Principal Architect Resume
SUMMARY:
- Ten years of experience selling business technology solutions to mid - level and enterprise corporations. Sold services as Engagement Manager at Confidential and successful at exceeding quota for every period of sales.
- Services sales for Confidential into new customer base, and achieving 100*% closure of all sales deals.
- Development of sales strategies for large consulting service organizations, and instructing non-technical sales in the art of solution selling.
- Managed team of 135 shared resources in Confidential Consulting Services.
- Managed team of developers and project managers at United Messaging.
- Over fifteen years of total management experience, including resource development, team balancing and strategic deployment of resources throughout organization.
- Development of IT services management strategy for Confidential .
- Responsible for management of Confidential technical teams.
- Eleven years of project management experience.
- Management of several large scale projects of varying complexity, to include application development, network infrastructure deployment and migrations, messaging platform migrations and network operating system migrations.
- Outstanding talent in resource loading (recruiting and staffing), resource leveling (sharing resources), team building, budget management, developing project scope (budgets, timelines and delivery dates), stakeholder relationship management, continuous design improvements and conducting status meetings and customer reviews.
- Able to leverage hands-on Information Technology experience to gain consensus and trust of project team members.
- Over five (5) years of experience with design, implementation and administration of Enterprise Project Management based on Confidential Project Server 2003/2007. Migration of project plans from Primavera to Confidential Project Server 2003. Implementation of Sharepoint Portal Server for document repository for Confidential Project Server. Integration of MOSS, Project Server and Confidential Exchange for full life cycle management of project related documentation.
- Windows XP, Windows NT/200X (Workstation, Server and Advanced Server), Windows Server 2003, Novell Netware 3.x to 5.x, Mac OSX, Citrix MetaFrame, Linux (RedHat and Mandrake).
- I have over 7 years of experience architecting virtualization solutions for enterprise clients.
- Experience with virtualization solutions from the following vendors; VMWare, Parallels, Citrix and Confidential .
- I have developed lab environments for clients based on Confidential Virtual Server, and production consolidated datacenters using ESX, XenServer and Hyper-V. Development of virtualization practice based on Confidential ’s Hyper-V virtualization solution.
- Development of Parallels Server environment for migration of production Windows server environment. Architected Parallels Server/Workstation environment for application testing lab. Migration of VMWare ESX virtual machines to Confidential Hyper-V virtual machines. Development of Hyper-V based testing lab to aid in development of Exchange 2007 infrastructure.
- Leveraged VMWare ESX, XenServer and Hyper-V for datacenter consolidation and datacenter moves. Development of Hyper-V virtualized environment for migration from standalone SQL Server environment. Implementation of SCVMM 2008 for management of VMWare and Hyper-V virtual servers. Deployment of HP and Dell Blade Centers for implementation of virtualization solutions.
- Deployment of iSCSI arrays for shared storage to leverage virtualization high availability. Implementation of Platespin Migrate to perform datacenter migrations for enterprise level clients. Conducted chalk talk with startup, discussing pros/cons of Parallels Server, VMWare ESX and Citrix XenServer for hosting of thin client applications. Extensive experience migrating physical servers to cloud based solutions such as Confidential Azure and AWS. Experience configuring network load balancing and workload balancing in Azure. Experience managing cloud based virtual server environments.
- I have several years of experience with various electronic messaging and collaboration systems, including, cc:Mail (db6 to db8) for six (6) years, Exchange (5.5-2010) for eleven (11) years, Sharepoint for five (5) years, and Lotus Notes for three (3) years. Experience architecting lab environments based on Exchange 2010 beta to pilot deployments of high availability leveraging Database Availability Groups. I have experience architecting and implementing Exchange 2007 and MOSS 2007 solutions for Confidential clients as part of the Confidential Joint Development Programs (JDP). I have advanced knowledge of design, infrastructure, deployment, migration, troubleshooting and disaster recovery of these messaging systems. I have extensive experience with development of hosted (ASP) application practices for multiple messaging platforms. I have over 5 years of experience as a Confidential employee developing solutions that integrate Exchange, Sharepoint and Confidential Office. Experienced designing and implementing clustered Exchange 2007 environment, leveraging both SCC and CCR. Experienced designing and implementing SCR for Exchange disaster recovery scenarios. Experience designing Exchange 2000-2007 environment for environments for over 50,000 user mailboxes.
