UMass Boston Technology Roadmap

Transcription

UMass Boston Technology nDecNovOctJulQ2MFA APPS :: IDENTIFICATION & DEPLOYMENTMFA WISER :: STUDENT MFA FOR IT :: DEPLOYMENT& VPN DEPLOYMENTSHIBBOLETHAZURE - SSO :: DEPLOYMENTCLUSTER:: BUILDAuthenticationSAS :: MIGRATIONBlackboard LMSCampus A/VNEW COMPUTERSMICROSOFT ACTIVE DIRECTORY ::UPGRADEULTRA :: UPGRADECAPTIONING :: SELECTIONCAPTIONING :: DEPLOYMENTHYFLEX :: IMPLEMENTATIONVISIX :: MIGRATIONCABLE TV :: UPGRADECAMPUS CENTER BALLROOM :: UPGRADE4K :: UPGRADECLASSROOMS :: UPGRADECLASSROOMS :: UPGRADECOMPUTER REPLACE :: DEPLOYMENTTECH LOANER PROGRAM /GET IT :: DEPLOYMENTEXP. ENG. :: UPGRADEContent Mgmt.EXP. ENG.CybersecurityINFORMATION SECURITY :: IMPROVEMENTSVARONIS :: ACTUALIZATIONIPAM :: UPGRADEData IntegrationQ1AIRA :: MarFebJanQ1DecNovOctSepAugJul2021Q4Aug2020Q3BOOMI ENVIRONMENT :: OBTAININFORMATION SECURITY :: IMPROVEMENTSEXP. ENG. :: UPGRADEINFO. SECURITY :: IMPROVEMENTSNEXTGEN SIEM :: DEPLOYMENTM365 A5 :: DEPLOYMENTDATA INTEGRATION POSITION :: FILLALERTUS :: PANIC BUTTONSEmergency Mgmt.E911 :: icrosoft TeamsNetwork UpgradeJAMF :: EXPANSIONJAMF :: UPGRADEKACE :: EXPANSIONGRADESCOPE :: ASSESSMENTKACE :: UPGRADESECONDARY CIRCUIT :: TRANSITIONBAYSIDE ETHERNET :: REPLACEINSTITUTIONAL :: DEPLOYMENTVOICE :: INTEGRATIONNETWORK CORE/EDGE :: UPGRADEOperating SystemsResearch Computing INFINIBAND :: REFRESHONESTOP :: MIGRATIONSalesforceSecurity CamerasServiceNowManaged WorkGPU :: UPGRADENEW CAMERAS :: DEPLOYMENTCHAT :: MIGRATIONMODULES :: EXPANSIONDISTRIBUTION :: AUTOMATIONLICENSING :: TRACKINGMS SQL SERVER CLUSTER ::MIGRATION to AZURESQL ServerVirtualization- ServersWIRELESS NETWORK :: REFRESH & EXPANDWINDOWS SERVER :: UPGRADELINUX SERVER :: UPGRADEPARALLEL STORAGE :: UPGRADECRM ADMIN POSITION :: FILLINCIDENT MGMT. :: REFINEMENTSAFE CAMPUS :: DEPLOYMENTSoftwareVirtualization- DesktopEVALUATION :: ASSESSMENTHONORLOCK :: ASSESSMENTCLOUD APPS :: STRATEGY &IMPLEMENTATIONDCO / DCO2 - vStart ::MIGRATIONVxRail :: DEPLOYMENTProjectsCLOUDPC KIOSKS, LABS, CARTS ::IMPLEMENTATIONCLOUDPC :: UPGRADECLOUDPC ENGINEERING ::IMPLEMENTATIONP2V SERVERS - CLOUD :: DEPLOYMENTUpdated 11/07/2020

UMass Boston Technology Roadmap DescriptionsAccessibilityMFA APPS :: IDENTIFICATION & DEPLOYMENTAIRA :: DEPLOYMENT [PMO]Reach out to the Applications group for local and Enterpriseapplications that need to be centralized in Shrewsbury. Work closelyto streamline and standardize where possible.Systems 7/1/21 - 6/30/21 12 monthsLab Operations 1/1/21 - 12/30/21 12 monthsAira is a tool to connect people who are blind or have low vision withreal, highly trained professionals who provide visual information ondemand. This application and service has great utility for accessibilityat UMB and would be particularly be useful in assisting students andstaff with university-mandated requirements surrounding physicaldistancing, navigating and avoiding campus construction, andaccessing digital information that has yet to be made fully accessible.MFA FOR IT :: DEPLOYMENTSystems 1/1/21 - 6/30/21 12 monthsDeploy MFA using Microsoft365 Authenticator for IT personnel, tobetter secure our administrative privileges.Blackboard LMSAuthenticationSAS :: MIGRATIONMFA WISER - STUDENT & VPN :: DEPLOYMENT [PMO]Upgrade, as part of UMOL to Blackboard SAS.Ed Tech - eLearning 11/1/20 - 6/30/21 8 monthsISO 9/1/20 - 12/31/20 4 monthsCAPTIONING :: SELECTIONThis project is the component of the MultiFactor Authentication program and is focused on extending twofactor authentication against the WISER application for students andVPN users. The application of multi-factor authentication will providean additional layer of security for student data.Ed Tech - eLearning 1/1/21 - 6/30/21 6 monthsSelect a captioning service for all content hosted in Blackboard.ULTRA :: UPGRADEEd Tech - eLearning 7/1/21 - 6/30/22 12 monthsUpgrade Blackboard LMS to new Blackboard “Ultra experience".Pending UMOL decision.NEW SHIBBOLETH CLUSTER :: BUILDSystems 4/1/21 - 6/30/21 