Identity And Access Management Lead Resume
Deerfield, IL
SUMMARY:
- Identity and Access Management professional over 9+ years of experience in development, engineering, implementation and administration of products such as CA SiteMinder, PingFederate, IBM Security Access Manager, Oracle Identity and Access Manager, PingID and SailPoint IdentityIQ
- Experienced in working with Privileged Account/Access Management (PAM) solutions for password and session management, privilege management and SSH key management
- Experience working with Oracle Privileged Account Manager (OPAM) to administer and provide better security for compliance regulations
- Experience in installation and configuration of Oracle Access Manager (OAM) 11g R2 and OAM 11g R3 infrastructure with High - availability requirements for Load Handling, Connection Management and Recovery
- Configured the OAM 11gR2 PS3 in Multi Data Center topology and implemented Automated Policy Synchronization in both Active-Active and Active-Passive
- Experienced in troubleshooting problems encountered in the Upgrade, Patching and Integration of Oracle Identity Management suite components
- Experience in Single Sign-On implementation with open protocols such as SAML 2.0 and OAuth
- Experience in Multi Factor Authentication solution implementation for web applications, network devices and Unix machines
- Integration capability with Oracle WebLogic, IBM WebSphere, Tomcat and IIS application servers
- Good Team Player with effective communication and collaborative skills and very good understanding of document management, record management and compliance solutions
- Able to work both independently and in a team-based atmosphere while being self-motivated and effective at multitasking.
- Strong knowledge of Software Development Life Cycle (SDLC) as well as Software Testing Life Cycle (STLC), Bug life Cycle and testing Methodologies like Waterfall and Agile.
- Experience in designing the logical and physical architecture as per the industry standard and system requirements
TECHNICAL SKILLS:
Development Tools: Eclipse
Operating System: Windows 7/Vista/XP/Server 2003/98. RHEL 5/6/7.x
Programming Languages: Java, C
.NET Technologies: .NET Framework, ASP .NET (OOP’s, Delegates, Windows Services,.NET Remoting Assemblies(GAC), ADO .NET, Web Services(WSDL, REST, SOAP).
XML: XML 1.0, XSL, XPath, SOAP, XSD, SAML.
Database: SQL/PL SQL, SQL Server 2008, MS Access.
Web Technologies: HTML, JavaScript, Ajax, XHTML, XML, XSLT, DTD, Schema.
Relevant Course Work: Unified Modelling Language, Advanced UNIX System Programming.
Networking: TCP/IP, OSI model, IP addressing and Sub Netting.
IAM: Sailpoint IdentityIQ, IdentityMinder, Oracle Identity & Access Manager, CASiteMinder, PingFederate, PingID
PROFESSIONAL EXPERIENCE:
Confidential, Deerfield, IL
Identity and Access Management Lead
Responsibilities:
- Provide high availability design and system specification architecture for Oracle Privileged Account Manager (OPAM) 11g R2 PS3 platform
- Implement Password and Usage policies to governs the password's lifecycle and to constrain and enforce which user tasks for the privileged session
- Provide a high-availability solution and upgrade/patch Oracle Access Manager (OAM) Infrastructure from 11g R2 PS2 to 11g R2 PS3 in Active-Passive mode
- On-board and Integrate additional business applications into OIM for centralized management and OAM for single sign-on, authorization and audit functions
- Integrated Oracle Access Manger with Ping Federate to bridge the SSO gap between applications protected on either system.
- Designing and creating of access policies to secure the web applications to address security vulnerabilities
- Provided complex solutions to applications using OAM and Ping Federate to address Single Sign On challenges across different infrastructures
- Upgrade Oracle HTTP Server (OHS) from 11.1.1.7 to 11.1.1.9 WebGate to 11.1.2.3 with latest bundle patch
- Involved in requirements gathering, development, integrating and testing to enable SSO for the desired applications.
- Upgraded PingFederate Infrastructure from version 8.0.2 to 8.4.3
- Integrated multiple internal and SaaS based applications using SAML 2.0, SAML 1.1, WSFederation and OAuth 2.0 protocols
- Implemented UI changes with HTML, Java Script and CSS and developed new templates for the login page depending on the business requirements
- Implement PingID solution for Multi Factor Authentication (MFA) required with OTP, Voice, Email, FingerPrint, FaceID and Yubikey
- MFA implementation for Cisco Switches, Routers, Cisco VPN, Horizon VDI, Unix and other critical PCI devices
- Implement MFA to Outlook Thick Client by enabling Modern Authentication on O365 environment
- Configuration of PingFederate RADIUS server for the authentication to Routers, Switches, Loadbalancer, Firewall and VPN for Payment Card Industry (PCI) compliance
- Hands on experience with IIS, IBM IHS, Apache, Sun One Web servers and WebLogic and WebSphere Application servers in Identity and access management environment.
