Idm Consultant Resume
OH
SUMMARY
- Over 8+ years of experience in Installation, Configuration, Deployment and Maintenance of Web Application servers, Web servers, LDAP servers, Ping ID, Sun One, Site Minder components like the Policy Server, Web Agent, Policy Store and Key Store and also the identity minder components like Provisioning server, IDM server, Control minder and JBoss
- Administration and Configuration of CA Siteminder version R6.0/12.x/12.5x/R12 on the cross platform with diversified web servers to the Web Agents and policy Servers.
- Migrated SiteMinder 6.0 to 12.5x in both development and production environments (QA, UAT and Production).
- Expertise in working with web servers - IHS (IBM HTTP Server),Sun One Web server, IISand Apache Web servers and configurations. Excellent working knowledge with Netegrity Site minder while maintaining the security for WebSphere and other Web servers.
- Installed, configured and integrated Web servers (plug-in file), SiteMinder Web agents and LDAP user directory with Websphere Application Server.
- Maintain the production/ DEV / UAT and testing environment.
- Experience in installation and configuration of iPlanet/Sun ONE, Apache, IHS and IIS Web Servers in various environments like Sun Solaris, Red Hat Linux, IBM AIX and Windows 2003/2008 and Integration of the same with the WebSphere.
- Develop architecture and strategies for integrating diverse business applications into SSO, set ‘IT Security standards, design the architecture for various SSO integration profiles like - Certificate based authentication, Radius authentication, header based authentication, Agent API solution etc
- Good knowledge of implementing RSA token Authentication.
- Good exposure in implementing the SAML based Single Sign-on (SSO) and Single Log-Out (SLO) involving service with third party applications.
- Design the architecture for different integration options, ex: IDP initiated SSO, SP Initiated SSO, Artifact and POST profile, Open SAML API, using integration adapters to integrate third party applications like Salesforce, People soft etc.
- Extensive experience in Installation configuration and maintenance of Netegrity SiteMinder Policy Server version 5.x/6.x and implement Single Sign on (SSO) with various web servers like Apache, IIS and SunOne.
- Used CA Identity Manager 8.1 tool, which helps automated workflow around the creation, management and deletion of user accounts and entitlements.
- Experience in Installation/configuring and troubleshooting the Web Servers (IIS5.0/6.0, Apache, Tomcat, IBM-Domino, IBM Http Server and SunOne 6.0, 7.x).
- Experience in Performance Tuning of SiteMinder Policy Server and the Operating system to boost the overall throughput. Working experience in Integrating with WebSphere Portal Application Server driven Portal along with CA Siteminder as Identity Provider and CA Identity Manager.
- Working Knowledge in analyzing the logs (trace logs, logs) and Trouble Shooting issues in Integration of other applications usingCA Siteminder (Access Management) and Identity Management toolsalong with LDAP and Web-server agents.
- Working experience in the development ofWebsphere Portals, Portlets, CA-Siteminder Single sign-on Services with Siteminder configurations (setting up policies, realms, rules and responses), Google Federation along with posting credentials to FCC from a custom Application Login JSP/HTML pages, Control Minder and Governance minder.
- Working Knowledge in analyzing the logs (trace logs, logs) and Trouble Shooting issues in Integration of other applications usingCA SiteMinder (Access Management) and Identity Management toolsalong with LDAP and Web-server agents.
- Installed, configured and maintained Siteminder policy servers by integrated with LDAP for Policy Store.
- Experience in using Networking Protocols for client server applications likeTCP/IPsocket programming.
- Excellent communication and interpersonal skills. Highly motivated, detail oriented and organized with the ability to multi-task projects, maintaining a high degree of proficiency
TECHNICAL SKILLS
SSO: SiteMinder R12/6.x/5.x/4.x, Policy Server, Web Agents 4.x type agents, 5QMR6, 5QMR7, 5QMR8, 6QMR4,6QMR5
Directory: SunOne 5.x, Iplanets, Netscape Directory server 4.x, MS Active Directory, IBM-Tivoli Directory Server
Servers: IIS, SunOne Web Server, Apache, Tomcat, SunOne App Server, WebSphere, Weblogic, IBM Http Server, JBoss
Languages: C/C++, Java, J2EE, Jsp, Servlets, HTML, Java Script, shell, perl, php, .NET Framework(VB.Net,C#,ASP.Net)
Operating Systems: Windows2003/2000/XP, Windows 98, UNIX, Sun Solaris, Linux, DOS,IBM-AIX,HP-UX
Databases /RDBMS: MS SQL Server 2000/2005/2008/ R2, PL/SQL, SQL, Oracle 8i/9i/10g
Security: Netegrity/CA SiteMinder 5.x/6.x.
Identity Management Tools: CA Identity Manager r12.6/r8.1, Sun Identity Manager 8.0/7.1/6.0, Ping identity and access management
Design Methodologies: Unified Modeling Language (UML) 1.0, Rational Rose, Rational Clear Case, Rational Requisite, MS Visio, ERWIN
PROFESSIONAL EXPERIENCE
Confidential, OH
IDM Consultant
Responsibilities:
- Installed Siteminder Web agents and configured across various Web Servers (Apache, IBM Http, IIS) across all environments (DEV, Test, Stage & Prod).