3 monthsBuild new high availability Shibboleth cluster offering redundancy andusing the most current version, The will allow us to continue toprovide Shibboleth as an additional option for authentication.CAPTIONING :: DEPLOYMENTAZURE - SSO :: DEPLOYMENTCampus A/VEd Tech - eLearning 7/1/21 - 12/31/21 6 monthsDeploy the selected captioning service for Blackboard.Systems 7/1/21 - 12/31/21 6 monthsConfigure, enable, and deploy Azure SSO as a service to enhance oursecurity posture for Microsoft applications.HYFLEX :: IMPLEMENTATIONEd Tech - AV Services 10/1/20 - 6/30/21 16 monthsHyFlex (Hybrid/Flexible) is a course delivery modality coming toUMass Boston, where a teacher presents a class to a mix of in-personand remote students, simultaneously. HyFlex courses require bothincrease technology, as well as pedagogical changes to facilitateMICROSOFT ACTIVE DIRECTORY :: UPGRADESystems 7/1/22 - 12/31/22 6 monthsUpgrade to the latest version of Microsoft Active Directory either onprem or in Azure2

Computerseffective instruction delivery and meet the needs of both groups ofstudents. This project will be a proof of concept pilot test assistingselect faculty with technology and pedagogy, before expanding to awider group of courses.DEPARTMENT / FACULTY - NEW COMPUTERS ::DEPLOYMENTDesktop Services 8/1/20 - 12/31/20 5 monthsCAMPUS CENTER BALLROOM :: UPGRADE [PMO]Receiving a request for imaging and setting up new computers for theFY21 new faculty from Apurva. Receiving request approximately 100new computers from varies departments for imaging. IT Desktopteam coordinating with property, receiving and department officemanager to image, deliver and setup for end users.Ed Tech - AV Services 1/1/21 - 12/31/21 12 monthsThis project involves the replacement and upgrading of the AVSystem in the Campus Center Ballroom with a new Digital AV System,that will include the AV Switcher, Interfaces, Projectors,Microphones. The upgrade will also include three new podiums withbuilt-in Computers and HD Cabling to allow for the connection ofnewer model laptops via HDMI cables.TECHNOLOGY LOANER PROGRAM / GET IT :: DEPLOYMENTDesktop Services 8/1/20 - 12/31/20 5 monthsThe Technology Loaner Program has been bootstrapped to provide acollection of staff and faculty computing resources needed offcampus during COVID-19 pandemic, and will likely have future utilityin the arena of loaner devices for students as well as potentiallybecoming a tool to help with the request process for Replace.CLASSROOMS :: UPGRADE [PMO]Ed Tech - AV Services 1/1/21 - 12/31/21 12 monthsMaintaining our classroom and lab technologies are critical for ourstudents, faculty and staff. The upgrade of our classrooms and labs isan on-going task. This project has targeted classrooms and labs forthe 20-21 academic year that will be upgraded with the newequipment.COMPUTER REPLACE :: DEPLOYMENTDesktop Services 1/1/21 - 12/31/21 12 monthsITS will complete an inventory of current University computer assetsto determine status of current systems and build user profiles todetermine how to best meet client's computer needs. Once theUniversity has been repopulated, we will recover the equipment usedfor the loaner program and based on greatest need begin thereplacement of older technology.VISIX :: MIGRATIONEd Tech - AV Services 9/1/21 - 12/31/21 4 monthsReplace UMB TV end of life Vbrick Set top Boxes with Visix MediaPlayers.4K :: UPGRADE [PMO]Ed Tech - AV Services 1/1/22 - 12/31/22 12 monthsUpgrade the video system to 4k.Content ManagementCLASSROOMS :: UPGRADE [PMO]EXPRESSIONENGINE :: UPGRADEEd Tech - AV Services 1/1/22 - 12/31/22 12 monthsApplications - Web Services 5/1/20 - 8/31/20 3 monthsMaintaining our classroom and lab technologies are critical for ourstudents, faculty and staff. The upgrade of our classrooms and labs isan on-going task. This project has targeted classrooms and labs forthe 20-21 academic year that will be upgraded with the newequipment.This project is executing the annual upgrade of the ExpressionEngineContent Management System powering the umb.edu website.EXPRESSIONENGINE :: UPGRADEApplications - Web Services 5/1/21 - 8/30/21 3 monthsThis project is executing the annual upgrade of the ExpressionEngineContent Management System powering the umb.edu website.CABLE TV :: UPGRADEEd Tech - AV Services 7/1/22 - 12/31/22 6 monthsEXPRESSIONENGINE :: UPGRADEInstallation of new Cable TV system.3

