PROGRAM OVERVIEW
The Defense Health Agency’s Domain and Directory Services Branch (DDSB) supports the global IT infrastructure that underpins medical readiness for the Army, Navy, and Air Force. This includes sustaining both on-premise and cloud-based environments serving over 200,000 users and 250,000 end-user devices across 250 sites worldwide. DDSB manages core identity, access, and directory services essential to mission-critical healthcare delivery within the Military Health System. Team members contribute to a broad range of IT operations and modernization efforts that directly impact service members, veterans, and their families. This is a high-impact environment supporting both peacetime healthcare and wartime readiness across the DoD medical enterprise.
MISSION OBJECTIVES
PROGRAM REQUIREMENTS | LABOR CATAGORIES
Tier 3 Level Enterprise Management (EM) Administration Support Services
Manage DHA IT Infrastructures utilizing approved EM tools (currently Microsoft Endpoint Configuration Manger (MECM)) including MED365 Cloud Services. Assist with the development and submitting of Ports and Protocols documentation.
Tier 2 Level Systems Administration Support Services
Support the Tier 2 (Continuous Operations) 24x7 operations mission. Maintain and troubleshoot enterprise level products and services, including hardware (servers) firmware, and software for both on-premise and MED365 Cloud/Tenant environments.
Tier 3 Level Systems Administration Support Services
Analyze, validate, implement, maintain, and configure current services and tools (examples include Active Directory (AD), System Center Operations Manager, Quest, Dell Quest maintenance tools) to minimize negative impacts to performance and scalability; work with other organizations and MTFs to coordinate operations and support of directory services across the enterprise; sustain and provide advanced enterprise-level support for AD services and functions; document technical solutions as required. Utilize available tools, such as Quest Suite of Tools, to manage schema extensions, sites and services, domains and trusts, Group Policy Objects (GPO) administration and Organizational Unit (OU) administration. Responsible for advanced management, support, and optimization of the DHA’s MED365 Azure cloud environment.
Information Assurance Security Admin Support Services
Support the mission of the Information Systems Security Officer (ISSO) for all DHA managed systems under the ISSO’s responsibility. Ensure network resources are in compliance with DoD IA and security policies and vulnerability alerts, all IAVAs and any other technical advisories identified by the USCYBERCOM/DHA. Category 1, Category A, and other urgent rated vulnerabilities shall be fixed within 21 days. Most Category 2 and 3 rated vulnerabilities should be resolved during a routine maintenance window; however, some may require manual remediation(s), or a shorter timeframe.
IT Knowledge Management Support: Provide assistance with maintaining/editing SharePoint Portal.
Configuration/Change Enablement Services
Document the approval, deployment, and configuration of all Infrastructure system/service Configuration Items (CI) into the ITSM solution to establish system baseline(s) for the infrastructure pre-production and production environments. Develops, and institutionalizes Infrastructure CM policies, processes, procedures, and plans.
IT Architectural Engineering Services
Develop architectural and technical designs for IT infrastructure systems or solutions that meet or exceed identified functional and technical requirements. Create guidance and strategies to build architectures for MHS/DHA systems. Conduct research into fundamental computer and information science as theorists, designers, or inventors. Develop solutions, designs, and architectures to solve problems in the field of computer hardware, software, and IT service consumption.
Identity Engineering Services
Create standardized, forward-looking, compliant designs and solutions for directory services, identity, credentialing, and access management, Cryptographic Key Management, Privileged Identity Management, Privileged Access Management, Identity Automation, Attribute aggregation, PKI, and PKE engineering activities.
Endpoint Engineering Services
Provide engineering, architectural, and Tier 3/4 expertise to deliver forward-looking, compliant, solutions for the MHS hybrid environment in support of standard Application Integration, Application Security, Desktop Engineering, and Service Monitoring functions that enable management to the endpoint. Develop and engineer a standard framework for centrally deploying and supporting applications and systems within the DHA hybrid production environment and provide a common system and monitoring framework and capability used by other teams to maintain applications, services, and systems.