Siteminder Global Opertions Engineer /ca Identity Manager Resume
WI
SUMMARY:
- Around 8 years of experience in Information Technology, which includes demonstrated work experience in the design, development, testing and implementation of enterprise wide security applications using CA SiteMinder, Sun One LDAP Directory, CA Directory server, Active Directory and other Sun/Netscape/iPlanet/IBM products on Windows, Unix and Linux.
- Working as a Security system architect, implementing security solutions to Web applications. Experience in the field of core System Administration for Linux, Windows, and Solaris.
- Involved in analyzing planning and implementing Single Sign - On on multiple Cookie Domain and internet security to Enterprise level web applications using CA SiteMinder integrated with Sun One LDAP Directory, Active Directory.
- Experience in setting Single Sign-On environment. Experience in integrating SSO products (such as Netegrity SiteMinder and SunOne LDAP, Novel LDAP) with existing middle-ware applications (webLogic and JBoss).
- Experience in installing, configuring SiteMinder policy server, Web agents, Sun One Directory server (LDAP) and various Web & Application servers on Multiple platforms like windows, unix(solaris), rhel.
- Experience in debugging of authentication / authorization related issues and creating Rules, Responses, Realms and Policies in SiteMinder.
- Worked on CA secure proxy server to authenticate the users.
- Worked on Ping federate to allow users to single sign on with other third party applications.
- Integrated both IDP and SP initiated SSO using Ping Federate.
- Installed and Configured Ping Federate Servers on both Windows and Linux environment.
- Worked on HTML, Basic, Composite and open token Adapters in Ping federate.
- Integrated WStrust connections to create saml for Soap based webservices.
- Protected Restful API’s using OAuth in Ping Federate so that it can be accessed only with Access Tokens.
- Worked on ID Tokens to send the user Profile with Access Token using user info end point.
- Worked on Ping Access Integration with Ping federate to Protect the applications using Ping Access Tokens.
- Installed and configured Ping Access servers, Gateways and Agent to protect the resources.
- Enforced the Ping Access policies to authorize the user for a protected resource.
- Integrated OAuth with Ping Access to protect rest full API’s.
- Worked on CA Wily Introscope 9 to monitor the webagent and Policy Server stats and performance.
- Worked on Tivoli monitoring system to get the statistics from policy server using SNMP.
- Worked on Active Directory being as User Directory and also Policy Store for the Policy Server R12 and R12.5 on Win2008R2 and Win2k12.
- Over 2 years’ experience providing federation solutions using SAML 2.0, Ping Federate and CA SiteMinder Federation Service.
- Successfully completed version upgrades from CA SiteMinder R6 to R12,R12 to R12.5 involved in the Sun One directory server upgrades from version 4.x to 5.1 and 5.1 to 5.2, 5.2 to 11g.
- Implemented Session Linker, SAP Agent installation (upgrade from 5.6 to 12), PeopleSoft agent, WebSphere agent and WebLogic ASA agent.
- Experience in FORM based authentication and X.509 certificate based authentication.
- Experience in SAML based authentication 1.1 and 2.0 using SiteMinder Federation.
- Experience in Ping Federation using SAML and integrated with SiteMinder authentication.
- Experience in creating Custom Authentication Schema.
- Worked on CA Identity Management in order to provision the users and to get their roles.
- Worked on Oracle IDM for provisioning and also experienced in working on connectors both inbuilt and custom.
- Consistently improved SiteMinder and LDAP performance, High availability. Designed and implemented solutions for load balancing, fail-over. And monitoring the growth capacity planning
- Experience in creating Custom Responses using Siteminder Api and SmWalker.
- Experience in configuration and administration of SiteMinder Policy Servers, Policy Stores and User Stores created in Sun One Directory server (LDAP).
- Experience with LDAP Architecture includes DIT and Replication Mapping between replica hub/consumer, Multi-Master/Single-Master in Sun One Directory server.
