We provide IT Staff Augmentation Services!

Identity Management Architect Resume

3.00/5 (Submit Your Rating)

Washington, DC

SUMMARY:

  • Over 22 years of experience in IT industry
  • Specializing in Oracle Identity Management suite of products: Access Management ( Confidential /OAAM) and Identity Governance (OIM/OIA/OPAM)
  • Identity and Access Management design, analysis, best practices and Enterprise Architecture (High - Availability, Disaster recovery and Active/Active support for MDC) including Password Management, LDAP Management, Provisioning, Delegated Administration, Self-Service, Role-based Access and Lifecycle Management.
  • Access Management, Authentication and Authorization, Single Sign-on (SSO) and Federation
  • Solid experience in using design patterns, J2EE (Java, JSP, JMS, Servlets), SOA, Web Services, message level security (XML Signature and XML Encryption, WS-Security 1.0 and 1.1, WS-Trust, WS-Secure Conversation, WS-Security Policy), transport level security (SSL), SAML and frameworks (ADF, JSF, Web Center).

TECHNICAL SKILLS:

Operating Systems: Windows, UNIX (Solaris, Confidential -UX, Linux, RHEL, AIX), VMWARE

Identity Governance: Oracle Identity Manager, Oracle Access Manager, Oracle SOA Suite, Oracle Business Intelligence Suite, Oracle Identity Analytics, Oracle Privileged Account Manager, OVD, OUD, DSEE, Oracle Fusion Middleware, WebLogic, Sun Identity Manager, Site Minder, Ping Federate, Single Sign-on, DSEE, PKI, Openssl, Web Center.

High availability and disaster recovery: Confidential /OIM/OIA/OID/OVD High availability, scale out/scale up and disaster recovery, Confidential Active/Active Multi-Data Center (MDC) deployment, DataGuard, Weblogic cluster, EMC SRDF, Oracle RAC, NetApps Snap Mirror

Programming Languages/Databases/Frameworks: RDBMS (Oracle, DB2, MS SQL), PL/SQL, SQL, J2EE (Java, JSP, Servlets, JMS), ADF, Skyros, Struts, JSF, JavaScript, ETL, Fusion Middleware, Xpress

Analysis and Design: OOA/OOD, UML, OMT, Rational Rose, Borland Together, Design Patterns, Visio

Protocols: FTP, SMTP, SOAP, HTTP, HTTPS, SFTP, SSH etc.

PROFESSIONAL EXPERIENCE:

Confidential

Identity Management Architect, Washington, DC

Responsibilities:

  • As an Architect, provided technical guidance (that included gathering, architecture, design, implementation, documentation, deployment, code reviews, resolution of the audit related issues, best practices, etc.) on successful integration of ~40 new applications into Identity Management infrastructure in order to automate Confidential certifications. Scope of the assignment included consuming data from the data source, building reusable parser, configuring resource/user/data owner/etc. certifications, setup up reports, import data Accounts, Roles and Glossary, building glossary and roles
  • Reviewed/Analyzed existing Identity platforms and provided recommendations as for Architecture, performance tuning (achieved 30-50% improvement as a result of this effort), best practices in deploying solution, application integration, etc.
  • Provided roadmap, POC/Demo and design for integration of the ~50 applications into the new Identity Management platform. Scope: account administration, certifications, reporting, etc.
  • Provided OIM Upgrade roadmap

Confidential

Identity Management Architect, Los Angeles, CA

Responsibilities:

  • As an Identity Management Architect, provided technical guidance to address immediate, short term and long term needs of the client that included:
  • Addressed immediate availability issues of all existing OIM, Confidential environments as well as maintenance and support of all OIM, Confidential, OVD, OID environments
  • Executed code reviews and Implemented various Application customizations (OIM, OID, OVD) (custom OIM scheduled task, extension of LDAP Schema, etc.)
  • Reviewed/Analyzed existing Identity Platform and provided Architecture recommendation that would address OIM scalability and availability issues
  • Provided Road Map for OIM, Confidential, OID, OVD upgrade

Confidential

Identity Management Consultant, Foster City, CA

Responsibilities:

  • As a result of successful collaboration with talented Oracle Engineering and Support teams, Oracle introduced T2P cloning process for OIM/ Confidential /OBIEE Applications. T2P cloning process facilitated Confidential production deployment and considerably simplified/speeded up creation of the new OIM environments.
  • Implemented security hardening of the OIM/ Confidential platform, remediated discovered during penetration test vulnerabilities implemented OIM customizations focusing on User Provisioning and Password Management
  • Implemented OIM/OIA integration (Role Mining/Role engineering, entitlements, policies, accounts, roles, users synchronization)
  • Designed, implemented and deployed several SSO integrations:
  • POC for Complex Single Sign-on integration that involved merging entitlements from multiple sources ( Confidential /OBIEE/OVD/ Confidential /Kerberos)
  • Confidential /E-Business Suite integration ( Confidential
  • Provided road map for Confidential Active/Active MDC support). Worked in collaboration with Oracle Engineering Team
  • Provided technical guidance on correcting existing Confidential /OIM/ OIA Architecture, move from Simple Deployment to Enterprise Deployment and address issues of High-Availability and Disaster recovery. Implemented the solution.
  • Engaged in successful project that allowed to significantly improve performance of DSEE infrastructure that supports authentication to thousands UNIX (Solaris, AIX, Linux) servers
  • Provided Road Map for Moving OIM to Partitioned deployment Architecture (Complete separation of Back-Office (Scheduled jobs) and Front-Office (interactive web interfaces)). Worked in collaboration with Oracle Engineering and Support teams.

