Step 1: Account Provisioning
Employee accounts are managed via Namely HRIS. It will flow into Okta as an import. For consultants, refer to Contractor KB.
Type | Steps |
Employee | Okta - (https://mirumpharma.okta.com) - Check Import form Namely Application and Create New User from Import - Go to user profile and update info: > User Type = Employee > Organization = Mirum Pharmaceuticals > UL Home Organization = Internal > Office Location = Foster City or Remote or Basel (if European) - User will be added to Okta group > O365 via “User Type = Employee”
Lookup User in Okta Directory: >Title = Match what is in form, leave blank in Okta if blank in form >Display name = FirstName LastName (Add (C) after name) >Mobile Phone = Mobile Phone # >User Type = Contractor or Consultant >UL Home Organization = Internal >Manager Email = Lookup Manager’s email address >Department = User Manager’s Department value >GxP=Set according to new hire form >End Date=End Date listed on form O365 - (https://admin.microsoft.com) Add to AD Group(s):
>DO NOT reset on next login.
|
Consultant Contractor
+ FTE
| DO NOT SET MIRUM AS THE ORGANIZATION FOR CONTRACTOR/CONSULTANTS Okta - (https://mirumpharma.okta.com) -Directory > Add Person >First Name, Last Name = First name, Last name >User Name / Primary Email = first.last@mirumpharma.com >Secondary Email = Personal Email >Ignore Groups (will be automatically assigned based on profile) >Password = Set by User (uncheck send activation now) >Send Activation Email = Leave blank, need email to be created first
Add to Okta Groups If ONLY email is needed: >Add to “APP – M365 – Business Basic License” IF MIRUM Laptop is provided: >Add to "App - M365 business standard, intune, defender in Okta
Once M365 account is created, then activate Okta account. **Do NOT add to any Mirum specific ALL DL's
>Send Credentials to User’s personal email and CC manager >Attach Consultant Getting Started onboarding Guide from KB
|
***When assigning Applications to users DO NOT assign NetSuite, Edetek or Midas for applications or groups. These have to be assigned to Sam or Chrislyn.
Step 2: Setup new computer for user:
- Login with M365 Credentials
- Enable local Administrator (lusrmgr.msc) and disable all other local accounts.
- Install Software Suite in C:\ODT\
- Adobe Acrobat Pro, Zoom, Box Drive
- Pin Adobe, Zoom, Box, Chrome, Teams, Office Apps) to Taskbar
- Log into OneDrive for user
- Remove the “OneDrive” Namespace from Explorer (duplicate) via RegEdit. We use “One Drive – Mirum Pharmacetuicals”
- Computer\HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace
- Remove the “OneDrive” Namespace from Explorer (duplicate) via RegEdit. We use “One Drive – Mirum Pharmacetuicals”
- Install Windows Updates and Lenovo updates via Lenovo Vantage.
- Hide Task View and Cortana from taskbar. Reduce search bar to icon.
- Set default apps Adobe (PDF), Chrome (Browser).
- Under Windows Update > Advance Options > Enable “Receive updates for other Microsoft products”
- Launch Realtek Audio Console from Start Menu > Click on “Microphone Array” > Enable Voice Recognition
Step 3: Finish setup and ship out computer
- Set password back to M1rum2024! and force user to update password on next sign-on
- Remove MFA Excluded Active Directory group from user.