Applications - Web Services 5/1/22 - 8/31/22 3 monthsISO 1/1/22 - 12/31/22 12 monthsThis project is executing the annual upgrade of the ExpressionEngineContent Management System powering the umb.edu website.Implement a Next-Gen SIEM built on AI and Machine Learning at itscore with network flow forensics, holistic threat analysis, anddetection, automatic threat containment and remediation as well asbuilt-in integration with the existing campus network Infrastructurecomponents.CybersecurityVARONIS :: ACTUALIZATIONINFORMATION SECURITY :: IMPROVEMENT [PMO]ISO 7/1/20 - 12/31/20 6 monthsIncrease the visibility into M365 Applications (OneDrive, Teams) andother storage devices where University data resides, whether onpremise or in the Cloud using the Varonis platform, leveraging itsIncidence Response, to transform all findings into actionable tasks.ISO 7/1/22 - 6/30/23 12 monthsA full year project designed to implement University securityimprovement initiatives to ensure our University security profile,guided and assessed by an annual audit and a pentest.INFORMATION SECURITY :: IMPROVEMENT [PMO]Data IntegrationISO 7/1/20 - 6/30/21 12 monthsA full year project designed to implement University securityimprovement initiatives to ensure our University security profile,guided and assessed by an annual audit and a pentest.BOOMI ENVIRONMENT :: OBTAINPMO 7/1/20 - 12/31/20 6 monthsThe University’s increasing demand for secure, efficient and effectivemethods of data integration have led to the procurement and initialimplementation of the Dell Boomi data integration product. The nextgeneration of this product (Dell Boomi Private Atom Cloud) has beenapproved for implementation and will provide UMass Boston with acampus-specific ‘tenant’ architecture that will include a dataintegration development, test and production environment. As a‘tenant’ the technical administration of this environment will becentrally managed by the University while the design, developmentand deployment of integration processes will be managed by thecampus data integration team. While the Dell Boomi product ispowerful, it is also very complex and requires skilled resources tosupport our business partner requirements.IPAM :: UPGRADEISO 1/1/21 - 12/31/21 12 monthsUpgrade the IPAM integrated platform (Infoblox) for DNS, DHCP, andIPAM to offer enhanced management, automation, and visibility withan expanded role for supporting the new cloud ecosystem adopted bythe University.M365 A5 :: DEPLOYMENT [PMO]ISO 1/1/21 - 12/31/21 12 monthsThis project will implement the M365 A5 to provide an expandedtoolset for email security and analytics including features suchas EDiscovery, Customer Lockbox, Data Governance, as well asWindows Defender for Windows Endpoints, Cloud ApplicationSecurity, and Azure AD with Identity Protection.DATA INTEGRATION SPECIALIST POSITION :: FILLCIO 1/1/21 - 6/30/21 6 monthsINFORMATION SECURITY :: IMPROVEMENT [PMO]The combination of a growing campus demand for secure, efficientand effective data integration along with the opportunities andcomplexities introduced with the Dell Boomi data integration toolrequire a dedicated, trained and experienced data integration team.Currently staffed with a single data integration specialist it is criticalthat an additional data integration specialist be added to theintegration team to ensure the continuity of the business processesISO 7/1/21 - 6/30/22 12 monthsA full year project designed to implement University securityimprovement initiatives to ensure our University security profile,guided and assessed by an annual audit and a pentest.NEXTGEN SIEM :: DEPLOYMENT [PMO]4

