Sr. Identity And Access Management Architect/sme Resume
Washington, DC
EXPERTISE:
- Confidential Identity Management 10.1.4, 11g R1, R2
- Confidential SOA Suite 10.1.3, 11g
- Confidential SSO Architect/Implementer
- Confidential Application Express (HTMLDB) 3.2, 4.0 Architect/Developer
- Confidential 11i DBA (11.0 11i Fin Manufacturing), R12
- Confidential 10g/11g DBA
- Confidential Developer Forms/Reports/Discoverer - 6i/9i/11g
- Confidential Parallel Server/RAC/OCSFS2
- RDBMS 10g, 11g, 12c
- Confidential Financials 10, 10.7
- Confidential ERP v11NCA, 11i, CRM, R12
- Confidential 9iAS r1, r2, AS10g
- Confidential Enterprise Manager 10g, 11g, 12c(Grid)
- Confidential WebCenter/ WebLogic/SOA Suite/ Confidential Service Bus 11g
- Confidential 9iAS/AS10g Architect/Administrator-Portal
TECHNICAL SKILLS:
- HP9000 T520/K Class
- HP Blade
- Sun E10000, E6000, E4000
- Sun E250, 450
- IBM RS6000
- Sequent NUMAQ
- DEC VAX 11/780
- MS - DOS
- WINDOWS NT
- UNIX
- HPUX, AIX, LINUX
- Solaris Ultrix
- VAX/VMS
- C, C++
- Java
- Turbo PASCAL
- COBOL, BASIC
- PL/SQL, SQL, TSQL
- ASP, ADO, HTML, JavaScript
- Shell Scripts, Python, Perl
RELEVENT EXPERIENCE:
Confidential, Washington, DC
Sr. Identity and Access Management Architect/SME
Responsibilities:
- Design 11gR2 Identity and Access Management Disaster Recovery Infrastructure for the current 10g Production Infrastructure with an Confidential RMAN Standby Database as well as an active Confidential Database and LDAP infrastructure to be used as a training environment for custom Java applications.
- Design Identity and Access Management Infrastructure as an upgrade to the current 10g OAM Production Infrastructure
- Design and Implement Confidential Federated Services thru OAM 11.1.2.3 with two-factor functionality using RSA tokens and PIV cards against ADFS LDAP store.
- Design 11g to 12c Database upgrade for Production and downstream environments
- Design changes in the custom Java Application to use 11g Weblogic Infrastructure and OAM SSO
- Installed and configured Confidential Identity and Access Management v 11.1.2.2.3 (OAM)
- Installed and configured Apache 2.2 Webgate v11.1.2.2
- Installed and configured HA Identity Management Infrastructure with Multi-Data Center option
- Upgraded and Integrated Confidential Forms and Reports (v11.1.1.2 to v11.1.2.2) into the redesigned custom Java application infrastructure
- Integrate Confidential Discoverer (v11.1.1.7) into the redesigned custom Java application infrastructure
- Integrated Application Express (APEX) v5.02 as a protected resource and created custom application to track historical OAM sessions of our dual-node Production infrastructure.
- Created all associated documentation (Architectural Design, Build Guide, Operational Guide and OAM Assessment)80% of the work is being done remotely
Confidential, Worcester, MA
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Contracted to serve as Identity Management SME and technical oversight on upgrading an existing 10g OIM infrastructure to 11g and including multiple infrastructures from various campuses. Originally involved in project in 2012 when constructing reply to an RFP.
- Project went over budget and I was called in help the administration (Presidents Office and the Security Department) understand the gaps in completing the project.
- Additionally worked on designing OAM/OIF interface into Confidential -based SP applications.
