Oracle Identity Management Consultant Resume
New York, NY
SUMMARY
- Seasoned and fully dependable Information Security Engineer with exceptional record of competence and discretion. Adept at communicating with other engineers and clients in a clear and understandable manner. Able to maintain the highest standards of confidentiality in handling and protecting sensitive client information.
- Superior breadth of experience in network administration and information security.
- Excellent proficiency with encryption firewalls authorization methodologies and Web filtering authentication.
- Profound facility with security policy development, implementation and enforcement.
- Sound grasp of a variety of Internet protocols.
- High skills in data analysis and network security threat identification.
- Strong expertise in detecting intrusions via network scans.
- Exceptional skills in critical issue identification and resolution.
- Outstanding skills in conveying complex technical information clearly and accessibly.
- Worked with Relational Database Management Systems including Oracle, SQL Server and PL/SQL and have worked extensively on JDBC to connect to and access various remote database including Oracle, MySQL, SQL Server.
- Strong experience in working with Application Servers like Apache Tomcat, Web Logic, IBM Web Sphere (WAS) and building application using ANT. 2010/2012/2013.
- Strong knowledge in Client/Server application development.
- Proficiency with tools for source code control, change management, and creation of business and technical diagrams.
- Proficient in Oracle Fusion Middleware including Oracle SOA suite (10g, 11g), web services, Oracle BPEL Process Manager, Oracle Enterprise Service Bus (ESB) and Oracle J - Developer (10g, 11g).
- Very well experienced in Oracle Identity Manager and implementation of Application Automation and UI configuration within a mature access management system.
- Worked on development of OIM customizations such as Schedule Jobs, Event Handlers, Plugins, and Approval Workflows per business needs.
- Good understanding of policies in Cyber Ark Central Policy Manager (CPM) and (PSM).
- Experienced in analysing current network layout, services and resources to determine required access.
- Experience in building enterprise Applications and Distributed Systems using technologies such as Core Java, J2EE (Servlets, JSP, JSF, EJB, JDBC, JMS) and XML.
- Experienced in web development using AJAX, HTML, CSS and JavaScript technologies.
- Worked extensively on various flavours of UNIX operating system like Linux.
TECHNICAL SKILLS
Oracle Products: Oracle Identity Manager (OIM) 11g/9.x, Oracle Access Manager (OAM)11g/10.x, Oracle Internet Directory (OID) 11g/10g, Oracle Virtual Directory(OVD) 11g/10g, Oracle Unified Directory (OUD) 11g
Operating System: Ubuntu Linux, Red Hat Linux, Oracle Enterprise Linux and Windows 98, 2000, XP, 7, 8, and 10.
Languages: JAVA, SQL, PL/SQL.
JAVA Technologies: Servlets, JSP, JDBC, JMS
Design Tools: Rational Rose V2000, UML, CyberArk Password vault
Security Tools: SailPoint IIQ 7.0p2 and p6, IBM Tivoli Access Manager 6.1.1, IBM Tivoli Identity Management, Cyber Ark privileged Account Security, Tivoli, Federated Identity Manager 6.2.2,.
IAM Tools: Tivoli Identity Management, Forefront Identity Manager, SailPoint IIQ, CyberArk
RDBMS/Database Servers: Oracle 8i/9i/10g, MySQL 4.x/5.
Modeling Language& Tool: UML, Rational Rose, and Macromedia Flash.
Application Frameworks: MVC Struts, spring framework.
PROFESSIONAL EXPERIENCE
Confidential, New York, NY
Oracle Identity Management Consultant
Responsibilities:
- Involved in complete software development lifecycle like Analysis, Design, Coding and Implementation
- Involved in analysis of business requirements and prepared technical documents based on the requirements.
- Implementation and customization of Oracle Identity Manager (OIM) (11gR2) and Oracle Access Manager (OAM) as per the client infrastructure requirements.
- Monitor CyberArk reports and respond to failed password verification alerts and work with system account owners to resolve failure alerts.
- Configured Event notification engine (ENE) with Cyber Ark.
- Coordinated with Cyber Ark support teams for escalation and resolution of issues in Prod & DR.
- Applied patches to enhance functionality of the system.
- Customize the requirements specific to OIM-AD integration as per the client's needs
- Configure and developed custom notification events to triggers email notifications to Manager and Help Desk team.
- Generated reports of the account and devices inventories in the Cyber Ark.
- Retrieve CyberArk system/application password's and assist Database, Linux, Wintel, and Core Application Support teams when passwords are needed.
- To reconcile data received from the target source Horizon Manager and load it into OIM as well as provisioning functions, developed a custom file connector.