Desktop Services 1/1/21 - 6/30/21 6 monthsand demand while also implementing the new Private Cloudintegration architecture.Upgrading Jamf system to latest version, to stay current and leveragenew features and functionality.Emergency ManagementKACE :: UPGRADEDesktop Services 1/1/21 - 6/30/21 6 monthsALERTUS - PANIC BUTTONS :: IMPLEMENTATIONUpgrading KACE system to latest version, to stay current and leveragenew features and functionality.Applications - App Support 1/1/21 - 12/31/21 12 monthsThe IT Department, in partnership with the Emergency Managementdepartment, is deploying Alertus emergency panic buttons to selectlocations across campus.InstructionalCOURSE EVALUATION :: ASSESSMENTE911 :: DEPLOYMENT [PMO]Ed Tech - eLearning 7/1/21 - 12/1/21 6 monthsNetwork Services 1/1/21 - 12/31/21 12 monthsSelect a Course Evaluation System that the entire campus canstandardize on.As the University continues to develop its security profile, the e-911project will provide campus security with real-time location servicesfor anyone reporting a 911 emergency.GRADESCOPE :: ASSESSMENTEd Tech - eLearning 7/1/20 - 6/30/21 12 monthsEndpoint ManagementImplementation of Gradescope service -- across multiple departmentsfor tests/exams and other assessment.JAMF :: EXPANSIONHONORLOCK :: ASSESSMENTLab Operations 7/1/20 - 12/31/20 6 monthsiMacs and Mac Minis in UMB Mac Labs are currently not endpointmanaged and have no image deployment tool. With JAMF, we nowhave the ability to pivot to a robust, managed image, and as ourexpertise and workflows become refined, we will begin to leverageJAMF for our Mac Labs fully. Mobile Carts iPads are currently notmanaged by JAMF. This project will involve adapting JAMFmanagement for the iPads and investigate expansion potential ofJAMF management for other campus Apples devices.Ed Tech - eLearning 7/1/20 - 6/30/21 12 monthsSelect a Proctoring Solution that the campus can standardize on.InternetSECONDARY CIRCUIT :: TRANSITIONNetworking 7/1/20 - 12/31/20 6 monthsTransition Comcast secondary internet connection to UMassNetinternet connection.KACE :: EXPANSIONBAYSIDE ETHERNET :: REPLACELab Operations 7/1/20 - 12/31/20 6 monthsNetworking 7/1/21 - 12/31/21 6 monthsRegardless of the direction of CloudPC in the Labs, Lab Operations willlikely continue to support traditional workstations in various areas wesupport, i.e. Library workstations and public computers, hold-overlabs that may be dedicated to non-virtual software, staff-usemachines, etc. This project would be dedicated to better utilizingautomation tools for software distribution, image management andendpoint patching, such as KACE and MDT.The backup Bridgewave antennas will soon be off support and this is arisk to the UMB tenants that have offices at Bayside. Proposalincludes eliminating the rooftop antennas and replacing them with asecondary dark fiber path with recurring monthly charges or replacingthe antennas with new antennas with one-time cost.Microsoft TeamsJAMF :: UPGRADEINSTITUTIONAL :: DEPLOYMENT [PMO]5

Ed Tech 7/1/20 - 6/30/21 12 monthsResearch Computing 8/1/20 - 12/31/20 5 monthsThis project is focused on general acceptance and use ofthe Microsoft TEAMs product thru the deployment of the applicationwith departments that volunteer to use the platform foradministrative use.Incorporate two new Infiniband switches into the local switch fabric,converting to fat tree topology and allowing from some resiliencyshould one of our older switches fail.VOICE :: INTEGRATIONResearch Computing 1/1/21 - 12/31/21 12 monthsPARALLEL STORAGE :: UPGRADEUpgrade of local storage options supporting the HPC cluster"Chimera".Network Services 7/1/21 - 12/31/21 6 monthsIntegrate UMass Boston VoIP (voice over IP) telephony services withinMicrosoft Teams to provide seamless phone calling andvideoconferencing via Microsoft Teams to students, faculty, and staff.GPU :: UPGRADEResearch Computing 1/1/22 - 12/31/22 12 monthsReplacement