- I have over 15 years of experience designing, deploying and managing complex environments based on Novell eDirectory, Confidential Active Directory and various LDAP based directory services. Extensive experience integrating disparate directory services with identity and access management systems. Extensive experience with Active Directory versions 2000 through 2012. Extensive experience leveraging ADFS for SSO (single sign on) application and claims based authentication and authorization. Extensive experience leveraging RSA Confidential for SSO application. Experience with federation between on-premise and cloud based directory services such as Office 365.
- I have experience designing and implementing Confidential Metadirectory Services, MIIS 2003 ( Confidential Identity Management Server 2003), ILM 2007 ( Confidential Identity Lifecycle Management 2007) and Confidential 2010 and Confidential 2010 R2 to facilitate integration of Active Directory with disparate directory services to define identity management infrastructure, totaling over 10 years of experience. Extensive experience designing complex identity management solutions based on Confidential IDM (formerly Novell IDM). Extensive experience with multiple vendor IAM solutions, including; Confidential, Sailpoint IIQ, Oracle IM, SAP IDM, Confidential IDM ForgeRock OpenIDM and CA Identity Manager. Experience deploying SSO based on ADFS, Ping, OAM and SiteMinder for on-premise to cloud application authentication.
- Experience deploying SSO based on Azure, Okta and RSA VIA for pure cloud based application authentication. Experience architecting solutions for RBAC and POC of ABAC using EmpowerID Identity Management.
- Experience writing custom workflows for EMpowerID using REST API. Experience architecting and implementing RBAC using BHOLD suite and RBAC components of Confidential IDM.
- Experience aligning IAM solutions with governance and compliance requirements such as SOX and PCI.
- I have experience designing IAM solutions with Tivoli Access and Identity management solutions for large directory and ERP integration engagements. I have extensive experience designing POCs (Proof of Concepts) for architecture and implementation Identity and Access Management solutions.
- I have extensive experience developing applications to streamline processes for retail organization leveraging Biztalk, C# and VB.net. Development of provisioning applications for Exchange 2003/Exchange 2007 for application service providers. Development of scripts to automate provisioning of VMs for VMWare, Hyper-V and XenServer, using C#, powershell and vbscripting. Extensive experience with the .Net Framework with expertise developing solutions with the following languages; C#, F#, VB.Net. Development of rules extensions for Confidential Identity Integration Server applications. Development of tool for Home Depot to automate virtualization of store servers.
- I have over ten (10) years of experience with database servers, including Oracle, SQL Server and MySQL. Experience implementing SQL Server clusters based on SQL Server 2000, SQL Server 2005 and SQL Server 2008. Experience implementing database mirroring on SQL Server 2005. Extensive experience performing zero data loss migrations from SQL Server 2000 to SQL Server 2005 and SQL Server 2008. Experience designing Oracle database schema for design of ADP HR and payroll systems. Experience administering SQL Server 7.0. SQL Server 2000, and SQL Server 2005. Experience deploying and administering MySQL databases for customer facing web applications. Experience designing MySQL clustered database infrastructure on Linux. Experience with tuning Oracle databases for PeopleSoft application performance.
- Visio, Concur eApplications, ChangePoint, GoldMine, SalesLogix, Pivotal Relationships, Network General Sniffer, Veritas Backup Exec, Legato and ARCServeIT.
PROFESSIONAL EXPERIENCE:
Confidential
Principal Architect
Responsibilities:
- I am responsible for architecting of identity and access management solutions for a diverse set of client organizations.
- I have extensive experience architecting and implementing Identity and Access Management solutions based on MMS, MIIS, ILM and Confidential .
- Experience implementing Confidential in high availability scenarios.
- Extensive experience architecting migration scenarios for Cloud based solutions based on Confidential Azure and Confidential Office 365.
- In addition to the Confidential stack, I also have experience architecting and implementing solutions based on non - Confidential IDM products, including SAP IDM, Sun IDM, Tivoli Identity Manager Quest IDM, Confidential IDM, CA Identity Manager, OpenIDM, Optimal IDM, Sailpoint IdentityIQ, Oracle Identity and Access Management and EMPowerID.
