Principal Security Analyst Resume
PortlanD
CAREER SUMMARY:
- I have 10+ years of experience in the Software & Enterprise Security Industry. I have extensive skills in architecture and implementing the Identity & Access Management solution using various security products as Tivoli and CA suites.
- I have been working on CA Suite of products from last 6 years and IBM Tivoli products for more than four years. Have an extensive experience in implementing security solutions using CA suite of products such as CA Identity manager, CA Identity portal, CA Site minder, IBM Tivoli products such as IBM Tivoli Access Manager (IBM Security Access manager), IBM Tivoli Identity Manager, LDAP, Directory Servers, Tivoli Directory Integrator (ITDI), Application servers, Clusters, Load Balancers, Virtual Directory Servers, Portal Servers, SSO products, DB2 and scripting languages. Provided design solutions using J2EE Framework, Enterprise Directories and security products for multiple clients.
- Have strong hands on experience in Java, J2EE and other Internet Technologies.
- End to End design, implementation, upgrades and support of Identity and Access management infrastructure are listed below:
- CA Identity Manager R12.x (12.0, 12.5, 12.6)
- CA Provisioning
- CA identity portal (Sigma)
- CA Governance minder
- IBM Security Access Manager(Tivoli Access manager)
- Oracle Enterprise directory
- Tivoli Directory Server
- CA Directory Server
- Radiant one virtual directory server
- End to End design, implementation, migration and upgrades of CA Identity manager Version 12, 12.5, 12.6.
- Identity Manager - Installation, Configuration, Administration of CA Identity manager, Directory Server, Provisioning Server/Manager, Admin Tasks, screens, Bulk loader, Policy Xpress policies, Task java scripts, Bulk tasks, BLTH, Event listeners, Invoke SOAP/REST web services from PX policies, Workflows, Mails, Identity policies, Admin Roles, Provisioning roles, Export and Import environment from Identity management console, Logical attributes, Integration of CA IDM with siteminder, Bi-directional password synch.
- Provisioning - Provisioning Roles, Account templates, Endpoints, Explore and correlate, ETA UTIL scripts, Provisioning directory, Connector Server, Connector Xpress, custom connector.
- Application servers - Websphere application server, Weblogic Application server and Jboss
- Directory Server - Oracle enterprise directory server, Oracle internet directory, Radiant one virtual directory server
- CA Identity Portal - Connector, Tasks, Forms, Target permissions, Entitlements, Modules, Profiles, UI profiles, Admin configurations
- CA Governance Minder: Universe, PDI data analysis, Kettle scripts, Workflow, Campaigns
- CA Siteminder: Domains, Affiliate Domains, Realms, Rules, Policies, Active response, Accept/ Reject Rules, Authentication Schemes like Multi-factor/Step-up/X 509 authentication/Custom Authentication Schemes, Agents configuration, Host configuration, User directory and mappings, Password Policies APS, PKI Signing encryption s, SM-Profiling, Backup Strategy, Failover and load-balancing, Policies export, import and xpsconfig
- Core Java/J2EE: Core Java, J2ee JSP, Servlets, Web 2.0, AJAX, Java-Script, Identity management API, JNDI, Database coding
- IBM Security Access Manager (Tivoli Access Manager for e-biz) - Installation, Configuration and setup to protect the realms, Configuring ACL’s, Protected Objects, User management.
- Web Seal - Installation/ Configuration, Junctions protections, EAI, Authentication methods configurations, Auditing and logging.
- Having strong domain knowledge in Identity and Access Management.
- Having strong domain knowledge in J2EE technologies.
- Having strong domain knowledge in directory services.
TECHNICAL SKILLS:
Technology: Security Products / Identity Management, CA Identity Manager, CA Identity portal (sigma),CA Siteminder, CA Governance minder, IBM Security identity manager (IBM Se (ITIM), IBM Security access manager (ITAM), Site Minder.
Directory Servers: Oracle enterprise directory server, IBM Tivoli Directory Server, IBM Tivoli Directory Integrator (ITDI), Sun One Directory Server 5.2 Radinat-One Virtual Directory Server, eTrust Directory Server and iPlanet Directory Server
Application Servers: IBM Websphere, Weblogic, JBoss and Tomcat
Databases: DB2, SQL Server 2000, Oracle
Web Technologies: Java Script, JSP, JDBC, JNDI, Java Applets, Java, Servlet, RMI, Struts, Tomcat, Web logic and Websphere Application server.
Programming Languages: JAVA, HTML
Development/Productivity Tools: Eclipse, Visio and Net beans
PROFESSIONAL EXPERIENCE:
Principal Security Analyst
Confidential, Portland
Technologies used: Net IQ Identity manager, Novell e-directory, BMC identity management, Oracle enterprise directory server, WebSphere application server
Responsibilities:
- Installation, Configuration and Administration of NetIQ identity manager.
- Installation, Configuration and Administrator of Novell e-directory server
- Implemented Requested based access control using tasks, forms, provisioning request drivers.
- Integrate Oracle Enterprise directory server.
- Develop migration scripts for initial on-boarding of existing Identity and access management users from BMC IDM to Net IQ IDM.
Principal Security Analyst
Confidential, Colorado
Technologies used: CA Identity Manager R12.6, CA Provisioning Server R12.6, CA identity portal, CA Governance minder, CA Directory Server, CA Siteminder, Oracle enterprise directory server, WebSphere application server
Responsibilities:
- Installation, Configuration and Administration of CA Identity manager 12.6 SP7.