- Experience in using Unix/Linux utilities for analysing logs, and trouble-shooting the applications with Application servers and Security/Identity management servers.
- Maintenance of OPAM, OAM, PingFederate and PingID infrastructures
- Product analysis and comparison to schedule a Proof Of Concept for BeyondTrust & CyberArk for an enterprise wide PAM solution
- Migration of applications from OAM to PingFederate
Environment: Oracle Access Manager, Oracle Identity Manager, Oracle Unified Directory, PingFederate, PingID, RHEL 5.x, 6.x and 7.x.
Confidential, Salisbury, NC
Access Management Lead
Responsibilities:
- Analysis of applications configured in TAM 6
- Analysis of WebSEAL instance available in TAM 6
- Creation of standard and virtual junctions in ISAM7 as per the strategy defined for TAM 6
- Import and export of the certificates between WebSEAL instance and backend servers for secure communication
- Implemented SPNEGO for Kerberos based authentication
- Analysis of login ID's to implement Kerberos authentication/DSSO for applications configured in TAM6
Environment: TAM 6.0, ISAM 7.0, Microsoft Project, Service-now, AIX 7.1.
Confidential, Chicago, IL
OAM Consultant/Architect
Responsibilities:
- Provide high availability design and system specification architecture for OAM 11g R2 PS3 platform
- Provide detailed design document for complete migration of OAM 10g to OAM 11g R2 PS3
- Installation and configuration of Oracle Access Manager 11g R2 PS3
- Migration of Oracle Access Manager 10g to Oracle Access Manager 11g R2 with coexistence enabled between both platforms.
- Deployment of Oracle Access Manager 11g R2 for Multi-Data Center configuration and implementation of Automated Policy Synchronization (APS) to sync policy data from Master to Clone MDC’s in OAM 11g R2
- Integration of Oracle Access Manager 11g R2 to RSA Authentication Manager 7.1 SP2/8.x for SecurID authentication, Next Token and New Pin scenario’s
- Development of Custom authentication plugin's to support business requirements for fraud detection and strong authentication
- Installation and configuration of Apache 2.2/2.4 webgates with Oracle Access Manager 11gR2 to protect resources/application
- Applied Webgate and OAM patches using OPatch
- Implementation of multiple step /level authentication schemes
- Implementation of failover and disaster recovery strategies for OAM 11g R2
- Experience in configuring connectors for Microsoft exchange, PeopleSoft and Oracle Identity Directory
- Knowledge of BIG IP, DNS, load-balancing and firewall implementations
- Knowledge of Service-Now for requesting and tracking SRQ and CRQ
Environment: Oracle WebLogic Server, Oracle HTTP Server, Oracle Database, Linux, Apache 2.2, Oracle Exadata.
Confidential, Buffalo, NY
IAM Consultant
Responsibilities:
- Installed, configured and administered CA Directory r12SP14 on Red Hat Linux 6.5 for user directory and SiteMinder policy store.
- Experience in DSA creation and management for user store and policy store
- Experience in defining access controls to protect data from unauthorized access
- Installed, configured and administered CA SiteMinder r12.52SP1 on Red Hat Linux 6.5
- Installed, configured and administered CA Secure Proxy Server r12.52SP1 on Red Hat Linux 6.5 for federation
- Experience with implementing Federation with external and internal partners
- Installed, configured and administered CA IdentityMinder 12.6.3 on Red Hat Linux 6.5 with WAS 8.5.5
- User Self-Registration and Forgot Password with Question and Answer
- Defining Admin Task and Role for CSR and Bank Administrators
- Experience with identity policies and policy express
- Configuration and execution snapshot reports
- Experince in configuring PeopleSoft, MS SQL Server and MS Exchange connectors
- Experience in installation and configuration of CA AuthMinder, CA Report Server (Business Intelligence), CA Identity Portal (SIGMA)
- Involved in troubleshooting session with support teams
Environment: CA SiteMinder, CA Secure Proxy Server, CA IdentityMinder, CA AuthMinder/RiskMinder, CA Business Intelligence, Linux 6.5, WebSphere 7.0/8.5.5, Tomcat, Apache, Jboss, XML, IIS, Web Services, Oracle, MS Office 2007
Confidential, Houston, TX
SiteMinder/SailPoint Consultant
Responsibilities:
- Build and maintain effective relationships with external vendors and partners
- Facilitate communication and foster a positive relationship with other business units
- Develop and implement SharePoint claims based Single Sign-On (SSO) using an eDirectory based LDAP directory
- Single Sign-On (SSO) implementations using technologies such as CA SiteMinder, CA Federation Services, SAML, WS-Federation, Ping Federate and ADFS
- Provide technical direction for SiteMinder clients
- Design, document and implement SSO for SharePoint Foundation/Enterprise 2010
- Provide detailed implementation steps for middleware administrators
- Document essential components and checklists for successful SSO implementations
- Assist in the development of other non-security related SharePoint components, features, etc.
