Many U.S. states are hampered by traditional technology silos and data barriers between agencies. Starting in 2017, the Maryland Department of Human Services initiated a cloud-based data repository and application platform for delivering social services to its residents – known as MD THINK. Using services including Amazon Elastic Compute Cloud (EC2), Amazon Elastic Container Service (ECS), and Amazon Relational Database Services (RDS), agencies requiring application modernization to support mission-critical operations can migrate quickly and share data more seamlessly. In this session, we’ll hear from Maryland’s Chief Information Security Officer, John Evans, about how the state designed for security, scalability, and data integration and built a platform that already serves a third of Maryland residents (with bigger plans ahead!).
17. Program Overview
17
The Maryland Department of Human Services (DHS) is the State’s primary social service
provider, with a $2.6 billion annual budget with 7,000 employees, serving over one million
people annually. The Department, through its 24 local departments of social services,
aggressively pursues opportunities to assist people in economic need, provide preventive
services, and protect vulnerable children and adults in each of Maryland’s 23 counties and
Baltimore City.
SOCIAL SERVICES
ADMINISTRATION
FAMILY INVESTMENT
ADMINISTRATION
CHILD SUPPORT
ADMINISTRATION
• Foster Care
Placement
• Adoption Placement
• Child Welfare
Services
• Adult Services
• Legal Service
• CASH
• SNAP
• Workforce
Development
• Eligibility Services
• Refugee Assistance
• Child Support payment
enforcement from Non-
custodial parents
18. WHAT IS MD THINK?
The first program of its kind in the nation, MD THINK
is a cloud-based technology platform that is
integrating the state’s health and human services
applications so it can more effectively and efficiently
deliver vital services to Marylanders.
1
INTEGRATED
PLATFORM
1
IMPACTED
MARYLANDERS
>2M
19. MD THINK Vision
Point-to-Point Access Control and Governance for Workers
Family Investment
Administration
Child Support
Administration
Social Services
Administration
Department of
Juvenile Services
MD Health
Benefits Exchange
USERS
{
• Isolated Silos
• Passive Systems
• Difficult to Modify
Current State
Shared Services
Shared Data Repository & Analytics
Agency Applications
Access Control & Governance
Centralized Access Control and Governance for All Workers
Web Mobile
USERS
{
• Dependent Workarounds
• Expensive Maintenance
• Poor Customer Experience
Future State
MD THINK
(Maryland Total Human Services Integrated Network)
1
9
20. Benefits to Citizens, Case Workers, and State
2
Modern, cloud-based technology
platform with no wrong door
approach for various health and
human services that reduces cost
through consolidation of expensive
hosting services
Faster service delivery through
reduced paper processing and less
duplicate data entry
Shorter enrollment turnaround times
because of streamlined eligibility
determination process
The modernized platform and use of
shared data enables state agencies
to deliver the highest level of service
to its customers and leads to
reduced fraud, waste, and abuse
Quicker EnrollmentMore Efficient Delivery
One Integrated Platform Greater Quality of Service
CITIZENS
CASE
WORKERS
STATE OF MD
21. E&E Long Term Care
application deployed in
production
Base Content
Management (ECMS)
Platform deployed in
production
Awarded CJAMS Vendor
Awarded Agile Team
Vendors
2018 20192017 2021
CJAMS deployment
planned (Child,
Juvenile and Adult
Management System)
MHBE’s application
integration planned
Eligibility and
Enrollment (E&E)
system deployment
(Non-MAGI, SNAP &
Cash Assistance
Programs)
Onboard other agency
application
Child Support System (CSS)
deployment
Obtain Child Support Federal
Certification
MD THINK Operational
APD Approved, CTO
Hired
Software Procurement
Completed
Agile Team RFP
Released
CJAMS RFP Released
Established Steering
Committee
Pilot, base
infrastructure and data
platform deployed
Program Methodology and Accomplishments
2
TRADITIONAL WATERFALL METHOD AGILE METHOD
Only moves to next phase of development once the
previous step is fully completed
Builds a Minimum Viable Product – one that can be
implemented – tests it, and then enhances that