- Installation, Configuration and Administrator of CA Identity Portal
- Installation, Configuration and Administrator of CA Provisioning server, CA Provisioning directory and CA Directory
- Implemented Requested based access control using Admin tasks, Admin screens, Admin Roles, Provisioning Roles.
- Integrated Active directory, AS400, Oracle endpoints
- Implemented custom connectors for Oracle enterprise directory server and provisioning users.
- Implemented Policy Xpress policies, identity policies and mail policies for various business processes.
- Integrated CA Identity manager with CA identity portal
- Implemented Tasks, screens, forms, target permissions, security modules and profiles
- Integrated CA IDM with Siteminder.
- Implemented password synchronized functionalities, Self-Service functionalities using Siteminder and CA IDM
- Installed and configured Bulk loader for daily onboarding of users from HR
- Implemented kettle scripts for extracting user information, roles information and resource information from applications.
- Analyze the application data using CA Governance minder data analysis tool.
- Well versed with deployment of IDM functionalities from lower environment to higher environments.
- Developed migration scripts for initial on-boarding of existing Identity and access management users from Sun IDM to CA IDM.
IDM Security Lead/Architect
Confidential, Seattle
Technologies used: CA Identity Manager R12.5, CA Provisioning Server R12.5, CA Directory Server, CA Siteminder, Oracle Internet Directory, Weblogic application server
Responsibilities:
- Installation, Configuration and Administration of CA Identity manager 12.0, 12.5 (SP Vx).
- Installation, Configuration and Administrator of CA Provisioning server, CA Provisioning directory and CA Directory
- Implemented Requested based access control using Admin tasks, Admin screens, Admin Roles, Provisioning Roles.
- Integrated Active directory, RACF, Oracle endpoints
- Implemented Policy Xpress policies, identity policies and mail policies for various business processes.
- Integrated CA IDM with Siteminder.
- Implemented password synchronized functionalities, Self-Service functionalities using Siteminder and CA IDM
- Installed and configured Bulk loader for daily onboarding of users from HR
- Upgraded the IDM environment from 12 to 12.5 and also from 12.5 various versions. .
- Well versed with deployment of IDM functionalities from lower environment to higher environments.
- Implemented functionalities using IDM API’s such as BLTH, Event listeners and Logical attribute handlers.
- Optimize the IDM task execution performance by migrating the Identity policies to Policy Xpress policies.
- Developed migration scripts for application on-boarding
IDM Technical Lead
Confidential
Technologies used: IBM Security Access Manager (ITAM), IBM Security Identity Manager (ITIM), Tivoli Directory Integrator (ITDI), Web-Sphere portal server, Web-Sphere application Server, DB2 and Tivoli Directory Server
Responsibilities:
- Designed and implemented security solution using Tivoli suite.
- Installed & Configure Tivoli suite on Linux environment in Dev, Test, Stage & Production environments.
- Implemented self-Service modules using Tivoli product.
- Implemented SSO b/w Tivoli and WebSphere portal server.
- Involved in all phases of software life cycle includes requirement gathering, Design, Implementation, Testing and production Roll-Out.
- Designed & Implemented Confidential security solution.
- Successfully integrated Confidential application with legacy applications.
- Developed security services for fine grained authorization control using Tivoli security policy manager.
IDM Technical Lead
Confidential
Technologies used: CA Identity Manager (r12), Websphere Application Server6.1, eTrust Directory Server, Windows and UNIX operating System.
Responsibilities:
- Involved in all phases of software life cycle includes requirement gathering, Design, Implementation, Testing and production Roll-Out.
- Designed & Implemented Vendor Identity Management solution.
- Successfully integrated Global Vendor IDM solution with backend endpoint servers.
- Actively involved in System testing and UAT.
- Developed scripts for deploying Global Vendor Identity Management solution into production.
- Developed initial onboard scripts for Contractors into IDM System.
- Deployed Global Vendor Identity Management solution into Production.
Confidential
Security Analyst/ Deployment Engineer
Responsibilities:
- Had been actively involved in the Installations and Configurations of the all Security Products.
- Had integrated all Confidential -Viking applications portals with Access Manager.
- Had implemented custom adaptors for Confidential -Viking resource provisioning.
- Had installed session management server on a clustered environment and maintained single session per user across the environment.
- Had implemented External Authentication Interface for all the users who will access the system from outside of Confidential network.
- Had implemented password policies all the Confidential -Viking application users.
- Had configured various target resource provisioning workflows.
- Had installed and configured Websphere Portal and applications servers on a clustered environment.
Confidential
Security Analyst/ Deployment lead / Security Engineer
Responsibilities:
- Had been actively involved in the requirement gathering and Design of BP IDAM Solution.
- Had designed and developed TAM automated deployment scripts using PERL and shell scripts.
- Had deployed the entire TAM Framework in the BP different data centers AMDC (American Mega Data Center), EMDC ( Europe Mega Center) and MMDC ( Middle east Mega Data Center )
- Had been actively involved in the requirement gathering and Design of BP Disaster Recovery Solution.
- Had designed and implemented BP IDAM Cross Domain Single Sign on solution.
- Had been actively involved in the requirement gathering and Design of BP Disaster Recovery Solution.
- Had been actively involved in the requirement gathering and Design of BP delegated Administration Solution.
- Had been actively involved in the requirement gathering and Design of BP 3PD Password Synchronize Solution.
- Had designed and implemented BP IDAM Branding and Internationalization.
- Had designed and implemented BP IDAM Delegated Administration.
- Had designed and implemented BP IDAM Disaster Recovery Solution.