Identity Management Resume
Braintree, MA
SUMMARY:
- Information Technology and Security professional with over 11 + years of experience in architecting and deploying Identity Management, LDAP Directories, Single/Reduced Sign - On (SSO), Provisioning and Provisioning/Identity Workflows, Access Management, RBAC (Role-Based Access Control), Compliance and Auditing Technologies, Federated Identity/Federation, Enterprise System Architecture, Security Infrastructure Design, Authentication and Authorization technologies.
- Extensive experience in architecting, installation, configuration, deployment, troubleshooting, implementing and supporting Identity and Access management projects comprised of Oracle Identity Manager (OIM), Oracle Identity Federation, Oracle Adaptive Access Manager, Oracle Service Bus (OSB), Oracle Identity Analytics (OIA)/Sun Role Manager (SRM), Sun Identity Manager (SIM), LDAP directory servers like Active Directory (AD), Active Directory Application Mode (ADAM), Exchange, Oracle Internet Directory (OID), Novell eDirectory, ODSEE, Sun ONE Directory Server, Oracle e-Business Suite, Unix-SSH, Remedy User & Ticket Management, Confidential .
- Solid experience in architecting, installation, configuration and implementing Identity and Access Management solutions using Oracle Identity Manager 11g R1/R2 X.X.X and 10g, Oracle Access Manager 11g R1/R2 X.X.X and 10g, Sun Identity Manager, Oracle Service Bus, OpenSSO specializing in multi-tier and client/server architectures.
- Proven expertise in Federation using SAML 2.0, SAML 1.1, WS-Federation, Kerberos Authentication and SNC, Oracle Identity Federation, Oracle Virtual Directory and Oracle Internet Directory.
- Having experience in AWS (Amazon Web Services) POCs.
- Experienced in AWS IAM(Identity & Access Management).
- Good implementation knowledge in AWS EC2, VPC, S3, RDS, Migrations.
- Integrated AWS environments with OAM.
- Created AWS environments specific to IAM.
- Having very good knowledge in AWS environment Migrations.
- Real Time Monitoring and Metrics collection using Oracle Enterprise Manager (OEM) 11g.
- Setting up secure connection to all web applications HTTPS/HTTP.
- Performed Vulnerability Analysis - Network Vulnerability Scanning, Advanced Web Application Scanning, Detecting Rogue Access Points, Auditing and Security Testing
- Experience in developing custom connectors including reconciliations using OIM 11g API's for user management and OIM 11g custom de-provisioning connector which disables Employees Badge access real time with control triggered by the HR department.
- Implemented changes for Performance Tuning of OID
- Developed and Implemented OIM 11g event handlers, schedule tasks, SOA approval work flows, data validators, Self-service API to be used in custom application, UI customization for help desk roles, customized notifications etc.
- Performed installation, Administration and Maintenance of Web logic application servers, fusion middleware 11g software, OID, multiple web gates.
- Generate Authentication Success/Failure Reports for individual Webgate which is not an OOTB feature.
- Integrated OAM with Apache/IHS/Windows environments.
- Integrated Federation applications using IDP(Identity Provider) & SP(Service Provider)
- Six Sigma greenbelt certified professional.
- Implement SSO(Single sign on) using OKTA.
- Worked extensively on OAM Unsolicited login.
- ITIL V3 foundation certified professional.
- Exposure to IBM Team track tool for deployments.
- Ability to manage offshore and onshore teams and co-ordinate client’s interactions to resolve issues and conflicts.
- Involved in RFP, Project estimations, requirement analysis and gathering.
- Possess good analytical, problem solving skills, ability to meet deadlines, and work on multiple projects.
- Good in implementing quality process in projects Experience with Systems development Life cycle and
- Methodology, participated in SEI-CMMI Level-5 for the project as a Project Leader.
- Having extensive knowledge in using PMP processes in the project execution.
- Initiated & completed 11g Webgate upgrade project for 40 applications with various environments Apache, IHS, Windows and Oracle.
- Implemented Authorization Rule based access through Single Sign on for 40 applications.
- Suggested customers for Federation or Webgate for SSO integration based on the requirement.
