Job Description :
Business Need:
We deployed Forefront Identity Manager (FIM) for user lifecycle management. The Forefront Identity Manager 2010 product has reached the end of its support life cycle, and the system needs to be updated to Microsoft Identity Manager 2016. Additionally, the need exists to rework the logic and workflows of the FIM environment to increase efficiency, attain additional functionality, and expand scope of the users managed by FIM to include the HC Sheriff’s Office. Upgrading and reworking the process flows of the FIM environment will improve the County’s efficiency and security by reducing the labor costs of user lifecycle management, and more robust cleanup of stale accounts when users leave the County.

Description of Work to Be Performed and the Specific Skill Sets Needed:
The consulting engagement will involve the following technologies:
Forefront Identity Manager 2010 SP2 (“FIM”) and included components
Microsoft Identity Manager 2016 (“MIM”) and included components
Extensible Object Markup Language (XOML)
Resource Control Display Configuration (RCDC)
MS Identity Manager Workflow Activity Library (MIMWAL)
Microsoft Powershell
Microsoft Active Directory
Microsoft Exchange 2016

Where appropriate consulting will utilize best practices put forth by the Information Technology Infrastructure Library (“ITIL”
All tasks may be accomplished remotely from the Contractor’s site unless otherwise noted. All tasks will be completed in partnership with FIM administrators/developers.

Scope of Services
Upgrade Forefront Identity Manager 2010 to Microsoft Identity Manager 2016
This task will include the following activities:
Assist with migration from FIM 2010 to MIM 2016
Splitting of Service and Sync Databases to separate instances
Migration of current Service/Sync databases to MSIM environment
Upgrade FIMWAL to MIMWAL
Sync environment health check
Minor cosmetic changes to MIM portal interface

Redesign/Rework of Existing Workflows in FIM/MIM
Work with FIM administrators/developers to evaluate, redesign, document, and implement new workflows in the MSIM environment. The specific areas to be evaluated/updated include:
New user provisioning process/sync rules
New sync rules which are rules based instead of Management Policy Rule (MPR) based
Move some functionality from Rules Extensions to sync rules
Expansion of provisioning scope to include HC Sherriff’s Office users
Workflows to manage/sync UPN/SIP address/Email Address
Automated management of employee home drives
Automated management of mailbox retention settings
De-provisioning processes/workflows

The objective of revamping the existing workflow processes is close some existing gaps in current process, reduce the database overhead by moving away from an Expected Rules Entry (ERE) design, and expand our functionality in the deprovisioning/removal of stale accounts.

List of Deliverables:
Documentation of all changes made to FIM/MSIM workflows/processes: All changes made to FIM workflows, sets, attributes, and processes will be documented.
Weekly status updates: Status updates to project team will be delivered weekly to the project team. Progress and estimated dates of completion on line item tasks for existing goals, any challenges, and new goals should be included.

Impact/Outcome from a Business Perspective:
Revamping workflows and processes in the identity management system will increase system maturity, improve efficiency, and bolster security by better management of the user account end of life. Additionally, reworking the provisioning process should cut database overhead of they sync database by half, resulting in reduced storage needs and improving system stability. Executing this statement of work will allow for existing limited project resources to focus on higher level design, achieve project goals in a more timely manner, and better meet business requirements of the project.
             

Similar Jobs you may be interested in ..