We provide IT Staff Augmentation Services!

Technical Lead Resume

3.00/5 (Submit Your Rating)

PROFESSIONAL SUMMARY:

  • Over 8+Years of experience which includes demonstrated work experience in the design, development, testing, implementing enterprise wide security applications using CA SiteMinder , Ping Federate , Ping Access CA Identity manager, CA identity minder, CA Directory server and SunOne LDAP Directory , Active Directory and other products on Windows / Linux .
  • Extensive hands - on experience with PingFederate around new connection setup, adapter integration and troubleshooting.
  • Worked on Ping federate to allow users to single sign on with other third-party applications.
  • Integrated both IDP and SP initiated Confidential using Ping Federate. Installed and configured Ping Access servers, Gateways and Agent to protect the resources.
  • Installed and Configured Ping Federate Servers on both Windows and Linux environment as engine and admin nodes and configuring servers in clustering environment.
  • Worked on HTML, Basic, Composite and open token Adapters in Ping federate.
  • Protected Restful API’s using OAuth in Ping Federate so that it can be accessed only with Access Tokens.
  • Worked on ID Tokens to send the user Profile with Access Token using user info end.
  • Worked on Ping Access Integration with Ping federate to protect the applications using Ping Access Tokens.
  • Worked on integrating with various web applications with IDP and SP initiated Single Sign on by Setting up SAML federated services, certificates, and assertions.
  • Enforced the Ping Access policies to authorize the user for a protected resource.
  • Experience in analyzing the logs (trace logs, logs) and Trouble Shooting issues in Integration of other applications using CA SiteMinder (Access Management) and Identity Management tools along with LDAP and Web-server agents and SiteMinder federation services.
  • Adapted installation and integrated software infrastructure with business applications, Single Sign on ( Confidential ) integrations by interfacing with application developers, business support, and business implementations teams.
  • Developed multiple Policy Xpress to trigger on various tasks also to generate standard company requirements like generation of unique ID's, passwords, emails, record entries.
  • Hands on experience in Windows 2012/2008/2003 , Experience in Active Directory Services, GPOs, DNS, AD Trusts & Routing, DHCP, File & Print Server, IIS (Web Server), FTP, Terminal Server, Microsoft Clustering, Exchange Mail Server .
  • Created and executed LDAP queries in ADSI scripts, constructing Exchange policies for the enterprise and creating management reports for auditing activities .
  • Automated Identity Management tasks such as user provisioning and application access based on each user's relationship with role within our organization using RSA Aveksa .
  • Experience in controlling policies to potentially require multi-factor authentication on a per application basis through RSA Aveksa.
  • Designed, architecture and implementation CA IDM (Identity portal, Identity suit) and Integrated Applications with CA Identity Manager.
  • Resolved user support tickets for all systems (Access Manager, PingFederate, Adaptive Authentication) Participated in meetings and discussions regarding the rebuild of the current Confidential infrastructure

TECHNICAL SKILLS:

System configuration & Implementation: Multiple app, web DB servers, clustering, My SQL server, windows server, UNIX, LINUX

Software application management and programing languages: Java, J2EE, JBOSS, webserver, WebSphere, Apache, Tomcat, JDBC, JSP, JDK, PowerShell, python, Shell, Perl, Active directory, SCCM, GPO,XML

Single sign on integration: SAML1.1/2.0 Cloud based and enterprise, LDAP, Salesforce, IIS, OAuth

Confidential: CA SiteMinder Policy Server, Web Agent CA Identity Minder, CA Governance Minder, CA IDP, CA identity manager, RSA Aveksa, PingFederate, PingAccess, Ping Identity.

SDLC: Agile, Scrum, Waterfall, and SDLC Cyber Security: Incident response, Compliance / risk management, McAfee ePO endpoint security

Administration: OIM, Active Directory, Exchange, RSA SecurID, MS Exchange Server, McAfee Security-as-a-Service

Software Applications: Service Now, SAP, MS SharePoint, MS Office

Other: HPSM Incident, Change Management

EXPERIENCE:

Technical Lead

Confidential

Responsibilities:

