Architect/sme Resume
4.00/5 (Submit Your Rating)
SUMMARY
- I am an extremely conscientious, efficient and hard - working individual who is enthusiastic about both Identity and Access Management and the larger area of Cyber Security. I am willing to consider commuting weekly to work on a client site or work remotely dependent on the rate and/or contract on offer.
PROFESSIONAL EXPERIENCE
Confidential
Architect/SME
Responsibilities:
- Responsible for the architecting and building out of the OpenDJ (LDAP servers) and OpenAM servers for a telecommunications company in Toronto.
- Leading discussions on requirements and in documenting the installation procedure.
- Leading discussions on legacy application integration and testing.
- SME in areas such as RESTful APIs and application integration.
Confidential
Business Architect
Responsibilities:
- Led the discovery and data gathering phase on the AD standardization project.
- Defined best practices for Securing AD according to Microsoft’s guidelines.
- Led an audit of AD Groups against SoX regulations, managed the introduction of proposed process and data changes.
- Defined policy for the user profile creation process, for on-boarding and off-boarding users and for providing access to SoX and non-SoX based applications.
Confidential
IdM Architect
Responsibilities:
- Lead IdM Architect on a Confidential project using OpenDJ (v3.0) and OpenAM (v13.0.0) for a fleet car company.
- Architected and documented the overall solution and end user test cases.
- Defined integration plans for custom built applications making use of Single Sign On (SSO) and Federation (SAML 2.0, OpenID Connect and OAUTH 2.0.)
- Defined Password policy and Session policy in discussion with the client.
Confidential
Security Architect
Responsibilities:
- Created a custom Cyber Security Risk Assessment framework incorporating current regulations and guidelines including (ISO 270xx, NERC-CIP, PCI-DSS, CSA-CCM, IEC 62351/62443 and NIST SP 800-xx.)
- Carried out “compliance” assessments “certifying” the company’s products against the framework prior to going to market.
Confidential
Application Security Consultant
Responsibilities:
- Installed and documented McAfee SIEM appliances.
- Defined the McAfee Data Loss Prevention (DLP) architecture and led discussions on data classification and data privacy.
- Led policy reviews that against ISO27001, CoBIT, ISF and ES-C2M2 Frameworks.
- Led requirements gathering workshops and the architectural design for RSA Aveksa Identity Management and Network Access Control (NAC).
- Led discussions on Privileged Access Management (PAM) and led the CyberArk Password vault project.
- Carried out cost-benefit analysis (software, hardware and support) of moving from CA’s IdM product suite to others on the market for a Financial client.
- Defined a solution to segregate and protect “out of support” Windows NT servers within a utility client’s network.
- Carried out security assessments of web applications against the OWASP Top Ten and CWE/SANS Top 25.