Confidential, Collierville, TN
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Design Identity and Access Management Infrastructure as an upgrade to the current 10g OAM Infrastructure
- Conducted Migration Analysis for 700+ 10g Policy Domains with associated artifacts and Reverse Proxy Farms to 11g OAM Infrastructure
- Installed and configured Confidential Identity and Access Management v 11.1.2.2.3 (OAM)
- Installed and configured Apache 2.2 Webgate v11.1.2.2
- Installed and configured HA Identity Management Infrastructure with Multi-Data Center option
- Designed new architecture to upgrade existing Ping Federate/10g OAM infrastructure in 11gR2 infrastructure
- Created all associated documentation (Architectural Design, Build Guide, Operational Guide and OAM Assessment) 50% of the work is being done remotely
Confidential, MA
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Installed and configured Confidential Identity and Access Management v11.1.2.2 (OAM)
- Installed and configured Confidential Identity Management v11.1.1.7 (OID, Confidential )
- Installed and configured Confidential WebTier and Webgate v11.1.2.2
- Installed and configured HA Identity Management Infrastructure
- Designed Organizational Hierarchy in OIM and create custom scheduled tasks to provision Hierarchy into OID DIT
- Conducted assessment of the R2 (11.1.2 base) Access Management infrastructure to determine viability of integration into the new OIM 11.1.2.2 infrastructure.
- Created all associated documentation (Architectural Design, Build Guide, Operational Guide and OAM Assessment)
- Provide additional consulting services in the redesign of OIM to OID LDAPSync
- 80% of the work is being done remotely
Confidential, Troy, MI
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Installed and configured Confidential Identity and Access Management v11.1.2.2 (OAM)
- Installed and configured Confidential Identity Management v11.1.1.7 (OID, Confidential )
- Installed and configured Confidential WebTier and Webgate v11.1.2.2
- Installed and configured Access Gate deployments multiple Confidential R12.1.3 instances
- Installed and configured multiple Confidential R12.1.3 instances for SSO provisioning/integration
- Debugged, identified and/or corrected all discovered problem points
- Installed and configured a synchronization or virtual methodology to integrate in Active Directory identities
- Installed and configured Kerberos subsystem using generated keytab files, Kerberos OAM Authentication Scheme and krb5.conf file on Linux.
- Provide documentation of efforts completed
- 100% of the work is being done remotely
Confidential, Aliso Viejo, CA
Sr. Confidential DBA
Responsibilities:
- Worked on Disaster Recovery design and implementation
- Worked on Siebel User Management Connector Design and Implementation
- Provided Production Support during Open Enrollment for all Identity Management components
- Worked to identity and resolve performance problems, configurations settings and implement best practices.
- Provided solution to anonymous browsing of protected resources configured to prevent header spoofing.
- 100% of the work is being done remotely
Confidential, Camarillo, CA
Sr. Confidential Java Developer/DBA
Responsibilities:
- Developed custom Java ETL process interfacing data from Confidential Peoplesoft to custom data model in SQL Server database.
- This was a replacement for the Confidential Gateway for SQL Server product because of poor-performance.
- 100% of the work is being done remotely
Confidential, Dover, DE
Sr. Confidential Identity and Access Management 11gR2 Architect/SME
Responsibilities:
- Review current infrastructure to make changes and additions to ensure a truly massively available environment.
- Assist in designing procedures for the onboarding of additional applications to the IAM infrastructure.
- Assist in designing procedures for change management as well as create proper DEV, TEST and QA environments that are properly maintained thru change management procedures.
- Assist in applying newly released Bundle Patches
- Install a jDeveloper environment with proper TFS and SOA extensions in order to maintain a sourced controlled development environment
- Work with Java Development team to properly create and deploy OIM customizations in Scheduled Tasks, UI, SOA composites and OES/APM integration points.
- Conduct a POC of the integration of an Confidential Identity Federation IdP with an 3rd Party SP using OpenID.
- 30% of the work was done remotely
Confidential, Hartsville, SC
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Designed and Implemented AS10g 10.1.4.3 environment on a primary and disaster recovery (DR) servers.
- Designed and Implemented OID 11g(11.1.1.5) with Weblogic ODSM on primary and DR servers
- Designed and Implemented ASR Replication between primary and DR servers.
- Designed and Implemented User Synchronization using OID 11g DIP server between Active Directory and primary server.
- Designed and Implemented Confidential Registration as partner applications into Primary Server.
- Designed and Implemented custom java plugin using jDeveloper to synchronize group members of AD group bootstrapped into OID into a customized user container in OID
- Created shell scripts and alias commands to control all aspects of process management for both the primary and DR sites. (i.e. opmnctl startup/shutdown/status or replication startup/shutdown/status, etc.)
- Tested both automatic and DNS failover to DR site and implemented tools to assist user in determining which site was the current active site.