  • Experience in providing Single Sign-On across enterprise application using Ping Federate, improving technical efficiencies in Identity & Access Management and Single-Sign-On space, involved in designing and implementation of end-to-end security solutions .
  • Developed and deployed evergreen process for managing local administrator access by approving migrating to an A account or to a T account or removing access on machines across AD for Windows and Linux.
  • Through an automated process by SCCM Script, identify and remove extraneous local administrator access on production server and end user workstation.
  • Worked on Directory synchronization, Identity reconciliation, Role based authentication, and implementing Lightweight Directory Access Protocol (LDAP).
  • Experience in developing Single Sign on ( Confidential ) Solutions leveraging Oracle Access Manager (OAM) for traditional authentication and risk-based authentication.
  • Worked on Token Generator and Token Processor to establish a connection between two web services from different Enterprises and Ping Access and JWT tokens to authenticate the user using Ping Federation.
  • Consulted with internal clients across business units to implement RBAC to efficiently provision user accounts and maintain security compliance.
  • Extracted RBAC related data from application databases, active directory and systems-maintained data to create a Database and map out relationships between key identities to analyze the result set.
  • Developed the scripts to retrieve filtered data to MyAccess also created tables in MS Access for the local administrator data.
  • Developed PowerShell scripts to retrieve data from Active directory to pull the nested groups from the domain groups.
  • Implemented the Confidential for new applications with Ping Access and Federation Managers. Configured SiteMinder for SAML Federated Authentications by configuring ID Provider/Consumer using SAML POST binding.
  • Created Forests and Domains and raised functional levels. Created trust relationships. Managed, created, deleted Local groups, Global groups, and Universal groups. Verified and resolved Group Policy problems; Imported and exported GPO settings.
  • Experience in Migrating Group and Exception Policies from one domain to another domain in AD forest. Planning, designing and implementing the various solutions on windows server platform technologies and its components like Active directory, DFS shares and high availability cluster environment.
  • Configured Aveksa (RSA IGL) to connect to SOX and Key Operational applications and built PowerShell scripts and generated reports.
  • Developed Python batch processors to consume and produce various feeds .
  • Responsible for creating the detailed Design and Functional document for the ongoing UAM Remediation project.
  • Involved in the architecture and implementation of RSA Aveksa Solution for provisioning, De-Provisioning, delegated administration, workflow implementation and generating audit reports to be compliant with the security regulations to meet controls requirement.
  • Developed and deployed JDBC custom connectors using Connector Xpress as per the requirements for endpoint and used role definition generators to deploy to IDM.
  • Deployed a custom interface into the HR database which will monitor for user adds and updates that will feed into IDM .
  • Assisting other teams to take the data, praise and integrate data into MyAccess with the ability to launch De- provision process for the out of policy local admin users.
  • Working as support for CA identity manager by resolving the incidents and issues both back end front end.
  • Working on data loss prevention for MyAccess which needs a system approval process for data through email being sent outside of the company without authorization.
  • Monitoring to ensure access isn't added Outside of the approved process or by individuals other than Confidential operations staff also enhance the education and awareness approach.
  • Integrate RadiantLogic with existing identity and data repositories using a variety of methods including RadiantLogic connectors, web services and development of custom connectors as per the requirement.

Confidential, IN

Sr. Consultant

Responsibilities:

  • Installed SiteMinder web agent and configured across various Web Servers (Apache, IBM Http, and IIS) across all environments (DEV, Test, and Stage & Prod).
  • Defined migration process for both Access Management and Identity Management from legacy processes.
  • Migrated web applications from CA SiteMinder to Ping Access for authentication and Confidential .
  • Integrated Ping Access with Ping Federate System to get authenticated by Ping Federate and Authorized by Ping Access Servers using the Access Control Lists.
  • Worked on Ping Access Gateway to send all the traffic through a proxy server and get the JWT token.
  • Worked on Custom Authentication Schemes in Ping Access based on Business needs.
  • Worked on Protecting the web applications and Rest API’s using Ping Access.
  • Worked on OAuth Integration using Ping Federate and Ping Access.
  • Provided operational support and maintenance for the Identity & Access Management team, web agents and configure across various web servers like Apache, IBM HTTP and IIS.
  • Experience with using IDP initiated and SP initiated SAML profiles with different binding methods like POST, Artifact, and Redirect to deliver a custom Confidential environment as per the requirement .
  • Worked closely with application team for testing and sign-off of migration activities in production and non-production environments.
  • Deployed PingOne in Cloud and integrated with PingFederate on premise.
  • Assisted developers with integration of Mobile Apps using OAuth/SAML in PingFederate.
  • Developed custom PingFederate adapters and PingFederate custom data source drivers using PingFederate Java SDK (IdpAuthenticationAdapterV2 / Custom Data Source Driver / Password Credential Validator).
  • Provided Support for Active Directory for User\Computer accounts worked on Groups Policy, Directory Services\LDAP, VBScripts, Domain\Trusts, and Sites\Services. Supported Active Directory for DNS\DHCP, and Windows Server 2003, and IIS Admin.
  • Experience of using Python modules like NumPy, Matplotlib, Pickle, Pandas, SciPy, wxPython, PyTables, PyQt, etc., for generating complex graphical data, creation of histograms and bar graphs.
  • Good hands on experience on Kettle (Pentaho/PDI) for data manipulation during data migration from legacy to IDM.
  • Implemented OAUTH enabled for social based apps and implemented JIT for cloud provisioned applications.
  • Migrated all Windows 2008 Domain Controllers to Windows 2012 R2 Domain Controllers.
  • To perform daily infrastructure and application checkouts for Development, Test, Stage and production distributed through CA SiteMinder 12.x console.
  • Hands on experience in configuring the import and export of user and user privilege information to and fro with CA Governance Minder.