- Extensive experience with SSO leveraging ADFS, OAM, RSA VIA, Okta, Ping and the development of federation hubs for large application service providers.
Confidential, Chandler, AZ
Identity Management Architect
Responsibilities:
- Responsible for management of Pearson Confidential environment.
- Development of custom solutions in Pearson Identity Management environment to allow for ease of resolving provisioning issues.
- Development of custom Confidential Portal for provisioning of various employee types.
- Development of process for conversion of users between various types.
Confidential
Identity Management Architect
Responsibilities:
- Reponsible for articulating the difference between traditional RBAC and RBAC in EMPowerID. Responsible for providing custom development for implemented MIM 2016 environment. Developed delayed termination code to allow pre-termination requests. Development of code to provide provisioning and termination reports. Resolved issues with provisioning in Confidential Portal to allow provisioning passed on location.
Confidential
Identity Management Architect
Responsibilities:
- Responsible for architecting Confidential IDM 4.5 solution to replace existing TIM environment.
- Integration of Confidential with Office 365 solution. Integration of Confidential with Remedy ticket management system.
- Development of custom provisioning policies for AD and Office 365.
- Integration of Confidential Identity Vault with AGS for entitlement certification process.
- Extending schema for inclusion of new auxiliary classes for application integration.
- Development of multiple drivers to connect to internal applications.
- Development of custom workflows using Java.
- Implementation of Remote Loader for various .NET drivers, including Office 365 driver.
- Implementation of JDBC driver for connectivity to home grown oracle applications.
- Configuration of Confidential AM to accommodate claims based login for home grown applications.
Confidential
Identity Management Architect
Responsibilities:
- Responsible for assessment of existing Identity Management implementation for two separate organizations going through a merger.
- Provided recommendations and strategies for consolidation of two separate Identity Management platforms.
- Development of detailed planning for consolidation of implementations.
- Development of plans for migration to Confidential from Confidential 2010.
Confidential
Identity Management Architect
Responsibilities:
- Responsible for architecting solution for automating assigning and revoking entitlements for Internal bank applications.
- Development of .NET application to produce file for consumption by internal process to assign entitlements.
- Development of SSIS packages to consolidate data from various sources into a single data view for consumption by Confidential .
- Implementation of Management Agents connecting to consolidated data view and rule extension to determine if last know contribution management agent was authoritative source.
- Implementation of Management Agent to populate new database tables for consumption by .NET application developed to produce file for entitlement assignment.
Confidential
Identity Management\Cloud Architect
Responsibilities:
- Responsible for architecting federation solution for Confidential to enable authentication for hybrid Confidential Office 365 implementation.
- Implementation of Confidential ADFS and federation between Confidential and Confidential Azure for authentication and authorization.
- Creation of custom claims rules to restrict access to only allow mobility access externally.
- Migration of 100 pilot users to Office 365 to measure migration velocity for production migration.
Confidential, FL
Identity Management\Cloud Architect
Responsibilities:
- Responsible for architecture and implementation of new Confidential instance for synchronization of identities between Daren Restaurants and Confidential ’s Azure based Active Directory infrastructure.
- Customization of Confidential RCDCs to implement contractor management system based on Confidential Portal.
- Extension of Confidential Schema to allow to management of preferred names in Active Directory based on Confidential Portal self-service changes.
- Development of MVExtension for provisioning of user accounts and groups in Active Directory.
- Responsible for implementation of hybrid Office365 environment, and migration of initial mailboxes to cloud.
- Integration of Confidential with Office365 for automated provisioning and activation of accounts.
Confidential, Chicago, IL
Identity Management Architect
Responsibilities:
- Responsible for migration of complex Confidential architecture to a reduced set of servers while providing continued support for daily provisioning and access activities.
- Developed custom management agent in C#, based on ECMA2 framework to connect to Workday HR hosted application.
- Implementation of parallel instance of TIM to enable provisioning of accounts and user roles to SAP applications, including SAP GRC.
- Implementation of ADLDS LDAP server to migrate internal unique identification system to new Confidential architecture.
- Development of tools to allow for testing of access to Workday HR web services.