of aging GPU based cluster nodes to better support AIand ML researcher needs.Network UpgradeNETWORK CORE/EDGE :: UPGRADE [PMO]SalesforceNetworking 7/1/20 - 6/30/21 12 monthsThe campus has begun the 1st phase of the campus network upgradethat will include an external vendor assessment of our currentenvironment and design plans for the implementation ofthe comprehensive network core/edge upgrade.ONESTOP :: MIGRATIONCIO 7/1/20 - 12/31/20 6 monthsMoving current OneStop into enrollment management Salesforce org.Current build is nearly complete with data migration next tocomplete. Final testing/acceptance needs to be completed.WIRELESS NETWORK :: REFRESH & EXPAND [PMO]Networking 7/1/21 - 6/30/22 12 monthsCRM ADMINISTRATOR POSITION :: FILLRefresh campus wireless and expansion of coverage for outdoorwireless. There is very limited dedicated outdoor wireless for use bystudents, staff or faculty.CIO 1/1/21 - 6/30/21 6 monthsThe increasing demand to provide highly personalized, near-real timemarketing and communications for revenue generating offices hasresulted in the implementation of multiple CRM platforms acrosscampus – specifically salesforce orgs. While the functional flexibility,on demand modification capability and general ease of use are allcritical components in meeting our business partner’s needs, thedesign, development and administration of this environment requiresa dedicated team of trained, and experienced professionals.Currently staffed with a single team member it is critical that anadditional salesforce administrator be added to ensure to the teamcan maintain the increasing demand for salesforce related activities.Operating SystemsWINDOWS SERVER :: UPGRADESystems 7/1/21 - 6/31/22 12 monthsUpgrade all Windows servers to latest Windows server release.LINUX SERVER :: UPGRADESystems 7/1/21 - 6/31/22 12 monthsUpgrade all Linux servers to latest Linux server release.Research ComputingSecurity CamerasINFINIBAND :: REFRESHNEW CAMERAS :: DEPLOYMENT6

Networking 1/1/21 - 12/31/21 12 monthsClient Services 7/1/21 - 12/31/21 6 monthsInstall video security cameras at various IT Network services: IHub,Building BDF, IHub generator and condenser pads, IT sharedcollaborative space, IT storage space, IT service desk.Software license usage and deployment is currently tracked in acustom Filemaker Pro database. This project will centralize this datainto the helpdesk system. We will also revamp the software requestintake process to include a vetting if the package can run on CloudPC,and renovating the lab space booking process to include workflowsfor requesting software that would go through the service ticketsystem.ServiceNowINCIDENT MANAGEMENT :: REFINEMENTApplications - App Support 7/1/20 - 6/30/20 12 monthsEnd to end review and improvement of incident managementprocesses used by the IT department.SQL ServerSAFE CAMPUS :: DEPLOYMENTMS SQL SERVER CLUSTER to AZURE :: MIGRATION [PMO]Systems 1/1/21 - 6/30/21 6 monthsApplications - App Support 7/1/20 - 6/30/20 12 monthsThe project is designed to build a new IT SQL server service offeringwithin the Azure cloud space that will replace the current on premiseSQL server environment. The project will also include the migrationand/or redeployment of the current SQL applications to the newAzure environment.Acquisition of product due to the COVID19 Pandemic. Configurationand development of main modules, including Check in Survey,Contact Tracing, Health Screening, PPE Inventory Management, etc.CHAT :: MIGRATIONApplication Services 7/1/21 - 12/31/21 6 monthsThis represents the activation of the native ServiceNow chatcapability within the ServiceNow platform. Completion of this taskwill replace the use of the standalone LivePerson chat software,allowing a more solid integration between the ServiceNow IncidentManagement module and the online chat capability.Virtualization - DesktopCLOUD APPS :: STRATEGY & IMPLEMENTATIONSystems 7/1/20 - 12/31/20 6 monthsDuring a time of remote learning, the