foundational build incrementally
2020
22. Common Platform to Support Multiple Agencies
22
PARKING FOOD BAGGAGE RESTROOMS
C3 C7C6C5C4
SECURITY
SECURITY
Airport
Analogy
23. MD THINK Airport model
2
Enterprise
Content Management
BUSINESS
RULES
MASTER DATA
MANAGEMENT
SHARED DATA
REPOSITORY
CJAMS Other
AppsHBXCSSE&E
DEPLOYMENT RUNWAY
Enterprise-
LevelData
Security
Enterprise-
LevelData
Security
Eligibility
&
Enrollment
Child
Support
System
Child, Juvenile
and Adult
Management
Systems
Health
Benefit
Exchange
24. CLOUDTRAIL
MARS-E
MONITORING & REPORTING
FOUNDATIONAL INFRASTRUCTURE SECURITY STANDARDS
CONNECTIVITY DATA & SECURITY
EC2VPC ECS
EFSROUTE 53
DIRECT CONNECT
MULTI AZ
VPN RDS KMS
ACM
WORKSPACESIAM
USER ACCESS
INTERNET GATEWAYS WAF
Foundational
Infrastructure
User Access
Data and
Security
Monitoring
and Reporting
System
Security
Connectivity
& High
Availability
24
CLOUDWATCH CONFIG
25. Platform Statistics
# of ATOs
Completed
7
# of Users
On-boarded
30,000 external users
1,000 internal users
# of EC2 instances
2,000
# of AWS Accounts
Provisioned
20
# of Application
Environments
65
# of AWS Products
Deployed
30 out of 90 platform
products
25
28. Mobile Apps
Web Access
Access Management Identity Management
DHS
Consumer Portal
Eligibility Determination Business Rules
(SNAP, TANF, MORA, OHEP, MAGI Medicaid, Non MAGI Medicaid)
Enterprise Service Bus
Batch Interfaces & ETL
(Federal, State Agencies)
Data
API Management
Business Process Mgmt.
Applications
Agencies
Worker portal
Consumer API (s)
API Gateway
Worker API(s)
Data Integration
Agencies
Consumer Portal
Eligibility
Worker portal
CJAMS Worker Portal
Child Support Worker
Portal
Document Generation
& Notices
Enterprise Search
Analytics & Reporting
MDM(Client
& Provider Index)
Document Management Big Data Analytics System Monitoring
Audit Logging
& Analysis
DevOps,Infrastructure,Security
andVulnerabilityManagement
RIDP
FDSH Interfaces
Other Federal Interfaces
State Interfaces
SSA
VAHI
VLP
MEC
Max APTC
IRS
SSA
DRS
ACF
MMIS / DHMH
EBT/EFT
Bureau of Empl. Prog.
State Treasury
MoCo
Shared Data / Document
Repository
Agencies DB CW COTS DB CS COTS DB
E&E COTS DB ECM DB MDM COTS DB Shared Platform
Agency Applications
Legend
(In use or ready for use)
Other
Agencies
Apps
MD Benefits MD IE Worker
MD CW
Worker
MD CS
Worker
AWSCloud
Infrastructure
Application Architecture
28
29. Monitoring, Incident
Response and Change
Management
User Access
System Security
Data and Security
Connectivity, High
Availability and Fault
Tolerance
Direct Connect
Foundational
Infrastructure
S3
Statewide Government Intranet
(SwGI)
IBM Connect Direct
Cloud Platform Technologies
29
30. ACF Administration for Children and Families ETL Extract, Transform, Load MoU Memorandum of Understanding
APD Advanced Planning Document FDSH Federal Data Services Hub NIST National Institute of Standards and Technology
API Application Programming Interface FISMA Federal Information Security Management Act RFP Request for Proposal
ATO/ATC
Authorization To Operate
Authority to Connect
HBX Health Benefit Exchange RIDP Remote Identity Proofing
AWS Amazon Web Services IRS Internal Revenue Service SAFe Scaled Agile Framework enterprise
OHEP Office of Home Energy Programs IV&V Independent Validation & Verification SDR Shared Data Repository
CJAMS
Child, Juvenile, and Adult Management
System
LDSS Local Departments of Social Services SNAP Supplemental Nutrition Assistance Program
COTS Commercial off the Shelf MAGI Modified Adjusted Gross Income SSA Social Services Administration
CSS Child Support Services MARS-E Minimum Acceptable Risk Standards for Exchanges TNAF Temporary Assistance for Needy Families
DB Database Max APTC Maximum Advance Premium Tax Credit VAH Verification of Annual Household Income
DHS Department of Human Services MDM Master Data Management VPN Virtual Private Network
DRS Designation Renewal System MEC Minimum Essential Coverage
E&E Eligibility and Enrollment MHBE Maryland Health Benefit Exchange
EBT/
EFT
Electronics Benefits Transfer/Electronic Funds
Transfer
MMIS /
DHMH
Maryland Medicaid Information
System/Department of Health and Mental Hygiene
ECM Enterprise Content Management MoCo Montgomery County
ECMS Enterprise Content Management System MORA Maryland Office for Refugees and Asylees
Glossary
30