- Consolidation of multiple sync server architecture to single sync server architecture.
Confidential
Identity Management Architect
Responsibilities:
- Responsible for recovery of failed Confidential 2010 implementation.
- The existing infrastructure was inoperable and the project was initially started in August of 2013.
- Reviewed the implementation and discovered a number of issues with the basic infrastructure, as well as the implementation of the Portal and workflows.
- Provide recommendations for customer approval and implemented changes to provide a successful implementation.
- Provided full documentation of the new environment as well as a knowledge share session.
Confidential, Columbus, OH
Identity Management Architect
Responsibilities:
- Review of Confidential IDM implementation functionality for migration to Confidential 2010 R2.
- Provided architectural review of an implementation of Confidential 2010 R2 for Confidential.
- Documented and presented findings of review to leadership team and design and remediation recommendations to improve implementation.
- Reviewed custom management agent for connection to Salesforce.com and corrected coding issues.
- Configuration of IdPs for portal application access.
- Configuration of custom SAML applications in application portal for SSO access.
- Customization of SAML attributes for automated user provisioning.
- Deployment of VIA Identity Routers in HA configuration for SSO efforts.
- Provided architectural guidance for other teams working on password synchronization project.
Confidential, St. Louis, MO
Identity Management Architect/Developer
Responsibilities:
- Architecture of IAM solution based on Confidential 2010 R2 to provide provisioning and role assignment for Confidential system of schools.
- Implemented large scale Confidential architecture including multiple Confidential Sync Engine server and Portals.
- Developed custom workflows to provide functionality consistent with legacy provisioning systems, as well in provide data flow to databases supporting legacy systems for system continuity.
- Developed multiple MVExtension DLLs to manage provisioning for the various Confidential Sync engines.
- Developed custom rule extensions to manage provisioning of accounts to Office 365.
- Developed custom rule extensions to write back to Oracle views based on client business logic.
Confidential
Identity Management Engineer
Responsibilities:
- Architected identity and access environment based on Confidential 2010 R2 to enable self-service password reset.
- Developed custom workflows to notify appropriate staff management of user password registration and password reset.
- Delivered operations training to system administration team to manage ongoing support of Confidential 2010 R2.
Confidential, Santa Clara, CA
Identity Architect
Responsibilities:
- Designed management agent using C# to use SOAP to synchronize user data accessed via Cisco AXL API. Development of PoC of Confidential, and Sailpoint IIQ environments for customer compete.
- Development of custom provisioning workflows using C# and Java.
- Worked with customer to implement Confidential environment to manage corporate identities and objects.
- Development of custom management agent using ECMA2 framework to communicate with Cisco Call Manager environment.
- Development of tools to allow freeform SQL queries against Cisco Call Manager environment to aide with troubleshooting of management agent.
- Created user interface to allow modification of Cisco Call Manager instance information using Confidential Portal and customized RCDCs.
Confidential, Alpharetta, GA
Identity Architect
Responsibilities:
- Assessment of existing Forefront Identity Management environment for implementation issues.
- Developed plan for upgrading Confidential 2010 environment to Confidential 2010 R2.
- Identified and resolved synchronization and provisioning issues of Exchange and HR systems.
- Developed custom web services management agent to interact with hosted HR system.
- Implemented SSPR with multiple QA gates to accommodate corporate and store users.
- Evaluation of Confidential IDM for replacement of Confidential as enterprise identity management solution.
- Implementation of proof of concept to compare automated provisioning and password management features of Confidential with Confidential features.
- Implemented PoC of Confidential and Confidential IDM to evaluate provision, deprovisioning and RBAC functionality.
Confidential, Lawrenceville, GA
Identity Management Architect
Responsibilities:
- Architected Confidential R2 implementation to provide advanced provisioning, deprovisioning, role access assignment, and self-service password reset for organization of 30,000+ user accounts from Oracle HR and proprietary contingent worker application.
- Provide architectural oversight for IAM implementation, and developed provisioning, and deprovisioning code.
- Implemented Confidential R2 Password Reset portal with multiple QA gates, per customer requirements.
- Integrated Confidential with OptimalIDM Virtual Identity Server to abstract directories for application developers.
- Developed architecture for DMZ implementation of SSPR to overcome customer infrastructure limitations.
