While IT Optimization provided the standardization necessary to drive economies of scale through infrastructure consolidation (server, storage, mainframe, and network), the State of Ohio is now focused on the next step – IT innovation.
With the signing of Executive Order 2019-15D, Governor Mike DeWine established the statewide focus on IT innovation. The goal is to make State government a more effective and efficient leader in using technology to improve customer service and save tax dollars. The governor, lieutenant governor, and state chief information officer (CIO) are working together to make IT innovation a top priority. They are committed to improving the lives of citizens and state service delivery through innovative technologies.
While great progress has been made since the signing of the executive order, there is more to be done. The IT Innovation Technology Strategic Plan for 2020-2022 continues to build on the successes of the past, supporting the vision of the DeWine-Husted Administration. IT Innovation will streamline and modernize State IT through a focus on digital experience, data analytics, enterprise shared services, on premise or in public clouds, and collaboration.
The strategy focuses on one team, with one goal - to leverage technology to better serve the people of Ohio.
October is National Cybersecurity Awareness Month - 10.1.2021
“[M]aintaining the security of cyberspace is a shared responsibility in which each of us has a critical role, and awareness of computer security essentials will improve the security of Ohio’s information infrastructures and economy,” say Governor Mike DeWine and Lieutenant Governor Jon Husted. Because of that critical role, Governor DeWine and Lt. Governor Husted have designated October as Cybersecurity Awareness Month!
A critical component in securing data is providing security training to the State’s workforce. Training helps to ensure that policies to protect critical data and systems are followed. It is also important that people who work with State data are aware of information security standards and practices that can help prevent data loss, system interference and misuse, and business interruptions.
The DAS Office of Information Security and Privacy (OISP) conducts annual Securing Ohio training, hosts the Ohio Cybersecurity Day, and provides security and privacy tips and information throughout the year. In addition, every month phishing email tests are performed statewide. Thirty-one agencies, boards and commissions are working with DAS OISP to exercise the security awareness skills of State users and to evaluate the effectiveness of security and privacy awareness training. The monthly phishing tests, which are simulations of phishing emails, do not actually expose data or compromise the recipient’s computer.
Ohio Cybersecurity Day Reminder
In recognition of Cybersecurity Awareness Month, the 2021 Ohio Cybersecurity Day virtual event will be held on October 26th from 9:00 a.m. – 1:00 p.m. The topics covered during this year’s event include:
• Updates from the Multi-State Information Sharing and Analysis Center (MS-ISAC), Homeland Security, and the Cybersecurity and Infrastructure Security Agency (CISA)
• Role of Breach Counsel
• Risk Management
Registration is free and open to state and local government employees. Register now at: infosec.ohio.gov url.
Coming Soon - Multifactor Authentication for Microsoft Office 365 Applications - 9.8.2021
As you may have already heard, a project is currently underway within DAS to rollout multifactor authentication (MFA) for Microsoft Office 365 applications (O365 applications) to agency users. The MFA service is for all O365 applications. This includes, but is not limited to: Outlook, Teams, OneDrive, Word, Excel, PowerPoint, and SharePoint.
MFA takes authentication (proving that you are who you say you are to an information system) a step beyond the traditional user ID and password process. This additional step protects State data by using a second source of validation to verify user identity before granting access. Specifically, DAS users will be required to enroll a device (phone line or mobile device) in Duo Security to complete the O365 application authentication process. Once enrolled, daily identity verification will be accomplished via a push notification, phone call or passcode entry, as selected by the user.
To help facilitate the verification process, users will have the option to download the Duo Mobile app onto an iOS or Android device (e.g., mobile phone). The app offers an easy way to receive a push notification or passcode to complete the authentication process. However, users can also receive phone calls or text messages to authenticate.
Implementing MFA for the State’s O365 offerings will substantially reduce enterprise risk to the State. According to the National Security Agency, "MFA has evolved as one of the most effective controls to protect an enterprise. MFA presents a significant obstacle to attackers trying to gain or maintain access to an organization's network.”1
The DAS MFA rollout is expected to be completed in mid-September. Upon successful completion, the objective is to extend the use of MFA for O365 applications to all State agencies, boards, and commissions to further safeguard State data. If you have any questions regarding this effort, contact the Customer Service Center (CSC) by email, firstname.lastname@example.org, or by phone, (614) 644-6860 or (877) 644-6860.
1National Security Agency Cybersecurity Information, “Transition to Multi-Factor Authentication, A Common Tactic.” National Security Agency August 2019. < https://media.defense.gov/2019/Sep/09/2002180346/-1/-1/0/TRANSITION%20TO%20MULTI-FACTOR%20AUTHENTICATION.PDF>.
State CIO and CPO Discuss IT Procurement in Ohio - 8.6.2021
State Chief Information Officer (CIO) Katrina Flory and Chief Procurement Officer (CPO) Kelly Sanders recently lead a State of Ohio Strategic Discussion on Tech Procurement at an event hosted by the Ohio Innovation Technology Association (OITA). They discussed the strong partnership and strategic alignment between IT and procurement that results in leveraging the State’s buying power to create efficiencies and savings for the State of Ohio.