- Providing operational support and maintenance for the Identity& Access Managementteam, overlooking the installation, configuration and troubleshooting of Identity Manageron policy server & web server.
- Worked closely with application team for testing and sign-off of migration activities inproduction and non-production environments.
- Monitoring the SiteMinder policy servers via CA Wily Intrascope, during performancetesting.
- To perform daily infrastructure and application checkouts for Development, Test, Stageand production distributed through CA Site minder 12.x console.
- Hands-on configuration of cloud/on - premise solutions, Ping Federate SAML/OAuth configurations, ADFS / Site minder, Microsoft CA’s, OpenSSL, SQL queries, LDAP, Puppet Master/Clients and automating deployment packages.
- Managing federation partnerships via Ping Fedrate on a day to day basis, which involves provision users to cloud applications using Ping 3rd party plugins.
- Managing User Roles in Access Control Enterprise Management.
- To gather requirements from the application team and to configure/modify access securityas required, during implementation and testing phases of the project.
- To analyze, support, troubleshoot and administer the Siteminder agent installed on theWeb server.
- Analyzing the logs (trace logs, logs) and Trouble Shooting issues in Integration of otherApplications
- .Implementing SSO (Single Sign On) functionality between various applications used.
- Configuring CA Siteminder System objects like Agents, Agent Conf Objects (ACO), Host
- Conf Objects (HCO), User Directories, Domains, Administrators and Schemas.
- Configuring Domain objects like Realms, Rules, Responses and Policies.
- Configuring User Authentication Stores, Policy Stores and Key Stores on LDAP andmaintained replicated environment for load balancing and failover.
- Automated Identity Management tasks such as user provisioning and application accessbased on each user's relationship with role within our organization using CA IdentityManager.
- Setting up keystore and policy store data and setting up super user password integratedwith LDAP.
Environment: CA Siteminder Policy Server v 5.2/6.0/12.5 , Web Agent 5QMR7, 6, Apache Web Server 2, BEA Web logic 8.1 SP2, JSR168, JSR 286,Web sphere Portlets,Web Sphere 6, Oracle RDMS, Korn shell scripting, Perl, XML,SoA/Web services Security, UNIX, Windows Active Directory.
Confidential, IA
IDM /LDAP Security Analyst
Responsibilities:
- Implementing SSO (Single Sign On) functionality between various applications utilizing Sun’s Identity Manager and Access Server, Ping Federation Server, and SAML.
- Configuring CA Siteminder System objects like Agents, Agent Conf Objects (ACO), Host
- Conf Objects (HCO), User Directories, Domains, Administrators and Schemas.
- Configuring Domain objects like Realms, Rules, Responses and Policies.
- Configuring User Authentication Stores, Policy Stores and Key Stores on LDAP andmaintained replicated environment for load balancing and failover.
- Automated Identity Management tasks such as user provisioning and application accessbased on each user's relationship with role within our organization using CA IdentityManager.
- Installed, Configured, Administered and Monitored Netegrity SiteMinder Policy Server (5.5/6.0), CA IDM r8.1 and Sun One Directory Server 5.2/6.x/7.0 on UNIX, Linux, Windows and Solaris platforms.
- Provide on-call support for CA IDM systems as required.
- Installed, configured and integrated Web servers (plug-in file), SiteMinder agents and LDAP user directory with WebSphere Application Server.
- Automated Identity Management tasks such as user provisioning and application access based on each user's relationship with role within our organization using CA Identity Manager.
- Provided direction and oversight into the IAM (Identity & Access Management) functions across the organization, including areas such as Federation, Privileged Access Management, Authentication & Authorization, Security and Provisioning Identity Data.
- Federated identity management architectures (open ID, cookie based, SAML) and implementation (Ping Federate Oracle).
- Experienced with SiteMinder policy server log files for Troubleshooting Site Minder environment
- Fine tuned response time by configuring Site Minder Agents, DIT’s & LDAP parameters
- Installed & Configured SiteMinder Policy stores, Key stores, User stores and Integrated with LDAP.
- Effectively used Distinguished Name (DN) LDAP search parameters techniques in Sun One Directory Server
- Worked on defining channels using SSL certificates
- Configured enterprise applications and corrected performance problems by monitoring server availability and resource utilization analysis using Perfview.
- Working on Identity Provider and Service Provider agreements.
Environment: SiteMinder 6.0sp5, r12 sp3, Ping Federate 4.4/5.0, Web agents 6QMR4, 6QMR5 Active Directory Server, Windows 2003/2008, and Red hat Linux with Apache 2.2 and IBM HTTP Web Server, IIS 5.0, 6.0 and 7.0.
Confidential, PA
IDM Consultant
Responsibilities:
- Installed, Configured and Managed CA IDM.
