Siteminder / Idam/ Ldap Security Analyst Resume
SUMMARY
- Over Seven plus years of experience in Installation, Configuration, Development, Deployment, Administration, Trouble Shooting and Migrating of CA/Netegrity SiteMinder/IDM, Sun One Directory Server, Web security.
- Involved in migration and implementing Security and Infrastructure solutions using Netegrity SiteMinder 5.x to 6.0, 6.0 to 12.x and Sun ONE Directory Server (LDAP) 5.x/6.x.
- Experience in implementation of CA Identity Manager Solution from scratch.
- Strong knowledge regarding delegation of the management of users and application access using CA Identity Manager R12.x.
- Experience in setting up SSO environments. Integrated SSO products such as Netegrity SiteMinder and Sun One LDAP with existing enterprise applications and middleware applications.
- Experience in implementation of Security Management tools in enterprise wide Applications to achieve Authentication, Authorization and Accountability
- Expertise in implementing Federation SAML services to SSO into third party vendors.
- Expertise in analyzing the logs (trace logs, logs) and Trouble Shooting issues in Integration of other applications usingCA SiteMinder (Access Management) and Identity Management toolsalong with LDAP and Web - server agents
- Experience in installing, configuring SiteMinder policy server, Web agents, Sun One Directory server (LDAP) and various Web & Application servers.
- Experience in Administrating SunOne directory server and expertise in upgrading SunOne Directory Server version 5.2 to 6.0 and 6.0 to 6.3 in production environment
- Hands on Experience in integrating WebLogic Portal Application Server driven Portal with CA Siteminder.
- Experience in setting up SSO environments. Integrated SSO products such as Netegrity SiteMinder and Sun One LDAP with existing enterprise applications and middleware applications.
- Expertise with IIS, IHS, Apache, Sun One Web servers in Identity and access management environment
- Used SiteMinder tools like smobjexport, smobjimport to export and import Policy Stores respectively, smreg to change the SiteMinder super user password
- 24/7 administration in a web hosting organization providing server and application support (Netscape/iPlanet/SunOne Web, Messaging, Admin, Directory, Proxy, Application)
- Involved in the Weblogic Upgrade migration from 8.0 to 10.3
- Excellent knowledge about thefunctionality of the SiteMindercomponents and Identity manager components.
- Strong experience with different Web Servers and Application Server Security and Application deployments.
- Expertise in configuring and troubleshooting Webservers like Apache 2.0/2.2, IHS 6.1/7.0, IIS v6.0/7.5, iPlanet 6.0, Lotus Domino 8.0 and Application servers like Websphere and Weblogic.
- Strong analytical, problem solving, communication skills and a good team player.
TECHNICAL SKILLS
IDM tools: SiteMinder(4.x/5.x/6.x),IdentityManager(8.x/12.x),TransactionMinder 6.x
Products: CA SiteMinder Access Manager
Databases: Oracle 11g/10g/9i, SQL Server 2008/2005/2000/7.0
Webservers: IHS 6.1/7.0, SunOne 5.1/6.1, IIS 5.0/6.0/7.5, Apache 2.x, Lotus Domino 8.0
Application Server: IBM Websphere Portal 6.0/6.1, WebSphere 4.x/5.x/6.x/7.0, Tomcat 4.x/5.x., Oracle Weblogic Server 8.0/10.3
Directory Server: iPlanet/SunOne directory server 5.x, Sun DSEE 6.3/6.3.1, Microsoft Active Directory, IBM-Tivoli Directory Server.
Languages: C, C#,SQL
PROFESSIONAL EXPERIENCE
Confidential
Siteminder / IDAM/ LDAP Security Analyst
Responsibilities:
- Installed, configured and maintained CA SiteMinder Policy Server5.X/6.X/12.X, and Sun ONE Directory Server 6.3on Solaris, Windows platforms.
- Configured CA Identity manager for user management and application access according to role based entitlements.
- Upgraded CA Identity Manager from 8.x to 12.x, CA Siteminder 6.x to 12.x.
- Configured and integrated CA RCM with CA Identity manager.
- Integrated CA Siteminder with CA IDM for advanced authentication, directory mapping and password policies.
- Experience in installing, configuring SiteMinder policy server, Web agents for IBM Http Server and Websphere TAI agents.
- Worked on ERP /WebAS agent integration with SAP ITS and Web application server.
- Implement Federation SAML1.0/2.0servicesto SSO into third party vendors like Cornerstone, Empire Blue, and Hallmark.
- Worked on LDAP authentication like assigning roles to users, creation of test user accounts in Stage and Production environments.
- Installation of SSL certificates on Apache, IIS, WebLogic& Websphere servers.
- Worked on proofs of concept to integrate CA SiteMinder with various other Identity Management software
- Installed and configured SiteMinder for Documentum shared environment and performed troubleshooting on known issues.
- Worked extensively on creating Custom Authentication schemes as per the requirement.
- Expertise in Configuring CA SiteMinder policy server, creating agents, ACOs,Domains, Rules, Responses and Policies, Policy Server maintenance, SSO call clearance, Web Agent & Application server agent installations, trouble shooting in all the environments.
- Configured user impersonation feature to enable Customer service department to provide a better service to the business clients.
- Integrated SiteMinder to Lotus Domino web server for Advisory application.
- Hands on experience with configuring LDAP initiated and SP initiated SAML profiles with different bindings like POST, Artifact, and Redirect as per the custom business and security requirements.
- Creating Open SSL Certificates and using the same for Federation of external Services to achieve the purpose of maintaining confidentiality, message integrity and bilateral Authentication.
- Worked as an Infrastructure Lead for myTaxLink/TaxBridgeApplication.
- Integrated SiteMinder into various IFS/TAX based applications which require Single Sign On.