- Fine-tuned and set up High availability with LDAP and SiteMinder. Tested and implemented back up, recovery. Experienced with, Failover, Load Balancing and other Administration tasks.
- Experience in installing and implementing Web Application servers IIS, Apache, iPlanet/Sun/Oracle Web servers, IBM http web server, Apache Tomcat, iPlanet App server, web logic, web sphere.
- Installed and configured web agents on IIS, Apache, Sun Java System/iPlanet web servers on Multiple Platforms.
- Experience in Developing Web Applications using HTML, JavaScript, CSS, PHP, Perl, Mysql involving cookies and sessions.
- Experience in developing applications using java, j2ee and using databases oracle 10g.
- Excellent communication skills and good Interpersonal skills helped me to keep productive and positive w
TECHNICAL SKILLS:
O/S: Windows 2008/2003/2000/ XP, Windows 98, UNIX, Sun Solaris, Linux, DOS, IBM-AIX,HP-UX
Languages: C/C++, Java,J2EE,Jsp,Servlets,HTML, Java Script, shell,perl,php,.NET Framework(VB.Net,C#,ASP.Net)
SSO: SiteMinder Policy ServerR12.5/R12/ 6.x/5.x/4.x, Web Agents 4.x type agents, 5QMR6, 5QMR7, 5QMR8, 6QMR4,6QMR5,R12 agents, SAP Agents 5.6/12 and Session Linker r12,Ping Federate 6.0/7.0/8.0, Ping Access
Directory: SunOne 5.x, Iplanets, Netscape Directory server 4.x, MS Active Directory, Oracle Directory Server 11g, IBM-Tivoli Directory Server.
Servers: IIS, SunOne Web Server, Apache, Tomcat,SunOne App Server, WebSphere,Weblogic,IBM Http Server,JBoss
Security: Fraud Detection Service by Verisign, Nice Actimize
Databases /RDBMS: MS SQL Server 2000/2005/2008/ R2, 2012/R2, PL/SQL, SQL, Oracle 8i/9i/10g
PROFESSIONAL EXPERIENCE:
Confidential, WI
SiteMinder Global Opertions Engineer /CA Identity Manager
Responsibilities:
- Worked closely with application teams to understand their architecture and requirements which helps me to design the solution for each usecase
- Worked on Active Directory which is been used as Primary Userstore and also as Policy Store for the Policy Server.
- Integrated many applications in Policy server by creating a new policies.
- Installed and configured various web agents in accordance with the web servers involved both on Windows and Unix.
- Created policies, realms, rules and responses to protect the applications and configure them to work under the SSO environment.
- Upgraded Policy servers from R12 sp3 to R12.52sp1.
- Installed, configured and administered, SiteMinder, on Windows 2003,2008, 2012 R2 Server. Implemented SSO across multiple domains.
- Involved in migration project, where actively worked with Application owners in Upgrading the web agents version from 6.0 to 12.52
- Working on federation single sign on between third party vendors making both inbound and outbound calls security exchanging the attributes in SAML both as identity and service provider.
- Worked on Installing and configuring Ping Federation server for both IDP and SP connections.
- Protected Rest Full Api’s using OAuth in Ping Federation.
- Upgrade Ping Federate from 7.0 to 8.0.
- Worked on Ping Access POC to migrate applications from Siteminder to Ping Access.
- Integrated Ping Access with Ping Federate servers to Authenticate using custom Adapters.
- Working on CA Identity Management in order to provision the users and to get their roles and manage user passwords.
- Working on CA Identity Manager for bulk password reset for multiple users. Created Password policies in Policy express for random password generation.
- Gave 24/7 support during datacenter failover for Load balancing between data centers for various SiteMinder components in different environments.
- Worked on creating Authentication Schemes and Password policies as per business requirement.
- Worked extensively in installing and configuring policy server, web agent option pack for federation web services.