- Migration of policy server from SiteMinder 5.5 to 6.0 for Load balancing, and failover configuration of the Policy store.
- Configured and Defined the Policy Domains, User directories, Rules, Realms, Policies and Responses in CA IDM.
- Configured IBM HTTP Web server, SiteMinder to work with WAS.
- Worked on OneView Monitor statistics, error corrections for possible problems, reviewed SNMP events for possible problems and worked on the status of SiteMinder P1 tickets.
- Worked on CA IDM Platform Support Matrix for changes.
- Worked on installation and support of CA SiteMinder products like Web Agent, TAI Agent.
- Reviewed and updated CA IDM policy and procedures to development teams.
- Designed SiteMinder architecture and implemented changes based on capacity planning.
- Created, Configured and Administered Profiles, Clusters, Nodes and Node Groups for WebSphere Application Server.
- Used One View Monitor in SiteMinder for identifying performance bottlenecks.
- Monitored heartbeats and refresh rates for various components of CA IDM.
- Experienced in creating and maintaining security policies for CA IDM.
- Configured Node manager for administration of Managed servers.
- Installed and configured Wily IntroScope Enterprise Manager with agents.
- Responsible for deploying enterprise applications from Admin console and enabling security using LTPA and LDAP for admin console and application components on AIX.
- Configured SSL for WebSphere Application Server for security reasons.
- Experience in implementing failover and load balancing schemes between WebAgents and Policy Servers and also between PolicyServers and LDAP.
- Experienced in setting up integrated security access to the portal and Single Sign-On.
- Implemented clustering and worked on analyzing the scalability of applications with the help of tools like IBM Tivoli Site Analyzer.
- Used ANT script to automate loading Users and User Groups into Active Directory (LDAP), and XML based EAR/ WAR deployment.
- Responsible for deploying enterprise applications from Admin console and enabling security using LTPA, LDAP for admin console and application components on Windows.
- Updated Latest Fix-pack 6.1.0.13 for AIX.
- Problem determination using local error logs and by running user & service traces.
- Trouble shooting of errors in both Application and JVM, also analyzed heap or core plus error logs
- Involved in setting up JVM tuning parameters and used garbage collection.
- Assembled and deployed the application in production, staging for following change management practices.
- Regularly attended meetings on behalf of Middleware Team & co-ordinate with different teams for task accomplishment.
Environment: Netegrity SiteMinder 5.x/6.x, Identity Manager 6.0, Web agents 5.x/6x, Webshphere 5.x,/ 6.x, Apache 2.x, IIS 5.0/6.0, Sun ONE Directory Server 5.2/6.1, SAML, XML, LDAP, LDOM 1.1, Solaris (10), Unix, Linux, Sun Iplanet6.0/6.1, IIS 5.0/6.0, ANT, JACL, Foglight, Unix shell scripts, Jython, Struts, Hibernate, Java/J2SE 1.4, J2EE 1.3, Eclipse, SOAP, UDDI, IBM Rational ClearCase.
Confidential, LA
SiteMinder Admin
Responsibilities:
- Expertise in providing security to applications and application servers and setting up SSO in Web Sphere environment in both Production and Non-production environments.
- Enabled Single Sign-On across Web servers in a single cookie domain or across multiple cookie domains without requiring users to re-authenticate.
- Used Configuration wizard and builder extensively to create and manage Web Logic 8.1.
- Worked on Creating for security policies for the SiteMinder.
- Configured and setup Secure Sockets Layers (SSL) for data encryption and client authentication.
- Deployed the web applications and maintained on multiple Web Logic Servers.
- Configured Web Sphere resources like JDBC providers, JDBC data sources, connection pooling and Java Mail sessions.
- Created Data sources, Queue and Topic connection factories, Virtual hosts etc.
- Involved in Configuring and updating IBM Http Server Plug-in to work with WebSphere Application servers on routine basis.
- Wrote wsadmin scripts to automate application deployments, to update configuration changes.
- Developed Crontab scripts for timely running jobs and provide server status.
- Created Queue Managers, Channels and Clusters in WMQ 5.0.x.
- Involved in integration testing for third party API integration.
- Provided Support to internal teams in solving Test Environment and Production issues.
- Responsible for Support and reliable maintenance of the applications on different platforms for on-going application development.
- Configured Workload Management (WLM) using server groups in WAS 4.x and Server clusters in WAS 5.x.
- Performed routine management of Web Sphere Environment like monitoring Disk Space, CPU Utilization.
- Provided operational and on-call pager support for assigned applications
Environment: JDK 1.4/1.5, J2EE, JSP, Servlets, EJB, JDBC, XML, DB2 8.X, CA SiteMinder 5.X/6.X, LDAP, Sun ONE Directory Server 5.X/6.X, Sun Identity Manager 7.0/8.0, Sun ONE 7.0/6.1, Tomcat 5.5, Apache 2.0, WebSphere MQ, Wily Introscope 7.0/7.2, Ant, WLST, AIX, Solaris 8/10, Windows 2000