Confidential

Identity Management Consultant, Pleasanton, CA

Responsibilities:

  • Member of a small team of highly skilled security PriceWaterhouseCooper Architects entrusted to provide best practices and product expertise in deploying Identity Management Solution.
  • Performed assessment of the existing Identity Management Solution
  • Provided roadmap, short term and long term strategies for the system improvement based on industry best practices. Scope included architecture/infrastructure, code enhancements, product integrations, etc.
  • Performed an upgrade of the Identity Management system. As a part of this project, existing environments were reset to production, code management and build process were adjusted to the industry standards
  • Designed and implemented integration with SAP GRC Access Control.
  • Integration of Compliant User Provisioning and Super User Privilege Management capabilities of SAP GRC Access Control: automation of Firefighter Ids assignment by creating a request in Confidential
  • Submission of the requests to SAP Access Control for Segregation of Duties (SoD) compliance, request status retrieval, support of the multilevel approvals, escalations, notifications, audit, password resets and automated provisioning of the requested access to the target SAP systems.
  • Identified missing functionality of the provided by Oracle Identity Management product. Worked with Oracle Engineering/Support teams to provide support for SAPGRC AC IDM REQUESTDETAILS web service. (Provided requirements, design and guidance)

Confidential

Identity Management Consultant, McLean, VA

Responsibilities:

  • As a part of the Security team, assisted with requirements gathering, architecture, design, implementation and deployment Identity Management solution (Sun IDM 6.0 to OIM 11g).
  • Identity Management Platform Deployment
  • Integration Tivoli Access Manager for SSO and Authorization
  • Assisted with requirements gathering and design (support for system accounts, batched e-mail notifications, reporting, custom adapters, etc.)

Confidential

Identity Management Consultant, Arlington, VA

Responsibilities:

  • Completed the design and architecture of the Enterprise Identity Management solution
  • Designed and implemented Proof-of-Concepts (POC) projects focusing on User Provisioning, Role-based Access Control, Identity Audit and Compliance, Password Management, and Application Single Sign-On, integration with Microsoft Active Directory
  • Designed and implemented request-base, policy-based and direct provisioning of the users, multiple levels of approvals, e-mail notifications and reporting.
  • Performed upgrades, applied patches to the product, performance tuning

Confidential

Identity Management Consultant, Philadelphia, PA

Responsibilities:

  • Identity Manager, Site Minder, Ping Federate, LDAP, Active Directory (AD), Java, J2EE, XPRESS, Oracle, Web Services, SOA, Exchange, Blackberry, Remedy, Oracle Identity Analytics (Role Manager)
  • Performed evaluation of CA, Oracle and Sun Identity Management products
  • Established the strategic plan, roadmap and architecture of the Confidential Identity Management System in collaboration with Sun Microsystems Architects
  • Designed and implemented Proof-of-Concepts (POC) projects focusing on User Provisioning, Role-based Access Control, Identity Audit and Compliance, Password Management and Application Single Sign-On.
  • Architect, Design and Implemented Integrations with various external systems ( Microsoft Active Directory, SAP, SiteMinder, Remedy, and custom applications), Employee On-boarding and tracking, self-registration and password reset

Confidential

Identity Management Consultant, Confidential, MI

Responsibilities:

  • Identity Manager, Access Manager, Federation Manager, LDAP, Active Directory, Java, J2EE, Oracle, Web Services, SOA, PeopleSoft, Confidential ServiceGuard, Confidential Continental Clusters, SRDF, Confidential Superdomes, BMC, OVD
  • Access Management PeopleSoft Pilot - key initiative in reaching the Global Identity and Access Management Business Objectives, strategic tool for provisioning user access to applications within the GM enterprise.
  • Worked with the vendor on assessing the scope of a project, identifying risks, developing accurate estimates
  • Installed and configured Identity and Access Manager
  • Implemented Self-Service Registration, Password Management, User Provisioning and De-provisioning
  • Strategic Retail Systems (SRS) - is Web-based multi-tiered application to automate retail business and makes the user to run Lending & Collection Business in the most effective manner.
  • As a part of the skilled Confidential Architects team, provided design and architecture of the high-availability and disaster recovery solution using EMC SRDF, Confidential ServiceGuard and Confidential Continental Clusters
  • Provided estimates for space allocation, server capacity
  • Coordinated effort among the various teams
  • Wholesale Audit System (WAS) - web application based on SOA architecture.
  • Designed Security for the system
  • Implemented Web Services with message (WS-Security) and transport level security (SSL)

Confidential

Senior Consultant, MI

Responsibilities:

  • Identity Manager, Access Manager, Web Services, DB2, Oracle, UML, Envoy Express, LDAP, SiteMinder, Wily
  • Designed and Implemented single sign-on solutions
  • Architect, Design and Implementation of the Customer Notification Service - SOA based application to automate calling centers (TTS Engine, Web Services)

We'd love your feedback!