SKILL SET:
Identity Management & Security: Oracle Access Manager 11gR1/11.1.2.x and 10g, Oracle Identity Manager 11g R1/R2 11.1.2.x and 10g, Sun Identity Manager, Centrify, Oracle Service Bus, Novell Identity Manager, Oracle Identity Federation, OpenSSO, SAML 2.0, SSO, PKI, Cryptography - Password Encryption & Decryption Techniques, Image Passwords, Image Steganography
LDAP Directories: Microsoft Active Directory, MS Exchange, Novell eDirectory, Sun One Directory Server, Oracle Internet Directory (OID), Oracle Unified Directory (OUD), ODSEE, ICF, Oracle Virtual Directory (OVD), libOVD, ICF - Connector Server, eBusiness Suite, Unix-SSH, Remedy User Management & Ticket Management
Remote Access: Juniper SSL VPN concentrators
Web Technologies: J2EE, Java, JSP, Servlets, HTML, XML, XSL, XSLT, JavaScript, C#, SharePoint, SOA, Web Services, Jdeveloper, Eclipse, Netbeans
Application & Web servers: WebLogic Application Server, Oracle HTTP Server, Apache Web Server, IBM WebSphere Application Server, JBOSS, Microsoft IIS, Sun Java App Server, Oracle webgate
Operating Systems: Solaris, Windows 98/NT/2000/XP, UNIX
Databases: Oracle 7.x/8i/9i/11g/12c, SQL Server, MySQL, MS Access
Identity Cloud: Oracle Identity cloud and Okta, AWS IAM
PROFESSIONAL EXPERIENCE:
Confidential, Braintree, MAIdentity Management
Responsibilities:
- Architect and implementer for Oracle suite of products
- Upgraded OAM11gR2PS2 & OIM 11gR2 PS2 environment to OAM11gr2 PS3 & OIM 11gr2 PS3, OID, OVD, OVD, OHS.
- Designed and Implemented disaster recovery process and the environment.
- Provided support for around 10 environments
- Installed and configured multiple web gates to integrate around 26 external applications with IDM
- Developed and implemented the Active-Active Multi Data Center strategy OAM 11gR2 PS2 POC setup
- Involved in de-commissioning IMAS system from IDM
- Involved in migrating all environments from one data center (Terramark) to another (HP)
- Cloned one environment to another in a very short span of time using T2P process.
- Use federation services with OAM to provide SSO to applications
- Integrated applications (partners) using IDP (Identity Provider) & SP(Service Provider)
- Installed, configured and upgraded OHS, Oracle webgate, OIM, OAM and integrated them using libOVD in a clustered mode on Linux environment on High availability with weblogic server.
- Developed and implemented custom ICF framework connector to provision and de-provision accounts to AIF and WAAS databases.
- Developed and implemented SOA workflow for new business requirements
- Developed custom scheduled jobs, event handlers and task adapter
- Developed restful services using OIM API's.
- Developed custom OAM plugins using ASDK APIs.
- Developed and implemented custom UI for helpdesk using OIM api with SSO
- Implemented procedures for development and deployment of password management processes.
- Developed and configured Application domains, OAM authorization and authentication policies to protect resources.
- Developing workflows for approval and manual provisioning using APIs
- Reconciling complex Multi-valued Data, deleted records, Transformation and validation of account data, Lookup definitions used during connector operations, Main configuration Lookup Definition for additional configuration entries
- Involved in implementing unsolicited logins
- Developed custom email notifications for the events of User created/modified/deleted on target systems.
- Successfully implemented AD2SAP Password Synchronization solution in Tesoro along with the implementation of OIM, OAM and OIF.
- Involved in maintaining both the Oracle Identity Management (IDM) Suite and custom features built to enhance the Oracle IDM product suite.
- Applied performance tuning for all servers to improve the performance
- Changing the SAML parameters digital signature based on the Partner requirement.
- Worked on fixing Security vulnerabilities.
- Troubleshoot Partners integration with Federation.
