Iam Consultant Resume
3.00/5 (Submit Your Rating)
SUMMARY
- Extensive experience with maintaining and enhancing Sailpoint IdentityIQ installation in large company. Created and modified many applications and rules within the system. Played major roles in more than one version upgrade.
- Experienced in IAM (Identity and Access Management) and responsible to install, integrate and deploy the IdentityIQ OR Identity Now product in client environments.
- Extensive experience in financial and access management projects.
- SailPoint Identity Now Implementation strategized and implemented Identity and Access Management solutions for the client to strengthen the security posture and increase usability
- Worked with Active Directory, LDAP/UNIX groups, Networks, Human Resource systems for Identity and Access Management.
- Experienced Identity Access Management professional in the implementation of Access Review and Provisioning solution
- Managed projects for design, configuration and implementation of SailPoint IIQ, including coordinating with vendor leadership, technical services leadership, and end user customers.
- Understanding of directories (AD/LDAP) and group structures, policies, SAML 2.0, Frame set up for enterprise level Role mining, Role Based Access Control (RBAC), Multi Factor Authentication (MFA), Single Sign on (SSO), PAM (Privileged Account Management)/ (Privileged Identity Management), Entitlement Management and Identity Management.
- Experienced on Cloud based Identity and Access Management Solutions like OKTA and PingOne.
- Experienced in installing Pingfederate and PingAccess on both Linux (RHEL) and Windows Platform.
- Experienced in upgrading of PingFederate from 7.3 - 9.1; PingAccess from 4.0-5.1
- Experienced in creating Polices using selectors in PingFedarate to accomplish various business requirements.
- Experienced in configuring PingID for MFA for sensitive applications
- Experienced in configuring application in PingOne and creating policies on PingOne docker for applications
PROFESSIONAL EXPERIENCE
Confidential
IAM Consultant
Responsibilities:
- Work with business and solution owners to identify and maintain user role definitions
- Build partnerships with business units to ensure that business requirements continually inform Role Based Access Control program
- Serve as internal liaison for RBAC/IAM issues with representatives from application solution owners and Information Security
- Coordinate analysis of discovered user accounts for risk, ownership and access appropriateness
- Coordinate with application owners during UAT post RBAC deployment
- Primary responsibilities include Installation and configuration of CyberArk Vault, CPM, CyberArk PVWA, AIM, OPM CyberArk PSM and PSM SSH proxy Architecture and design.
- Upgrading Cyber Ark suite of products from 7.x to 9.x. (CPM, PSM, EPV, PVWA & AIM).
- Worked on Privileged Account Management with CyberArk PIM suite Administration.
- Built two new datacenters with Policy Servers and SunOne LDAP Servers on East Coast to reduce the network latency for Wachovia applications Migrated SAML infrastructure including SAML Policy Servers, Web and Application Servers from Windows2003 to Solaris platform.
- Configured and supported SAML based Identity & Service Provider connections.
- Administration experience of CyberArk vault with Safe creation, integration with LDAP and other authentication methods. Mitigation of the risks using CyberArk, Aveksa and policy changes on servers. Worked with different teams to implement single sign on using SAML 2.0, OAuth 2.0.
Confidential
IAM Consultant
Responsibilities:
- Upgrading Cyber Ark suite of products from 7.x to 9.x. (CPM, PSM, EPV, PVWA & AIM).
- Worked on Privileged Account Management with CyberArk PIM suite Administration.
- Built two new datacenters with Policy Servers and SunOne LDAP Servers on East Coast to reduce the network latency for Wachovia applications Migrated SAML infrastructure including SAML Policy Servers, Web and Application Servers from Windows2003 to Solaris platform.
- Configured and supported SAML based Identity & Service Provider connections.
- Administration experience of CyberArk vault with Safe creation, integration with LDAP and other authentication methods. Mitigation of the risks using CyberArk, Aveksa and policy changes on servers.
- Worked with different teams to implement single sign on using SAML 2.0, OAuth 2.0.
- Identified different SAML 2.0 issues and fixed the issue in NetIQ Access Manager 3.2.
- Coordinated with the Service providers and identity providers during the SAML Certificate upgrade and architectural changes.
- On boarding applications and configuration of privileged accounts in CyberArk.
- Produced policies, realms, rules, and responses to implement the single and dual factor authentication using RSA Secure ID Token based on the business requirements.
- Applied Single Signon using SAML2.0 for Federation Applications.
- Resolved CyberArk issue's in CPM to communicate with a host to accommodate credentials.
- Executed password policies for all the applications using SiteMinder Policy Server. Configured APS, FPS, Rules, and Help Desk Functionality Replacement.
- Strong familiarity on UNIX administration, and networking concepts.
Confidential
IAM Consultant
Responsibilities:
- Worked with the SME's to develop Identity and Access Management (IAM) Program Framework
- Responsible to elicit high level IAM Business Requirements from key business and technology stakeholders
- Responsible to create Business Requirements Document (BRD) Created Requirements Traceability Matrix (RTM) in MS Excel
- Responsible for mapping requirements to IAM capabilities, SOX controls and PCI controls
- Held interviews and workshops with key business and technology stakeholders to assess current state IAM tools
- Responsible for current IAM tools to Framework mapping
- Identify and document detailed current major IAM Service Gaps (Gap Analysis) or deficiencies for processes, products and tools
- Worked with SME's to develop Maturity Model for improving IAM maturity over time Highly dynamic environment with sprint teams using agile methodology.
- Involved in the development of Solution Design Overview document and technical document.
- Development of identity federation connectors from SailPoint to target systems, along with subsequent access control by SecureAuth.
- Created Custom tasks, Custom Objects to update the entities in the system which are scheduled every week.
- Built Joiner, Mover and Leaver workflows to maintain user accounts
- Involved in creating custom reports, certifications to cater various data feeds.
- Participated in all SailPoint deployment activities - connector configuration, custom rule development, workflow configuration and development, third party system integration.
