New company HR system has me worried?

Soldato
Joined
30 Sep 2005
Posts
16,549
We have tendered for a new company HR system which is to be outsourced and externally managed.

I've not had anything to do with the project so far, but just been asked to cast my eye over the proposal.

I'm a bit worried to be honest. It looks like the HR software runs on windows server, connected to a windows SQL server. Access to be done over RDS. This strikes me as being a bit year 2000. I've nothing against windows at all, don't get me wrong. Just seems very strange our users are logging in to another domain over RDS to access the HR system.

Surely these days the backend is stuck on azure/aws app and storage pools and users just connect in via a browser.

Maybe this is the norm? just strikes me as being a bit odd is all.

If this is what it is, we might as well host it ourselves.
 
Soldato
Joined
21 Jul 2005
Posts
20,033
Location
Officially least sunny location -Ronskistats
Yes, HR systems suck from what I gather. Our work system is definitely 2000, it got an 'upgrade' recently by the third party and still looks very 2000 lol.

It is however all cloud based so not sure teleporting back to self hosted servers and windows stuff unless your own company requirements has forced that tbf.
 
Soldato
OP
Joined
30 Sep 2005
Posts
16,549
A tender for a system that relies on IT, carried out and awarded without IT involvement... this sounds very public sector.

it is :D

It does make me wonder considering we already have our own decent infrastructure with RDS (inc MFA on it), why we don't host the damn thing ourselves.

The document even had pages all about windows updates and when they rebooted the servers. It all seemed very strange indeed.
 
Soldato
OP
Joined
30 Sep 2005
Posts
16,549
ok, so small update this morning already. Despite my email yesterday, the contract has just been signed and I have to now get involved to ensure it's all ok.
 
Soldato
Joined
29 Jul 2011
Posts
15,603
Location
Near Northants / MK
ok, so small update this morning already. Despite my email yesterday, the contract has just been signed and I have to now get involved to ensure it's all ok.
All of our thoughts are with you at this time.

For what it's worth, 99% of HR systems are awful. In fact most things that aren't related to IT are awful, we had a system our accounts used to transfer payroll data without MFA??
 
Soldato
OP
Joined
30 Sep 2005
Posts
16,549
All of our thoughts are with you at this time.

For what it's worth, 99% of HR systems are awful. In fact most things that aren't related to IT are awful, we had a system our accounts used to transfer payroll data without MFA??

our finance system runs on JAVA 6. They won't upgrade it either.
 
Permabanned
Joined
9 Aug 2008
Posts
35,707
ok, so small update this morning already. Despite my email yesterday, the contract has just been signed and I have to now get involved to ensure it's all ok.

Just smile, nod your head like a church hill nodding dog and finish the job. You wasn't the one who agreed to it and signed it off.

At this point you find it's just plain RDP exposed to the entire Internet...

I hope it's not.
 
Man of Honour
Joined
4 Nov 2002
Posts
15,508
Location
West Berkshire
As others have said, RDP and/or Citrix are still very common even in large enterprises, so nothing about this surprises me in the public sector. That's far from the worst of it though - I know of at least one office building that was, until a few years ago, reliant on Windows 3.1 for a building management system. Java didn't even exist back then!
 
Associate
Joined
24 May 2011
Posts
208
nothing new, I know one major financial institute who provide access to a full desktop on a server (via Citrix VDA) to run applications.
 
Back
Top Bottom