CPO Sanders emphasized that procurement is continually looking for ways to simplify and modernize IT procurement, while ensuring a fair and competitive selection process. State CIO Flory explained that IT plays a critical role, providing feedback regarding the agency and vendor IT procurement experience. In addition, the State’s IT strategy and agency IT requirements are shared with procurement to help identify enterprise purchasing and contracting opportunities.
CPO Sanders and State CIO Flory agreed that one way to achieve efficiencies is by focusing on the establishment of pre-qualification contracts. These contracts allow for the purchase of IT services through a statement of work, as opposed to each agency having to create a competitive solicitation each time they want to make a purchase within a certain technology category.
Finally, CPO Sanders and State CIO Flory discussed the implementation of Ohio|Buys, the State’s online purchasing solution that empowers both government buyers and interested suppliers. Ohio|Buys leverages innovative technologies to increase efficiency, opportunities, and participation with businesses in Ohio.
ODNR Launches Fish Stocking Dataset - 7.6.2021
On June 16, 2021, the Ohio Department of Natural Resources (ODNR) was the most recent agency to join the DataOhio Portal (DOP) with the addition of a new fish stocking dataset and visualization.
About the DataOhio Portal
The DataOhio Portal is a public-facing portal that provides 220+ datasets and 100+ interactive visualizations to inform data-driven decision making for state agencies and their partners. The DOP is a first of its kind state technology, enabling data collaboration and sharing while also featuring enhanced security and privacy.
The DOP illustrates the State of Ohio’s commitment to become more customer-centric and data-driven, ultimately allowing state agencies, programs, and entities to better serve Ohioans. The DOP offers significant value drivers for Ohio:
More information about the InnovateOhio Platform is available on the InnovateOhio website. For general inquiries, please contact the InnovateOhio Platform team.
Farewell to State CIO Ervan D. Rodgers II - 6.7.2021
State CIO Ervan D. Rodgers II recently left state service to pursue an opportunity in the private sector. Specifically, he is now the senior vice president and chief information officer for Designer Brands. As State CIO, Ervan emphasized collaboration, setting strategic goals for IT Innovation and partnering with state agencies to achieve these goals. Ervan provided leadership throughout the pandemic, helping to deliver critical information technology services. He also worked to bring national attention to information technology in the State of Ohio and its tremendous successes.
Katrina Flory has assumed the position of interim state CIO and interim assistant director for DAS. Katrina has extensive experience in State government. She has served in the deputy state CIO role for approximately 10 years, leading efforts to establish DAS OIT strategic direction and overseeing enterprise shared service operations such as the Ohio Administrative Knowledge System (OAKS), InnovateOhio Platform, Ohio Business Gateway (OBG), and the eLicense system. She joined DAS OIT in 2000 and was previously with the Ohio Department of Taxation. Katrina’s deep knowledge of State government will enable a seamless transition and continuation of statewide efforts to leverage technology assets to improve the well-being of Ohioans and their health, property, security, and livelihoods.
If you have any questions, please contact us at email@example.com.
With a focus on IT innovation and in support of the 2020 IT Innovation Technology Strategic Plan, the Department of Administrative Services (DAS) Office of Information Technology (OIT) established an IT Engagement model that includes the Technology Advisory Council (TAC) and Technology Advisory Groups (TAG).
The IT engagement process will facilitate the identification of various DAS OIT and agency supported Innovation Committees (IC) that will assist in realizing the principles and goals of the TAC and TAG.
Technology Advisory Council (TAC):
The TAC membership includes a core group of DAS OIT leadership and six agency chief information officers (CIOs).
The guiding principles of the TAC include: innovation, enterprise perspective, economy of scale (cost containment), collaboration, strategic alignment, business value, and customer service.
Technology Advisory Groups (TAG):
The TAG consists of six groups to champion the top technology priorities, each group is supported by a DAS OIT subject matter expert. These priorities include: Cybersecurity & Risk Management, Digital Services/Digital Government, Cloud Services, Data Management & Analytics, Identity & Access Management, and Workforce.
The guiding principles of the TAG include: enterprise perspective, collaboration, actionable engagement, efficiency/reduction of redundancy, innovation, and value.
The TAG, associated chairs, and partner agencies are organized as follows:
Secretary of State
Opportunities for Ohioans with Disabilities
Bureau of Workers’ Compensation
Development Services Agency
Environmental Protection Agency
Ohio Facilities Construction Commission
Mental Health & Addiction Services
Auditor of State
Treasurer of State
Public Utilities Commission of Ohio
Budget and Management
Ohio Turnpike and Infrastructure
Job and Family Services
Legislative Information Systems
Rehabilitation & Correction
IT Innovation Information Center
IT Application Center
IT Enterprise Services portal
IT Strategy and Investment Management
9-1-1 Program Office
Telecommunications Contracts and Cloud Services Agreements
Ohio Geographically Referenced Information Program (OGRIP)
Ohio IT Statutes and Administrative Rules
Governor's IT-Related Orders and Directives
State of Ohio IT Policies
State of Ohio IT Standards
State of Ohio IT Bulletins
Enterprise IT Procedures
Statewide Enterprise Buys
Next Generation Telephony Service
Virtual Meeting Guidance
Local Governments and Political Subdivisions
State Agencies, Boards, and Commissions