- Documented all setup, configuration and management steps for all components
- 100% of the work is being done remotely
Confidential, Boston, Massachusetts
Sr. Confidential Identity and Access Management Architect/SME/Developer
Responsibilities:
- Using jDeveloper 11.1.1.5 created custom class for OIM Admin console custom tab for Unlock User account functionality for customer service representatives. Created all elements to add additional scheduled task that actually handled the Unlock account function.
- Worked on custom java code to send specific Notification Template to consultant different than FTE Notifications.
- Modifying existing java code to strengthen security functionality and to enable CSR to submit password reset as a scheduled task.
- Developed custom notifications for consultant/contractor managers to inform them of EndDated users. This involved custom Java code using OIM APIs, Scheduled Tasks and Notification Templates
- 100% of the work is being done remotely
Confidential, Massachusetts
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Installed and configured Confidential Identity and Access Management v11.1.1.5 (OAM, OAAM, OIM)
- Installed and configured Confidential Identity Management v11.1.1.5 (OID, Confidential )
- Installed and configured Confidential WebTier and Webgate v11.1.1.5
- Integrate SSO between custom OBIEE application and OAM,OAAM and OIM cluster using Confidential /OID
- Modify and maintain custom jDeveloper java code for provisioning/reconciliation between OIM and custom OBIEE application
- Configure OAAM policies, rules, groups and configurable actions in DEV environment to be promoted to TEST and PROD environments
- Document all installation, setup and configurations steps.
- Applied all relevant Bundle and One-Off patches as well create Confidential Support Requests for all unresolved issues
- Implement BI Publisher canned reports for the OAAM,OAM and OIM components
- Mentor client staff in the proper methods to maintain system.
- Evaluate Identity and Access Management (11.1.2) release 2 for future integration into environments.
- Loaded Geolocation Data from Maxmind for location granularity in OAAM
- 40% of the work is being done remotely
Confidential, Pittsburgh, Pennsylvania
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Installed and configured Confidential Identity and Access Management v11.1.1.5 (OAM)
- Installed and configured Confidential Identity Management v11.1.1.5 (OID, Confidential )
- Installed and configured Confidential WebTier and Webgate v11.1.1.5
- Installed and configured Access Gate deployments multiple Confidential R12.1.2 instances
- Installed and configured multiple Confidential R12.1.2 instances for SSO provisioning/integration
- Debugged, identified and/or corrected all discovered problem points
- Installed and configured a synchronization or virtual methodology to integrate in Active Directory identities
- Validate earlier effort and reorganize installation infrastructure as well as provide advice about best practices in an Enterprise level deployment.
- Provide documentation of efforts completed
Confidential, Arlington, Virginia
Sr. Confidential Identity and Access Management Architect/SME
Responsibilities:
- Install and configure Confidential Identity and Access Management v11.1.1.5 (OAM,OIM,OIF,OAAM)
- Install and configure Confidential Identity Management v11.1.1.5 (OID, Confidential, OUD)
- Install and configure Confidential SOA Suite v11.1.1.5
- Install and configure Confidential WebTier and Webgate v11.1.1.5
- Install and configure Application Express (APEX Release 4.1.1.00.23 ) as a protected resource using course grain authentication in OAM
- Assist in the integration of a proprietary TFA (Two Factor Authentication) plug-in into both OAM and Weblogic
- 100% of the work is being done remotely
Confidential, Atlanta, GA
Sr. Federated Identity ( Confidential, openSSO/AM, OIF) Architect/SME
Responsibilities:
- Serving as Architect and Implementer on an Atlanta-based project that seeks to construct a Federated Identity Provider portal for their 2nd and 3rd Tier Cable providers (2 million+ subscribers). Selected and building internal Confidential Identity and Service Providers Infrastructure.
- Will integrate the Identity Provider into the Confidential GO Service Federation but am making solution scalable to allow for additional OTT content.
- Additionally am building both OpenSSO/OpenAM and Confidential Identity Federation proof-of-concept Infrastructures to compare solution viability.
- 100% of the work is being done remotely
Confidential
Sr Confidential Identity and Access Management Architect/SME
Responsibilities:
- Install and configure Confidential Identity and Access Management v11.1.1.5 (OAM,OIM)
- Install and configure Confidential Identity Management v11.1.1.5 (OID)
- Install and configure Confidential SOA Suite v11.1.1.5
- Integrate new IDAM Weblogic Domain with existing Confidential WebCenter Domain.