- Lead sessions to define roles for provisioning of RBAC via BHOLD suite.
- Lead offshore team in development of requirements and design documentation for customer review.
Confidential
Identity Management Architect
Responsibilities:
- Architected identity management solution based on 3 separate Synchronization Service implementations of Confidential 2010, customized and load balanced Confidential Portal, supporting 700k+ users in Europe, the Americas and Asia.
- Development of web service to customize the create user process within the Confidential Portal, and allow for searches based on a Confidential unique identifier.
- Architect Confidential self-service password (SSPR) implementation based on Confidential 2010 R2.
- Implementation of Confidential 2010 R2 for Self-Service Password reset.
- Integration of Tivoli Identity and Access Manager with Directory Services infrastructure to enable automated provisioning of Lotus Notes accounts.
- Configured TIM to provide synchronization with RACF and AS/400 mainframe infrastructure.
Confidential
Identity Management Architect
Responsibilities:
- Provide architectural oversight and overall responsibility for Confidential and Forest Service ILM 2007 and Confidential 2010 environments.
- Development of custom workflows and processes to assist Confidential /US Forest Service with achieving organizational objectives.
- Perform role as trusted advisor to senior management of IT services.
- Development of custom scripts, and rule extensions to meet organizational objectives.
- Deployment of ADLDS LDAP server to replace ADAM LDAP server used for user PIV card deployment.
- Performed migration from ILM to Confidential 2010, including associated management agents and rule extensions.
- Developed custom management agents based on ECMA framework to replace legacy XMA management agents.
- Development of PoC to evaluate functionality of Confidential 2010, CA Identity Manager and OpenIDM.
- Performed load testing of PoC IDM environments. Worked with customer through the IDM selection process.
- Implementation of CA Identity Manager as part of new Enterprise Directory Service initiative.
- Management of CA Identity Manager and Confidential infrastructure during Confidential decommissioning phase.
- Development of custom adapters to connect to internal applications.
- Migration of functionality from Confidential to CA Identity Manager over the course of 8 months.
Confidential
Identity Architect
Responsibilities:
- Lead whiteboard session with client to determine solution for Confidential .
- Architected centralized Identity Hub based on ADFS 2.0 infrastructure.
- Engaged client at request of EMC to recover failed core ADFS implementation.
- Developed technical approach for implementation of Federated Hub to enable partnering organization and clients to access federated applications.
- Implemented Passive Requestor to enable single sign on using SAML protocol.
- Implemented ADLDS LDAP server to host user objects in federation hub.
Confidential, New York City, New York
Identity Architect
Responsibilities:
- Architected a security and federation infrastructure based on Active Directory 2012 and ADFS 3.0 to provide single sign-on via SAML 2.0 for Confidential Office 365 and the Confidential Learning Management System.
- Developed implementation documentation, and project plans for approval by stakeholders.
- Implemented test environment to assist Confidential professional services with customization of the Confidential LMS to enable SAML authentication.
- Provided support to Confidential team throughout development of custom code to accept SAML 2.0 assertion file.
- Implemented production ADFS infrastructure and setup federation with Confidential for Confidential ’s hosted instance of the Confidential LMS application.
Confidential, Princeton, New Jersey
Identity Architect
Responsibilities:
- Architected and implemented Confidential 2010 environment for Confidential to host federation and GAL Synchronization for Fox Group companies.
- Architected process for integrating the various Confidential Corp companies into a single GAL, allowing the dynamic selection of which GALs to Synchronize on an as specified basis.
- Documented repeatable process for Windows Administrators to integrate future Confidential Corp companies into GAL synchronization process.
- Delivered training of Confidential resources to enable their management of the Confidential environment, and synchronization process.
- Architected solution to provide claims based authentication leveraging ADFS 3.0 and AD LDS LDAP server.
- Delivered chalk talk to address questions about ADFS architecture.
- Delivered training to aid Confidential resources in troubleshooting common issues within Confidential .
Confidential, Johns Creek, Georgia
Identity Architect
Responsibilities:
- Architected Confidential development environment to aid in POC of Lotus Notes provisioning.
- Worked with stakeholders to develop process for the automated provisioning of Lotus Notes accounts using Confidential .