- Provided suggestions to existing login process
- Installed Siteminder Web agents and configured across various Web Servers (Apache, IBM Http, IIS, Sun One etc.)
- Involved in troubleshooting of SiteMinder related issues for the SSO enabled applications
- Involved in the Help Desk role for the issues related to SSO SharePoint and Non-SharePoint applications
Environment: CA SiteMinder, SDL Tridion, SharePoint Server 2010, SharePoint Designer 2007, SDL Tridion 2009, Windows Work Flow, JQuery, VMware, AJAX, Visual Studio 2010,C#, ASP.NET 3.5, XML, IIS, Web Services, SQL Server 2008,Oracle 10g,Active directory, MS Office 2007, Novell NETIQ, Sailpoint IdenttiyIQ.
ADP, Camarillo, CA
SharePoint/SiteMinder Consultant
Responsibilities:
- Involved in Requirement gatherings from various departments for the Project
- Implemented and Configured SharePoint 2007 Intranet for Document Management and Collaboration
- Created and Supported Site Collections, Sub-Sites and Personal Sites (My Site
- Created a Central Document Repository to manage the documents of different releases
- Migrated Content from different databases and file servers to SharePoint Central Repository, which included Content Type and Site Columns
- Implemented combined solution of SharePoint Designer Workflow and Information Management Policy to inform users that content needs to be reviewed before moving to Repository
- Involved in configuring CA SiteMinder Federation services (SAML) to and from the ADP portal
- Involved in implementing Single Sign-On features to the Intranet applications
- Involved in migration of SiteMinder Policy Server from 6.0 SP5 to R12.0 version.
- Experience with Installation and Configuration of SharePoint Server 2010
Environment: MOSS 2007, SharePoint Designer 2007, Windows Work Flow, JQuery, VMware, AJAX, Visual Studio 2008,C#, ASP.NET 3.5, XML, IIS, Web Services, SQL Server 2005,Oracle 10g,Active directory, MS Office 2007
Confidential, Frederick, MD
SharePoint Developer
Responsibilities:
- Involved in development of Utilities required for the SharePoint Site to reduce redundant data entry and ensure the consistency, accuracy and timeliness of subcontract information. (Remove Orphaned InfoPath Columns, Attach a Workflow to List or Form Library)
- Created Custom Web Parts, AJAX Web parts, Application Pages, Features, Event Handlers, Custom Content types, Site Templates, Site Columns, Document Libraries, Lists, List Views, and Content Type
- Created Multiple-purpose InfoPath form and published it in to SharePoint Forms Library
- Created Custom Features, Event Handlers, Custom Content types, Site Templates, Site Columns, Document Libraries, Lists, List Views, and Content Type
- Enhanced Multiple InfoPath forms to reach Customer requirements
- Worked on different Windows Application to update the List, List definitions and Content types
- Worked on Alert and Notifications to notify the users of eSub about the approval of a Payment Term at the level of System, Project and Subcontract
- Deployed Simple & Connectable Web Parts by using C# and SharePoint Object Model. Implemented AJAX Web parts to avoid whole page refreshing
- Designed and developed the screens in Microsoft InfoPath 2007 form
- Worked with Visual Studio .Net with C# and Share Point Object Model for addition & customization of Portal.
- Created On Boarding Project List to keep track of the various project requests to the team
- Created Workflows to process the life cycle of the “On-Boarding Project Process”
- Worked on Customizable Workflow to meet Project/Subcontract constrains
Environment: MOSS 2007, SharePoint Designer 2007, Microsoft InfoPath 2007, Windows Work Flow, VMware, AJAX, Visual Studio 2008,C#, ASP.NET 3.5, XML, IIS, Web Services, SQL Server 2005,Oracle 10g,Active directory, MS Office 2007.
Confidential
IT Engineer
Responsibilities:
- Understanding the terminologies of WAS & SharePoint
- Understanding the basics of Unix/Linux server environments
- Installing and configuring IBM Websphere application & HTTP servers
- Deployed Java applications and helped troubleshooting
- Worked with Visual Studio .Net with C# and Share Point Object Model for addition & customization of Portal
- Deployed Simple & Connectable Web Parts by using C# and SharePoint Object Model
Environment: IBM WAS 7.0, HTTP Server, OOPS, Java. MS SharePoint 2007, IIS