- Created open SSL certificates for federation services.
- Working on configuring IDP Initiated and SP initiated SAML with different bindings like Http post and Http Redirect.
- Worked on troubleshooting Production Issues by Analyzing logs and used fiddler tool for Detailed Analysis.
- Providing 24*7 Production on call support.
Environment: SiteMinder 12.52 sp01 CR01, Web agents 6.x, 12x Sun One directory server 5.2 and IBM HTTP Web Server, jdk1.6.0 45, CA Identity Manager 12.6.2, IIS 7.0, 8.0
Confidential, NJ
Sr. SiteMinder Consultant/ CA Identity Manager
Responsibilities:
- Designed the Complete solution to build a parallel environment for the Policy Server upgrade from R6 to R12sp3, this includes getting the new machines and installing the R12 policy server, importing the policy server objects and registering the web agents to the new policy server.
- Developed customer authentication schemas for user to login using java.
- Working closely with application teams to understand their architecture and requirements which helps me to design the solution for each usecase.
- Working on SiteMinder Policy Server R12cr11, this includes installing, configuring on windows2008 server.
- Upgrading Policy Server Version from R12cr5 to cr11 and testing the functionality to meet the business units.
- Upgrade Policy Servers from R12 sp3 to R12.52 on windows platform.
- Worked on Performance metrics of Policy Server by changing the socket, threads count.
- Upgrading the SiteMinder webagents from R6 to R12 on Linux and solaris platforms.
- Developed few batch and perl scripts to automate the dump process when the process fails during its normal run.
- Worked on Active Directory which is been used as Primary Userstore and also as Policy Store for the Policy Server.
- Worked on a POC using ADLDS and ADFS (Active Directory Federation service) to integrate Single sign on with third party vendors.
- Worked on Ping federation to allow users to SSO to third party applications both as IDP and SP.
- Upgrade Ping Federate from 6.0 to 7.0.
- Worked on Multifactor authentication to provide the users with questions or eotp depending on the anomaly engine score.
- Worked on policy server upgrade from R12sp3 to R12.52sp1.
- Provided Impersonation, Share point, HR Services, Sales Force solution using PingFederate and SiteMinder.
- Working on federation single sign on between third party vendors making both inbound and outbound calls security exchanging the attributes in SAML both as identity and service provider.
- Worked on CA Wily to Monitor the Policy Server and agent performances.
- Developed core features like Membership provider, Role provider, Templated user controls, Security Token, Federation, Config encryption/decryption, ControlTest, ProviderTest and FederationTest applications.
- Implement Security Token features to call web service if it is protected with cookie or client certificate. Implement encryption/decryption of XML config. Implement (SAML) XML-based standard for exchanging authentication and authorization data between security domains.
- Provide both inbound and outbound federation Using Siteminder both as Identity P provider and Service Provider.
Environment: SiteMinder 6.0/R12, Web agents 4.x,5.x,6.x,R12 Sun One directory server 5.2/ iPlanet Directory Server, Sun Solaris 2.8, Sun Java System Web Server 6.0,7.0/Oracle iPlanet Web Server and IBM HTTP Web Server, IIS 6.0/7.0/7.5, PingFederate 6/7.
Confidential, MN
SiteMinder Lead/ CA Identity Manager
Responsibilities:
- Worked on SiteMinder and RSA adaptive authentication to make the application remembering the device with which users logged in.
- Worked on open oauth and API’s.
- Developed few scripts to install the agents on IHS instances as part of Automation.
- Worked on Identity Manager to Provision the users into IDM and assigning the respective roles.
- Worked on both CA and Oracle IDM to on board the applications to follow one unique way of provisioning the user and getting the entitlements.
- Involved in Upgrading the SiteMinder Policy Server version from 6.0sp5 to R12.
- Worked on latest version webagent 12.0sp3 cr08 on multiple platforms.