- Involved in giving training sessions to offshore team.
Environment: JDK 1.4/1.5, J2EE, JDBC, XML, SAML 1.0/2.0, CA SiteMinder 5.X/6.X/12, Sun ONE Directory Server 5.X/6.X, Apache 2.x, Solaris 8/9/10, Windows 2000/2003/2008, WAS 6.1/7.0, IIS 6.0/7.5, Lotus Domino 8.0
Confidential
Siteminder and LDAP Admin
Responsibilities:
- Installed, Configured and Managed Netegrity SiteMinder 6.0
- Migration of policy server from SiteMinder 5.5 to 6.0 for Load balancing, and failover configuration of the Policy store.
- ConfiguredCA Identity Managerworkflows for user provisioning.
- Worked on CA Identity Managerperformance to optimize roles,tasks and identity policies.
- AutomatedIdentiy Management tasks such as assigning roles, modifying user profile tasks and group membership.
- Experience in trouble-shooting the issues by analyzing the trace and TAI logs.
- Configured IBM HTTP Web server, SiteMinder to work with WAS.
- Worked on OneView Monitor statistics, error corrections for possible problems, reviewed SNMP events for possible problems and worked on the status of Siteminder P1 tickets.
- Worked on CA Siteminder Platform Support Matrix for changes.
- Worked on webagent.conf, sm.registry, etc.configuration files on SiteMinder.
- Reviewed and updated Siteminder policies and procedures.
- Worked on Siteminder architecture and taken care of changes that are needed based on capacity planning
- Created, Configured and Administered Profiles, Clusters, Nodes and Node Groups for WebSphere Application Server.
- Used One View Monitor in SiteMinder for identifying performance bottlenecks.
- Monitored heartbeats and refresh rates for various components of SiteMinder.
- Experience in creating and maintaining security policies for SiteMinder.
- Configured Node manager for administration of Managed servers.
- Responsible for deploying enterprise applications from Admin console and enabling security using LTPA and LDAP for admin console and application components on AIX.
- Configured SSL for WebSphere Application Server for security reasons.
- Experienced in assisting Web Administrators, LDAP Administrators to determine what the best values for SiteMinder parameters and tune the system to boost SiteMinder performance in the Web Tier, the Application Tier, and the Data Tier.
- Provided training and group presentations on SiteMinder security planning to all employees, using Microsoft Visio and PowerPoint.
- Experience in implementing failover and load balancing schemes between WebAgents and Policy Servers and also between PolicyServers and LDAP.
- Performed user provisioning in Identity Provider(IdP) site Service Provider(SP) site using SAML for SSO
- Experienced in setting up integrated security access to the portal and Single Sign-On.
- Implemented clustering and worked on analyzing the scalability of applications with the help of tools like IBM Tivoli Site Analyzer.
- Used ANT script to automate loading Users and User Groups into Active Directory (LDAP), and XML based EAR/ WAR deployment.
- Responsible for deploying enterprise applications from Admin console and enabling security using LTPA, LDAP for admin console and application components on Windows.
- Updated Latest Fix-pack 6.1.0.13 for AIX.
- Trouble shooting of errors in both Application and JVM, also analyzed heap or core plus error logs
- Involved in setting up JVM tuning parameters and used garbage collection.
- Assembled and deployed the application in production, staging for following change management practices.
- Regularly attended meetings on behalf of Middleware Team & co-ordinate with different teams for task accomplishment.
- Mentor development and support teams involved in problem identification and solving.
Environment: Netegrity SiteMinder 5.x/6.x, Identity Manager 8.1, Web agents 5.x/6x, Websphere 5.x,/ 6.x, Apache 2.x, IIS 5.0/6.0, Sun ONE Directory Server 5.2/6.1, SAML 1.0/2.0, XML, LDAP, Solaris.
Confidential, CT
Siteminder & LDAP Administrator
Responsibilities:
- Installed, Configured and administered SiteMinder and Sun One Directory Server.
- Installation, Configuration and Administration of IBM WebSphere Application Server 5.1 on UNIX platform, Linux.
- Used Site Minder for authenticating the user passwords for the web application.
- Worked with SiteMinder administration for user directories, agents, logs and cache management, agent configuration objects.
- Worked on Configuring the Domains, User directories, Rules, Realms and Policies.
- Worked on Load balancing the SiteMinder for high performance.
- Involved in the Upgradation of SiteMinder Policy Servers from version 5.5 to 6.0 and SiteMinder
- Web Agents from version 5.5 to 6.x
- Installed and configured the LDAP Sun ONE Directory Server. Configured the multi master replication in Sun ONE Directory server.
- Creating OpenSSL Certificates and using the same for Federation of external Services to achieve the purpose of maintaining confidentiality, message integrity and bilateral Authentication.
- Implement Federation SAML services to SSO into third party vendors.
- Develop and execute IDM related test plans. Deliver components to testing and production using the Version Control tool.
- Mentor development and support teams involved in problem identification and solving.
- Created IBM Problem Management Records (PMR) to report WebSphere Application Server problems. Analyzed log files to solve problems using debugging tools like Log Analyzer, First Failure Data Capture Tool and Collector Tool.
- Worked on Fine tuning of Web agent and policy servers for optimized performance
- Implemented password policies for all the applications using SiteMinder.
- Configured custom alerts and e-mail notifications based on the business needs.
- Experience with using Integration Kits and Token Translators for integrating identity enabled web services into SSO environment.
Environment: Netegrity SiteMinder 5.5/6.0, Sun ONE Directory Server (5.1, 5.2), IBM WebSphere Application Server 5.x/6.x, Web agents 5.x/6x., XML, SAML 1.0, Oracle9i, BEA WebLogic 9.2/8.1, iPlanet 6.0