systems. The IAM Strategy project, completed in spring 2013, developed a roadmap for improving campus IAM services. The IAM Roadmap (see Appendix A) is organized into three phases: Phase 1 (Do Now): Establish a governance structure for the IAM program and select IAM technology solutions for meeting campus needs. Phase 2 (Do Next): Address critical functionality gaps identified by campus stakeholders during the roadmap development process, such as providing more flexible authentication options, adding enterprise group and role management services, and providing the ability to answer the question, Who has access to what systems on campus? Phase 3 (Do Later): Complete the implementation and build- out of the new IAM infrastructure and services. Page 1 of 5

Project Description and Scope This project is part of Phase 1 of the IAM Roadmap and will address the selection of a set of enabling IAM technologies for campus in the following areas: Identity Administration & Provisioning Flexible and reliable tools for identity and account creation, update, and removal, including ESB- and connector- based provisioning integration with downstream systems (e.g., Active Directory, utexas Enterprise Directory). Both person and non- person identities (e.g., resources, services/applications, devices) are included. Group & Role Management Federated management of static and dynamic groups and roles. Authorization Workflows and Repository Access request/approval and renewal/recertification workflows and tracking, plus a repository to store authorization and privilege data extracted from key campus systems to provide a single source for knowing who has access to what across the university. Authentication Enhancements to the (OpenAM- based) UTLogin authentication service to enable lightweight (and bring your own identity ) authentication for low- risk transactions and strong multi- factor authentication for high- risk activities, as well as federated authentication. Logging & Auditing Collection and storage of transactions across the above IAM functional areas, and the mechanisms to analyze and report on those transactions. The project scope includes the following activities: Document applicable requirements and use cases Research solutions and develop a reference architecture for the IAM enabling technologies Select and procure technology solution(s) Select integration support vendor Develop implementation plan and revise IAM Roadmap (if needed) The project scope does not include the actual implementation of the selected technology solutions. Technology solution implementation will be managed as a separate set of follow- on projects, as described in the IAM Roadmap. Project Goals The project s goals are to: Select a set of enabling technologies to support the IAM functional areas described in the project scope. Select a vendor to provide implementation and integration support. Develop a practical and achievable plan for implementing the selected solutions. Project Schedule This project is scheduled to run from July 2013 to March 2014. Page 2 of 5

Phase Jul Aug Sep Oct Nov Dec Jan Feb Mar Plan Requirements Solution Selection Close Project Management and Governance The IAM Committee will provide steering oversight for this project. The Architecture & Infrastructure Committee will also be kept informed of project status. Role Names Executive Sponsor(s) Customer Steering Committee Project Manager Technical Lead Project Team Information Security Officer Systems Point of Contact Networking Point of Contact User Services Point of Contact James Lewis, Chair, AIC Brad Englert, CIO IAM Committee Cam Beasley (or designee) Greg Baker (or designee) Jason Wang (or designee) Project Facilities and Resources Participation from IAM Committee members and other campus stakeholders will be required during requirements development, solution selection, and integration vendor selection. IAM Team resources will be augmented with contract staff and expert vendor assistance during the project. Impact Analysis When the IAM technology solutions selected as part of this project are ultimately implemented, most administrative areas and many academic areas on campus will be affected. The IAM Committee, which includes representatives from both administrative and academic units, will review the anticipated impacts on campus areas are part of the solution selection process. Assumptions & Constraints Authentication The authentication solution(s) selected as part of this project will integrate with the existing UTLogin system (based on OpenAM). UTLogin will not be replaced as part of this project and it is assumed that the UTLogin Transition (and CWA/Fat Cookie retirement) project will proceed as planned. Page 3 of 5

Provisioning The identity administration and provisioning solution(s) that are addressed in this project are distinct from the IT service provisioning orchestration solution that the ITS Service Provisioning (SP) team will be selecting this fall. This project will coordinate closely with the SP team to ensure that the provisioning solutions selected can be integrated smoothly and that functionality is not duplicated. Directory Services This project does not include the replacement of the university s central directory services (Austin Active Directory, utexas Enterprise Directory, and the public UT Directory). However, the implementation of additional or enhanced directory services functionality may be required to implement other parts of the project s scope (e.g., authorization repository). ID Card Services The replacement of the university s current ID card management system is not in scope for this project. Risks Project risks include: It may be difficult to develop a complete set of requirements at an appropriate level of detail in a reasonable time period. Emerging IAM requirements from the ERP replacement (ASMP), Shared Services implementation, and the new Open Systems technical environment projects may require rework of the solution selection process. The project timeline may be extended if a trial installation and hands- on evaluation of one or more technology solutions is required. Project resources with required skills may not be available or may be diverted to other projects or activities. Revision History Version Date Updater Name Description v1.0 8/14/2013 Initial draft completed Page 4 of 5

Appendix A: IAM Roadmap Page 5 of 5