Presentation is loading. Please wait.

Presentation is loading. Please wait.

Proposal to Create IAM Working Group

Similar presentations


Presentation on theme: "Proposal to Create IAM Working Group"— Presentation transcript:

1 Proposal to Create IAM Working Group
Infrastructure Technology Advisory Group (ITAG) 2/19/18

2 From our previous meetings
Discussion about departmental / central IAM offerings Recommendation to explore an IAM Working Group: Explore overlap of departmental / central IAM services Identify gaps in central services Determine how departments can more effectively use central services Governance of Identity Data and Services IMLG, Data Stewardship for IAM data Undetermined for IAM Services Credential Steering Committee recommended to MIST, not yet formed Exploration of an IAM Working Group chartered by ITAG Link to previous slides: 2/19/18

3 IAM Working Group (ITAG)* Credential Steering Committee (MIST)
Key Charter Elements IAM Working Group (ITAG)* Credential Steering Committee (MIST) Rationalize IAM service offerings Guide implementation of Credential Working Group recommendations on authentication Identify and represent distributed unit IAM requirements for central IAM services Ensure fidelity of vision in credential and authentication service development and implementation (risk, usability, service, confidence) Provide direction for central IAM service offerings Ensure authentication service offerings are aligned with risk management framework Provide guidance about policy and practice for service integration with IAM infrastructure Gather requirements for local and central systems in order to strengthen authentication Relate IAM service offerings to other dependent IT service offerings (e.g. endpoint management) Develop proposals for improving the credentialing and authentication environment * informal, presumed from ITAG discussion

4 Identity Management Governance – Proposed Structure Draft – 2/19/2018
IT Core Leadership Team CIO Executive Data Stewardship Council IT Steering Committee CISO Advisory IMLG ITAG MIST IAM Services Data Policy Security Policy Working Group IAM Workgroup / Credential Steering Committee

5 IAM Service Reconciliation
Services within the IAM Domain Service Category Person Data Feeds Identity Identity Linking Identity Data Views Identity Data Extracts Identity Web Services Account Generation Identity, Access Password Management Access, Directory Grouping / Authorization Management Provisioning / Deprovisioning Access Access Control Web Login Services Enterprise Directory Services Directory RADIUS authentication services Cloud directory integration Federation services Identity Management Access Directory Services 2/19/18

6 Services depending on IAM (from IT Service Inventory)
Student Data Service Printing Services Training Identity Management Directory Services 3 services identified File Share 5 services identified 3 services identified 4 services identified 3 services identified 7 services identified Endpoint Management Application Deployment / Management Network Management Access Management Application Monitoring / Management Remote Access 21 services Identified* Security – Restricted Data Security - Monitoring Lab Instrument Data Collection Server & Infrastructure Mgmt. *Note that ‘Access Management’ seemed to include both the infrastructure components around identity and the act of managing access control.

7 Rationalizing IAM Services – Where to focus?
Broad areas of overlap from IT Services Inventory: Managing accounts and directories Multiple credential repositories (10+ identified) Account management (referenced by 23 services) Multiple directory environments (10+ identified) Controlling and auditing access to services Access Management (38) Identity Management (16) Providing person data to applications Application Design / Development (53) Business Intelligence (10) Data Analysis (9) Line of Business Applications (64) Student Data Services (5) Additional analysis needed to more narrowly define opportunities for rationalization 2/18/19

8 Questions for ITAG Does the concept and focus of a joint IAM Working Group / Credential Steering Committee sound right? Does a more detailed analysis of IAM services seem like a reasonable starting place for the working group? And is Directory Services a reasonable starting point? What other things should this group be thinking about? What’s next? 2/19/18


Download ppt "Proposal to Create IAM Working Group"

Similar presentations


Ads by Google