strategic implementation of theCloudPC pilot project has demonstrated the value, efficiency andeffectiveness of a WVD environment (Windows Virtual Desktop) byproviding access to a high-speed desktop computing environmentparticularly for those that may not have robust end-point devices (i.eChromebook). In addition, CloudPC also provides the uniqueopportunity for students, staff and faculty to access specializedapplications that they may have not otherwise had access. While theCloudPC “published apps” function is very powerful, not allapplications will or can be supported in the CloudPC environment. Toensure the best services for the staff or student requesting access toan application, a new IT App Intake business process is being designedto ‘qualify’ how a software application request can be best managedto meet the user’s needs. This process will ensure the integrity of theCloudPC Publish application service while still providing the requestoravenues to secure access to the software should the application notqualify for CloudPC.MODULES :: EXPANSIONApplications - App Support 7/1/21 - 12/31/21 6 monthsPlan has been developed to implement all Service Provisioning andSupport Modules (includes Knowledge, Change, Problem, SLA, ServiceRequest, etc.).SoftwareDISTRUBITION :: AUTOMATIONClient Services 1/1/21 - 6/30/21 6 monthsAutomate software distribution: Need help from the controller’soffice to allow us to use a service that takes credit cards. Will needPCI compliance and DMZ.LICENSING :: TRACKING7

CLOUDPC KIOSKS, LABS, CARTS :: IMPLEMENTATIONrequirements with a high degree of efficiency including highavailability and the latest security enhancements.Lab Operations 1/1/21 - 6/30/21 6 monthsMobile carts Windows devices are currently full-service laptops,which are difficult to maintain and expensive to replace. WithCloudPC, there is the opportunity to investigate dedicated CloudPCcarts on lighter devices, i.e. thin-client tablets or Chromebook.CloudPC as the core of our Teaching Labs offerings would lighten ourhardware footprint and increase management possibilities for mostsoftware in teaching environments. Lab Operations would like tomove forward in a stepped approach, including refinement ofoperational service model, testing and piloting, identifying edge casesthat need a traditional lab approach, and eventually rolling theservice out widely in Labs.P2V SERVERS - CLOUD :: DEPLOYMENT [PMO]Systems 1/1/21 - 12/31/21 12 monthsExplore and implement alternative technology infrastructure (virtualand cloud computing, DCO2, Azure) and identify targeted servers tomove to hosted services when cost is effective.CLOUDPC :: UPGRADESystems 7/1/21 - 12/31/21 6 monthsUpgrade CloudPC (virtual desktop) cloud-based infrastructure to thelatest release of Microsoft Windows VDI in order to leverage newfeatures/functionality and improved platform administrationcapabilities.CLOUDPC ENGINEERING :: IMPLEMENTATIONSystems 1/1/22 - 6/30/22 6 monthsEffort to scope out and implement a CloudPC engineering image withapplications such as AutoCAD, ArcGIS, etc.Virtualization - ServersDCO / DCO2 - vStart :: MIGRATION [PMO]Systems 9/1/20 - 1/31/21 5 monthsPMO is managing and project is in planning stage, ApplicationServices staff are engaged to support this migration. Server migrationto be completed by 2/1/2021.INFRASTRUCTURE PLATFORM - VxRail :: DEPLOYMENT[PMO]Systems 9/1/20 - 12/31/20 4 monthsThis project will implement the new Dell VxRail appliance as areplacement for the current IT virtual server environment (vStart).The new appliance will support critical IT Infrastructure server8

an additional layer of security for student data. NEW SHIBBOLETH CLUSTER :: BUILD Systems 4/1/21 - 6/30/21 3 months Build new high availability Shibboleth cluster offering redundancy and using the most current version, The will allow us to continue to provide Shibboleth as an additional option for authentication. AZURE - SSO :: DEPLOYMENT Systems 7/1/21 - 12/31/21 6 months Configure .