Identity Management Lead Analyst Resume
Philadelphia, PA
SUMMARY:
- I have extensive Technical/Security Analyst skills along with an Active Directory background in the Financial Banking/Healthcare/Pharmaceutical/Energy industry.
- With 13 Years of Active Directory Administration technology experience along with strong working knowledge of security issues, risks, and solutions for the Active Directory platform.
- I'm willing to work 1st or 2nd shift and provide on - call 24/7 Active Directory ID Management production support, for a minimum of a week per rotation, as required/scheduled by the management team.
- Confident in my ability to effectively foster great working relationships with the Technical/Business teams to resolve daily issues. Able to clearly communicate to an audience with various levels of Active Directory/Security knowledge in a high volume production environment using a trouble ticketing workflow system.
- I have exceptional communication, written, problem-solving, analytical, teamwork, and interpersonal skills. I can interview immediately and start a new project in 2 weeks.
TECHNICAL SKILLS:
Environment: s: Citrix, Lotus Notes 8, MS Windows XP, Vista and MS Office 2007, Inform, Dashboard, PRAEEO, and UNIX environments, Service Center, Dameware, Novell Console One, MyPasswords, AccessCentral, Think Vantage 5.3, Nexus, Active Roles V.6, Security Management Admin (Entrust) R.7, Juniper Networks, RSA Security Console, Net IQ, Ariba Buyer version 8.2, Unicenter ServicePlus Desk, VNC, WhatsUp Gold, VPN v.6, Afaria, OneComm, and User Manager 5.1, E-Rooms, EDocs, LDAP, RACF, Basic user end support of SAP and AS/400 systems.
Medical: Medical Terminology - ICD-9 and CPT-4 Coding (including hospital coding), Medical Billing/Insurance, HIPAA compliance, MediSoft.
Monitoring System Tools: HP OpenView (Operations) A.08.24, Jigsaw, HP Service Desk, Manage Now V4.4, Legato Networker Administrator 7.1, Validation Request & ISR s Forms
Ticketing Systems: Remedy, HEAT, Track-it, Peregrine, Magic, IQ Track and HP Openview.
Other: MS Office 2003, 2007, 2010; Novell NetWare 4.11, Norton Utilities v.8, McAfee Security Center, Lotus Notes, Track-IT, TSO (PDF), Remedy, MS Visio 2003, Ghost, Remedy, SAP, Active Directory, Pharmaceutical, HP Service Desk, Incident Management, E-Mails, RSA, Good Mobile, CSM Change Management, Blackberry Enterprise Server, iPhone, iPad, and Android Phones
PROFESSIONAL EXPERIENCE:
Confidential, Philadelphia PA
Identity Management Lead Analyst
Responsibilities:
- Assist in the development and implementation of an overall global IAM strategy that will provide proper user protection while ensuring an easy validation and authorization experience.
- Work closely with InfoSec and other service owners responsible for establishing governance and orchestration related to access management that will drive process improvements of internal procedures.
- Work closely with internal/external partners, auditors, and stakeholders to manage internal audit requests, review findings and develop remediation plans.
- Ensure timely completion of all IT provisioning service requests based on our current procedures, processes, and standards.
- Knowledge of Microsoft Active Directory, Exchange Management Console, and IT account security are key technologies that you will need to master.
- A strong understanding of new hire, employee transfer, and separation processes (i.e. Workday, IAM, and IT Security policies) are also required.
- Responsible for IAM service request resolution and SLA management. Work with the Business Owners/vendors to create user accounts and respond to user requests to reset passwords.
- Respond to Human resources to process employee terminations and transfers. Respond to information requests for recertification reports in a timely fashion. Review of security internal control procedures. Coordination, review and implementation of other requests such as: Email release requests, Web access requests, Remote access & USB requests, and other access requests as needed. Coordination with other organization entities (Global and Local) for entitlement requests and escalations for access issues or questions. On boarding of new applications for IAM management.
Environment: s: Remedy, Sybase, Microsoft Outlook, Active Directory, MDM (MaaS360), and Oracle Identity Management 11g R2.
Confidential
Information Security/Business Analysis Functionality
Responsibilities:
- Participate in the evaluation, development, testing, and implementation of emerging data access control technologies, information systems security issues, safeguards, and techniques.
- Assist customers in identifying security risks to their applications and implementing appropriate data security procedures and products.
- Maintains an awareness of bank security policies and government policies.
- Work on projects to improve IT controls for users requesting privileged access to one or more desktops.
- Reviewing provisioning items completed by Analysts.
- Assist in the creation and implementation of an enterprise-level roles-based access control (RBAC) provisioning model.
- Responsible to pull 25% of the work for the day to make sure access was provisioned correctly.
- Provide feedback to the analysts if there was an error in processing RACF request.
- Interfacing with the business & development team to write business requirements.
- Participating in UAT once the development reaches that point.
- Experience with IBM’s Mainframe security system: (RACF - Resource Access Control Facility)
- Experience with distributed systems security environments (LDAP)
- Experience with the provisioning tools associated with the above security systems (TIM, Domino Administrator, Active Directory tool).