- Hands on experience Granting and revoking user permissions for server access
- Deploying of OIM for a 25000-user environment, to run Web Logic10.3.x stack and included connectors to Active Directory (with password sync), Oracle Internet Directory (OID), Exchange, and Oracle e-Business Suite.
- For all objects managed within the IDM system, implemented request workflows.
- Worked on creating configuration for criteria-based provisioning, membership rules and access policies.
- To improve the performance, fine-tuned Web Logic configuration and OIM & OIM configuration.
- Monitor Individual queue for tickets assigned, troubleshooting and repair of all aspects of operating systems and hardware.
- Granted administrative rights to users
- Evaluated various proof of concept functionalities such as User Provisioning, Reconciliation, and Orphan Accounts Clean-up, Work Flow management for Approvals, Re-Certification and Audit Trials, etc.
- Provided OIM support for fixing OIM Production issues
- Developed and arranged the Roles with access strategies to procurement the clients into the LDAP Group in OID.
- Provided tier 3 production support for IDM stack.
- Installation and configuration of Cyber-Ark vault, PVWA, CPM and PSM in Prod and DR.
- Experience with troubleshooting and customizing plugins, troubleshooting end user access and CyberArk training, troubleshooting production outages, working with CyberArk support to resolve issues.
Environment: OIM 11gR2, Web Logic, SOA, JDeveloper, JXplorer, XML, Oracle Internet Directory (OID) 11g, Oracle Virtual Directory OVD) 11g, Oracle Unified Directory (OUD) 11g, Windows 7, Red Hat Enterprise Linux 6, SOA.
Confidential, Deerfield, IL
Cyber Ark Support
Responsibilities:
- Installation and configuration of Cyber-Ark vault, PVWA, CPM and PSM in Prod and DR.
- Integrated CyberArk with both Radius and RSA Secured for dual factor authentication.
- Installed and configured Private-Ark Client to manage Vault server.
- Worked on PAM Operational tasks which includes Creating Safes, Defining Access Control, Policies/Platforms, User provisioning and entitlements, Managing Applications Credentials, Auto upload and User Access Policy Management.
- Performed Privileged Access Reviews, Compliance Reporting, Access Control Processes and other associated tasks with Privileged User Management.
- Actively participated in day to day operational support in adding and deleting accounts, applying policies, assigning safes, synchronizing failed accounts, Password rotations and Locking and unlocking accounts based on the requirement.
- Managed failed accounts synchronization and password rotations.
- Generated reports of the account and devices inventories in the Cyber Ark.
- Coordinated with Cyber Ark support teams for escalation and resolution of issues in Prod & DR.
- Configured Event notification engine (ENE) with Cyber Ark.
- Retrieve CyberArk system/application password's and assist Database, Linux, Wintel, and Core Application Support teams when passwords are needed
- Managed Safes and Server/ host addresses in Enterprise Password vault. Resolved issues in Cyber Ark's Central Password Manager to communicate with hosts to reconcile credentials.
- Monitor CyberArk reports and respond to failed password verification alerts and work with system account owners to resolve failure alerts
- On-boarded Privileged Accounts & Super User IDs in the Cyber Ark Safes using Bulk upload utility.
- Coordinated LDAP integration with AD and network security team to open firewall ports.
- Conducted privileged account onboards meetings with multiple lines of business and technology teams.
- Conducted privileged account onboards meetings with multiple lines of business and technology teams.
- Involved in version upgrades from 7.x to 9.x. Managed Vault, CPM and PSM infrastructure servers.
- Worked on REST API for automated provisioning of Safes, Accounts and Access Control.
Confidential
Security Engineer
Responsibilities:
- Installed and configured the LDAP Sun ONE Directory Server. Configured the multi master.
- Worked on Fine-tuning of Web agents and policy servers for optimized performance.
- Actively involved in the Requirement gathering for the enhancements to the existing project.
- Analysis and Implementation of the EJB code and making enhancements to the existing code.
- Installed, Configured and Maintained Policy Servers, Sun ONE Directory Server, Configured and maintained Policy Store, User stores and key stores in Sun ONE Directory Server.
- Created, Maintained Policy server objects Agents, Domains, Rules, Realms, Policies, and Responses.
- Intercept access requests for protected resources and work with the Policy Server to determine whether a user should have access.
- Implementing SSO (Single Sign-On) among the applications configured with NETIQ Access Manager.
- Design, Implementation and Unit Testing of different federation features. Creation of functional specification documents.
- Installed and configured WebSphere Application Server 6.0 and deployed various applications on it.
- Responsible for troubleshooting various production issues and providing root cause analysis.
- Managed JDBC connections and coordinated necessary changes with Oracle Database administrators.
- Configured WebSphere MQ as messaging system for applications deployed on WebLogic and WebSphere servers.
- SailPoint System.