- Providing 24*7 Production on call support on Multiple platforms.
- Integrated Custom applications with SiteMinder by designing required Architecture.
- Installed Report server and Report database for auditing.
- Worked on Identity Provider and Service Provider agreements, Installed and deployed Ping Federation and involved in making secure connection and sending SAML attributes both inbound and outbound calls.
Environment: SiteMinder 6.0sp5, r12 sp3, Web agents 6QMR4,6QMR5,R12 Active Directory Server, Ping Federate, Windows 2003/2008, Red hat linux with Apache 2.2 and IBM HTTP Web Server, IIS 5.0 and 6.0 and 7.0.
Confidential
SiteMinder Admin/Architect
Responsibilities:
- Integrated many applications in Policy server by creating a new policies.
- Installed and configured various web agents in accordance with the web servers involved both on Windows and Unix.
- Configured few applications with Custom responses and with custom authentication schema.
- Implemented password policies for all the applications using SiteMinder.
- Created policies, realms, rules and responses to protect the applications and configure them to work under the SSO environment.
- Configured load balancing and failover mechanisms for various SiteMinder components in different environments.
- Upgraded SiteMinder Policy server from version 6.0 sp1 to 6.0 sp5.
- Worked on almost 60 policy servers in production environment.
- Configured multi-master replication setup in the production environment across multiple data centers.
- Configuring User Authentication Stores and Policy Authorization Stores on LDAP.
- Installed and Configured MDHA Authentication Servers.
- Installed and configured webagents on IIS Web Server, IHS Web Server.
- Installed and configured Oracle websphere and Worked on bridge between SiteMinder Policy Server and Websphere.
- Provided 24/7 on call support for solving Tickets on a rotating basis with other team members.
- Worked on many Production Issues with High Priority.
Environment: SiteMinder 6.0sp5, r12 sp3, Web agents 6QMR4,6QMR5 Active Directory Server, Sun Solaris 2.8, Windows 2003/2008, Sun Java System Web Server 6.0,7.0/Oracle iPlanet Web Server and IBM HTTP Web Server, IIS 5.0 and 6.0 and 7.0.
Confidential
LDAP/ Siteminder Consultant
Responsibilities:
- Performed SiteMinder Policy Server and Web Agent installation, and upgrades including Quarterly Maintenance Releases, Service Packs and Solution Modules for SiteMinder.
- Installed, Configured and administered Sun One Directory Server, Novell eDirectory. Designed and implemented SSO and authentication using SiteMinder.
- Integrated new applications with SiteMinder, including IPlanet Web Server, IIS, and IPlanet Directory Server, across multiple environments including Windows, Solaris, NT, and Linux.
- Implemented password policies for all the applications using SiteMinder.
- Responsibility includes maintenance of the system by installing and upgrading the application packages for Siteminder Policy server, Web servers and LDAP.
- Involved in performance tuning activities for SiteMinder and Sun One LDAP Directory Server.
- Installed and configured Apache, Microsoft IIS and Sun iPlanet web servers, Weblogic application servers, with Netegrity Siteminder authentication, and Sun One LDAP Directory Server.
- Installed and configured various web agents in accordance with the web servers involved.
- Configured various policies, Realms, Rules and Responses in Policy Server in order to protect the Resources efficiently.
- Monitoring of SiteMinder server logs for identifying problems with Authentication and authorization of users.
- Worked on backup, recovery of userstores in Sunone LDAP Directory Server and configured Load Balancing, Failover mechanisms.
- Responsible for providing 24x7 on call Siteminder support.
Environment: Windows Server 2003, Unix(AIX), Netegrity SiteMinder 5.0, 6.0 sp4, web agents 5.x,6.x, Sun One Directory Server 5.2, Novell eDirectory, Sun One Directory, IIS Webservers 5.0,6.0, proxy server/iPlanet Proxy server, IBM HTTP Web server, BEA Weblogic 8.1.