- Installed, configured and upgraded OAM, and migrated OAM configuration and policy data and updated web gate plugins
- OIM integration with trusted source, multiple feeds from HR Systems
- Analyze on-going user requirements, problems to remediate and thereby enhance existing systems
- Enabling changes in access based on changes in users' roles to minimize the disruptive effects of change on user productivity
Environment: Oracle Access Manager 11gR2PS2/PS3, Oracle Identity Manager 11gR2PS2/PS3, Red Hat, Linux, Web Logic 11g, SOA Suite, OVD, OHS,OUD, Webgate, Oracle Internet Directory(OID), Oracle Directory Server Enterprise Edition(ODSEE), Oracle e-Business Suite (EBS), Microsoft Active Directory (MS-AD), Windows Server 2008R2
Confidential, Holmdel, NJIdentity Management Consultant
Responsibilities:
- Architecting and the Implementation of entire Application security infrastructure in LCRA which includes Oracle IAM Suite 11g and then migration of the entire Oracle stack to 11g R2 integrating with PeopleSoft, OVD, OID, and Active Directory, Exchange.
- Configured IDM product to talk to three separate Authoritative PeopleSoft sources for all identities.
- Developed custom OID and Oracle Access Manager plug-ins.
- OIM 11g custom de-provisioning connector which disables Employees Badge access real time with control triggered by the HR department.
- Implemented Enterprise Digital Rights Management (EDMS) which involves Data Classification and Data Security and Password Management in LCRA.
- Performed Security Risk Assessments (SRA) and Vulnerability Assessments and Pen Testing.
- Designed and implemented End User Self Registration Interface.
- Designed and implemented Delegated Administration Interface using Spring MVC framework
- Administration of Oracle Access Manager (Webgate creation and policy setup for applications)
- Created Users, Access Policies, Authorization policies and custom attributes
- Setup and configured OAM and web gate to protected in-house applications.
- OIM was configured to talk to three separate Authoritative PeopleSoft sources for all identities.
- Oracle Identity Federation and OAM implementation (Identity Provider IdP) with partner applications with Ping Identity Federation on the Service Provider (SP) End with SAML 2.0 as the protocol.
- Developed and implemented custom flat file connector using OIM 11g API's for user management and implemented custom remedy connectors including recon job.
- OIM 11g and SOA implementation and BPEL Human Workflow implementation.
- Performed Security Risk Assessments (SRA) and Vulnerability Assessments and Pen Testing.
- Implemented the WebGate tuning for the integrated applications.
- Tuned the performance with respect to JVM heap args, and OS Parameters and network parameters.
- Perform critical Production releases and migration activities which include OAM policy changes, web-gate configurations and OIF SAML integrations
- Provided the support for the OAM and OIM integrated environment.
- Installed and configured Identity Management Suite (Oracle Access Manager, Oracle HTTP Server) in cluster level.
Environment: Oracle 11gR2PS2, Red Hat, Linux. Web Logic 11g, SOA Suite, Oracle Service Bus (OSB), Oracle Access Manager (OAM 11gR2PS2), Oracle Identity Manager (OIM) 11gR2PS2, Oracle Internet Directory (OID), Oracle Directory Server Enterprise Edition(ODSEE), Oracle e-Business Suite (EBS), Microsoft Active Directory (MS-AD), Windows Server 2008R2, Java, JDBC, Java servlets.
ConfidentialSr. Identity Management Consultant
Responsibilities:
- Involved in requirement gathering and design phase of the project.
- Customized end user interface for the end user administrative screen.
- Supervised the creation of the Identity Connectors open source project.
- Led the SIM team that built the access certification / attestation function.
- Guided the team that replaced a home-grown Java Swing application for creating and managing customizations with NetBeans and Eclipse IDE plugins. The result was a full function IDE for SIM solution development and debugging.
- Ran the SIM 7.1.1 and 8.0 product releases.
- As a first-level manager, drove technical and strategic direction for SIM.
- Implemented User On-boarding, User Self-requests with Approval Workflows.
- Delegated administrative authorization model and UI for the Service Provide Edition that provided a high-performance, high-scale version of SIM
- Involved in Designing a common component workflow to Integrate Base access in IDM with difference components like request access matrix, approval matrix & Decision matrix.
- Experienced in implementing Custom workflows, role based access controls in Sun IDM frame work using XPRESS language
- Developed applications using Vignette Collaboration and VCMS Technologies.
- Changed UI look and feel of the applications using Vignette Collaboration
Environment: Sun Access Manager, Sun Identity Manager, SVN, Weblogic, Apache Axis2, Java, J2EE, JDBC, Java servlets.