Confidential, MA

Sr Consultant

Responsibilities:

  • Configured Application Identity Manager (APM) to Store and manage the hard-coded password of the applications.
  • Providing solutions for the external Confidential using PingFederate/SAML/SiteMinder.
  • Created federation trust between PingFederate and SiteMinder for seamless Confidential for applications during migration strategy for utilizing SMSESSION using core lox token service adapter.
  • Experience in implementing LDAP security models. Utilized Resource Analyzer and Log Analyzer for performance and troubleshooting& managed LDAP Policy Store using LDAP.
  • Experience in configuration and a dministration of SiteMinder Policy Servers, Policy Stores and User Stores created in ODSEE (LDAP). Installed and configured SSL/TLS in Oracle Directory servers in a distributed environment, worked on requesting and installing CA digital signed certificates and client authentication LDAPS - Secure LDAP.
  • Worked on setting up 5 environments for PingFederate 8.0.3 to support OAuth 2.0 for Rest APIs. Use of both PingFederate SDK and PingAccess SDK for any of the custom requirements like creating any custom adapter or setting up new policies using SDK.
  • Creating objects in PingAccess like creating virtual hosts, site authenticators, policies, authorization and authentication policies, identity mapping headers, run time engine nodes for HA using REST API method or manual approach.
  • Experience in analyzing the logs (trace logs, logs) and Trouble Shooting issues in Integration of other applications using CA SiteMinder (Access Management) and Identity Management tools along with LDAP and Web-server agents and SiteMinder federation services.
  • Created SAML and WS-Federation trust for both SaaS applications and internal SharePoint apps.
  • Configured SCIM provisioning using PingFederate for user provisioning and de-provisioning.
  • Experienced in Automation using Python, specifically automating unit/manual test cases.
  • Used Python to write data into JSON files for testing Website applications and internal applications, Created scripts for data modelling and data import and export.
  • Implementation of Identity and Access Management ( Confidential ) solution using PingFederate, Risk-based 2-Factor Authentication (using RSA Adaptive Authentication) and OAuth 2.0.
  • Configuring the SiteMinder web agents on Apache, IBM Http Server (Domino Go), IBM Http Server (Apache), IIS webservers for comprehensive WAM deployment model.
  • Creating new SAML connections for the Confidential with external vendors using SAML1.1 and SAML 2.0 post methods.

Confidential, CA

Systems Analyst/Integration Specialist

Responsibilities:

  • Configured scripts (Perl, SQL) to manage client databases and files.
  • Responsible for updating HTML, XML, and JavaScript code to enhance the client's web experience.
  • Configured multiple types of Confidential methods for clients, including SAML 1.1/2.0, LDAP, IIS- IWA, and Salesforce.com.
  • Experience in SAML based authentication 1.1 and 2.0 using Ping Federation, SiteMinder Federation and integrate with SiteMinder authentication and adapter.
  • Managed configuration changes, configuration backups, and complex application failover related to the Apache/Glassfish/JBoss/Tomcat/ACTIVEMQ configuration.
  • Involved in troubleshooting efforts and follow problem resolutions guidelines in an effective manner, using HTTP Analyzer, Web Debugger, Tomcat, Apache SSL logs, Event Logs and Confidential login logs.
  • Interfaced with functional teams including Database, System Admin, Network, and IT
  • Security providing support and troubleshooting from Application perspective.
  • Migrated SAML Based Confidential partners from CA Single Sign-On federation to Ping Federate.
  • Installed, configured and administered BEA Web Logic Server 8.1 in Solaris and AIX environments with Oracle9i database.
  • Installation of Servlet Exec 5.0 for web services of CA SiteMinder Optional Pack, Analysis and identifying the components of the CA SiteMinder 6.0 to integrate with IBM WebSphere Portal.
  • Developing, Configuration, Troubleshooting and Management, Enterprise Applications for CA IDM, CA and CA e-trust Directory server. Integrated IDM with CA Confidential, Providing Authentication and Authorization to IDM.

Confidential

Sr. Google Apps Integration Engineer / Identity Management

Responsibilities:

  • Enforced 2-step authentication with OTP/SMS verification and managed Google's Mobile Device Management solution.
  • Consolidated multiple LDAP directory resource such as AD, Lotus Notes, or Open LDAP, for one virtual LDAP view using Radiant Logic VDS.
  • Responsible for Salesforce Confidential portal integration. Deployed new domain Orgs, installed certificates, set role base permissions, configure URL endpoints, AD connect, importing users or troubleshoot SAML assertion issues.
  • Hands on experience and training on PingOne, Pingfederate, Google Directory sync, and IBM Security Access Manager.
  • Assist clients with F5 LTM traffic rules, pool members, monitors, virtual servers, policies, and SSL certificate update.
  • Documented, designed and implemented the Wellness Check URL's to verify the application code on Pre-Deployment basis with Confidential .
  • Experience in implementing LDAP security models. Utilized Resource Analyzer and Log Analyzer for performance testing and troubleshooting and Knowledge on managing LDAP Policy Store.
  • Integrated SiteMinder with Sun ONE Directory Server to use directory server instances as Policy Stores and User stores for Policy Servers.

We'd love your feedback!