- Integrate IDAM Components with Target Applications
- Architect User Provisioning/Migration/Reconciliation for all Target Application
- Plan all Unit and Integration Testing
- Plan environment migration
- Document all installation and configurations
- 100% of the work is being done remotely
Confidential, New Jersey
Sr Confidential Identity Management and Enterprise User Security Architect/SME
Responsibilities:
- Install and configure Confidential iDM v11.1.1.5 (WebLogic v10.3.5)
- Install and Configure Enterprise Security Manager 10g
- Install and Configure Enterprise Grid Control 11g with EUS Link
- Configure Confidential Internet Directory thru ldap utilities and shell scripts as well as thru Confidential Directory Service Manager (ODSM)
- Configure LDAP-based Replication with remtool and/or Confidential 11g Enterprise Manager WebLogic Console
- Map Enterprise Users to Enterprise Roles, Shared and Exclusive Schemas, Proxy Users/Authentication, Global Roles and mapping to System, Role and Object Database Privileges in both 10g and 11g Database environments
- Document all installation and configurations
Confidential, Seattle, WA
Sr Confidential SSO DBA
Responsibilities:
- Tasked to install and configure CA Siteminder/Active Directory, Confidential Internet Directory and E-Business Suite 11i Single Sign On (10g SSO) Integration.
- Environment was unusual as Confidential “FND USER” was the source of truth for synchronization of the OID and Active Directory LDAP stores.
- Configure OID to Active Directory SSL for synchronization of reverse encrypted passwords flowing from Confidential to Active Directory using DIP servers
Confidential, Troy, MI
Sr Confidential SSO DBA
Responsibilities:
- Tasked to install and configure Active Directory, Confidential Internet Directory and E-Business Suite 11i Single Sign On (10g SSO) Integration.
- Environment included ASM, RAC and OID 10g LDAP for TNS Service Resolution in a mixed Linux and Solaris 64-bit configuration for the Development, QA and Production deployments.
- Guided permanent staff through the construction of additional environments using hands-on exercise and documented instructions.
Confidential, Wayne, PA
Sr Confidential SOA Suite DBA
Responsibilities:
- Installed, configured and maintained Weblogic Server 10.3.3
- Installed, configured and maintained SOA Suite 11.1.1.3
- Installed, configured and maintained Confidential Service Bus 11.1.1.3 (OSB)
- Installed, configured and maintained Confidential Enterprise Repository 11.1.1.1.3
- Installed, configured and maintained Enterprise Manager Grid Control 11.1.0.1/SOA Management Pack
- Installed, configured and maintained Confidential BI Enterprise Edition (OBIEE) 11.1.1.3
- Configured JMS Resources ()SAF, Messaging Bridges)
- Configured Active Directory Integration to Weblogic
- Weblogic SNMP integration to CA Spectrum
- Weblogic SMTP integration
- Configured jDeveloper with SOA/OSB environment
- Created Python, Shell and SQL scripts as needed
- Approximately75% of the work is done remotely
Confidential, Dallas, TX
Sr Confidential Application Server DBA
Responsibilities:
- Assist with the migration and update of several applications (HTML/JSP/Forms/Reports/Discoverer) in an Confidential Portal/Application Server (10g SSO) environment.
- Assist in understanding the Transport Set export/import process from the various deployed environments.
- Assist in making changes to the Reverse Proxy server that exposes Portal applications to the external clients.
- Provide Administrator training for key administrative personnel
Confidential, Columbus, IN
Sr Confidential Applications ( Confidential ) DBA/SSO/OID Suite Architect/SME
Responsibilities:
- Provided consulting services to deploy 10g Application Server (10g SSO) components in a development environment related to: a) Confidential Single Sign-On (OSSO) b) Confidential Internet Directory (OID)
- Assisted with strategy and providing necessary expertise to architect a global roll-out plan to support security for multiple (12+) eBusiness Suite ( Confidential - 11i and R12) instances with F5 BigIP Load Balancers and Local DNS (RoundRobin) for non-load balanced sites
- Assisted with integrating existing Siteminder with Confidential via OSSO
- Assisted with strategy and design necessary to architect Confidential Virtual Directory ( Confidential ) services