- Developed code for custom Lotus Notes extensions to find least used servers in Lotus Notes, based on user count.
- Developed rule extensions to automate provisioning of Lotus Notes accounts, leveraging custom Lotus Notes extensions.
- Implemented TIM to enable provisioning of roles to SAP GRC.
- Developed solution around TIM to eliminated need for Confidential to provisioning Lotus Notes accounts.
Confidential, Jersey City, New Jersey
Identity Architect
Responsibilities:
- Architected Confidential environment to synchronize Lotus Notes, Active Directory and selected PeopleSoft attributes.
- Developed custom Silverlight application which uses SQL Server database and Confidential Management Agent, to provide provisioning of user accounts for Helpdesk users.
- Developed powershell scripts to automate moving of Exchange accounts between servers for dynamic load balancing.
- Implemented Confidential Portal, with customizations to provide reduced view for Helpdesk users without access to Silverlight application.
- Developed rules extensions to dynamically provision Exchange mailboxes based on region, and least used database.
Confidential, Nashville, TN
Messaging Architect
Responsibilities:
- Architected Exchange 2010 environment for Tennessee State government’s Office of Information Resources.
- Performed capacity planning for Exchange 2010 mailbox storage, Client Access server and Hub transport servers.
- Developed documentation for the purpose of lab and production environment build out.
- Designed multi-datacenter Database Availability Group (DAG), for failover at remote site.
- Worked with network team to plan implementation of F5 GTM for failover of Client Access servers.
- Managed team of internal State of Tennessee OIR technical resources for implementation of various ancillary services such as FAX, VoIP and Internal Sharepoint enabled social network.
Confidential, Chicago, IL
Identity Architect
Responsibilities:
- Architected Confidential PCNS solution for large International Pharmaceutical company, currently engaged in significant M&A activity.
- Implemented Confidential Synchronization engine scoped only to include management agents for connected AD forests.
- Implemented Confidential PCNS to allow access to legacy applications for users migrated to authoritative forest.
- Implemented the Confidential Portal to allow users self-service password reset.
Confidential
Identity Architect
Responsibilities:
- Management of ILM and Confidential infrastructure for large government agency.
- Development of rule extension to create “dial plan” for users of OCS.
- Development of rule extension to provide additional functionality to the deprovisioning process.
- Implementation of Group Attestation for distribution groups, and development of process to assign ownership to groups where there is no clear owner.
- Ongoing management and maintenance of ILM and Confidential infrastructure consisting of 500,000+ user objects.
Confidential, Chicago, IL
Identity Architect
Responsibilities:
- Architected Confidential development environment to test user and distribution group provisioning scenarios.
- Extended schema to allow for criteria based membership based on attributes values flowed in from Oracle HR.
- Deployed test environment for proof of concept.
- Developed and conducted classroom training for HR and IT administrators.
- Conducted demonstration of Confidential provisioning scenarios.
- Deployed production Confidential environment for provisioning of users and distribution groups.
- Configured Confidential environment to include implementation of Confidential Synchronization Service, Confidential Service and Confidential Portal.
- Configured Management Agents for Active Directory, Confidential Service and Oracle HR System.
Confidential
Identity Architect
Responsibilities:
- Engaged to architect Confidential infrastructure to scale to 500,000 - 1,000,000 provisioned users.
- Developed scenarios and implemented Confidential solutions for identification verification for various classes of users, leveraging Confidential out of box and custom workflows.
- Architected Confidential infrastructure to support web based government application development.
- Architected Sharepoint infrastructure in support of Confidential Portal.
- Developed web service client to consume Confidential web services using C#.
- Provided architectural oversight for web based application development.
- Responsible for migrating existing ILM implementation to Confidential .
- Converted ILM rule extensions to Confidential Workflows and activities where applicable.
- Developed replacement for password self-service to overcome external user limitation.
- Implemented 28 management agents for connectivity to shrink-wrap and in-house developed applications.
Confidential, Atlanta, GA
Messaging Architect
Responsibilities:
- Perform presales activities for Confidential Online Services migration.
- Developed process for rapid migration from on-premise to Confidential Online Services (hosted Exchange) platform.
- Developed C# WinForm application to aide migration of users.