Centralise SSO IdP fingerprints, PEPFAR program toggles, default FHIR CapabilityStatement publishing cadence, API key rotation windows, watermarking exports from Reports centre, alerting channels for SOC (bridge numbers) and CIO SMS digests routed through County desks. Compliance policy versions reconcile with Compliance dashboard attestations.
Privileged changes roll into IAM recert cycles.
Routing matrix ties executive SMS to Steering quorum, county failover SMS to CIO registry in County management, patient transparency emails co-branded via UHDS + MoH crest.
Danger zone (simulated)
Rolling national maintenance window broadcast + emergency read-only federation.
Operational evidence of Settings changes streamed to Audit logs bucket SETTINGS-* with Merkle checkpoints reviewed by Compliance.