- Strong analytical skills with high attention to detail and accuracy.
- Strong organizational, multitasking, and prioritizing skills.
- Intermediate Microsoft Office (Word, Excel, Outlook, PowerPoint, Access, and Project) skills
- Knowledge and understanding of information security industry standards and government regulations.
- Experience assessing and meeting the needs of customers and solving customer problems.
- Knowledge and understanding of regulatory compliance requirements surrounding HIPAA, PCI, SOX.
- Knowledge or Experience supporting line of business applications in Wholesale, Enterprise Information Technology, or similar functions for a large financial institution.
- Experience with Technology Help Desk functions.
Confidential, Louisville KY
Mainframe Security Analyst
Responsibilities:
- Account and Access Management: Sets up new profiles, creates and updates access permissions and system policies and maintains user accounts. Defines procedures for user access to systems environment.
- System Security: Maintains system security by checking logs for issues such as attempted intrusion. Installs security software and/or security-related patches. Reports security issues when appropriate.
- Responsible for setting up user accounts, granting access, and controlling the user's in Identity Management as well as MainFrame Security.
- Most of this provisioning will be done in DB2 and TSO (Time Sharing Option) utility.
- Processing and modifying ACF2 datasets or RACF from ServiceNow requests.
- Ensure use of Microsoft products such as Visio, Access, and SQL in this role.
- Working knowledge of best security practices when it comes to user rights and accounts all within JCL and CICS environments.
- Provisioning Access, Database Access, Oracle, Entitlements, SQL, Sybase, Teradata, Informix, MongoDB, DB2.
- Ticketing System experience(ART, Remedy, and Pac2000)
- Responsible for updating accounts on the Active Directory domain to include proper role-based access, organization unit, titles, office, department, and manager.
- In communication with Manager of IAM, OIT Project Manager, IAM team and other stakeholders making sure access, provisioning documentation, attribute mapping, and auditing updates are communicated.
- Training at SailPoint University for IdentityIQ
- LDAP experience with distributed systems security environments.
Environment: s: ServiceNow, IBM Mainframe, Microsoft Outlook, Aries, TSO, VLookUp, DB2, Sybase, Teradata, Informix, MongoDB, RACF, Microsoft Office Excel, SailPoint, and P-Synch.
Confidential, Raleigh NC
IAM Engineer Support
Responsibilities:
- Manages access to multiple applications based on company policies.
- Possess exposure to Mainframe computing environments with emphasis on Active Directory (AD), Role Based Access Control (RBAC), and Resource Access Control Facility (RACF).
- Responds to requests within defined SLA’s for granting access to multiple applications, changing access rights or restricting access.
- Provision new and transferred employees and contractors.
- Decommission all account for termed employees and contractors.
- Operate within the established Information Security Policies for all security requests.
- Communicate with customers to ensure delivery of services/requests.
- Monitor and reports on access activity as well as Incident and Problem ticket related issues.
- Processing requests from ServiceNow or Group Mail/Database.
- Enabling changes in access based on changes in users' roles to minimize the disruptive effects of change on user productivity.
- Responsible for the timely, accurate, and secure processing of new application on-boarding to ensure appropriate user Adds, Changes, and Deletions are performed accurately and efficiently. Ensures that application settings and user profiles are configured to meet Bank policy and standards.
- Ensures the complete follow through of user Adds, Changes, and revocations that are performed by administrators outside of AIM.
- Act as a technical information security reviewer of performance reports, system status, operating procedures manual, and other documents produced.
- Assist in the creation and implementation of an enterprise-level roles-based access control (RBAC) provisioning model.
- Manage RSA Mobile, Soft, and Hard tokens for users, assign tokens to users, and grant access to selected authentication agents.
- Import and manage RSA tokens and to assign tokens to users.
- Administer and build new security roles, classes and/or rules for IAM tool and/or appropriate system(s) or application(s) based on customer needs and compliance approval; maintain documentation accordingly.
- Support access administration and provisioning RSA two factor authentication for VPN and all endpoints.
- Resolve user access issues through RSA password reset, and unlocking or enabling accounts.
Environment: s: Bluezone Mainframe V5.,Windows7 Enterprise V6.1,Active Directory Users and Computers Microsoft Corp. v6.1,Microsoft Office Professional Plus 2010 V14,RSA Security Console V8.1, Oracle Identity Management 11g R2, System Access Management (SAM), Oracle Identity Analytics V11, SQL Server Management Studio, RACF, LDAP, SQL Server 2008 R2, and ServiceNow.
Confidential, Charlotte NC
Information Security Analyst
Responsibilities:
- Creation of Client (Distributed File System) including administration of home directories, roaming profile objects, shared data directories, Client links, and NTFS file security.
- Provides technical support for moderately complex security-related issues.
- Creation of DFS Links for Investment Banking Institutes
- Provides security project management support as it relates to access requests and provisioning services.
- Utilize Active Directory to provision user access in a least privilege manner and manage system configurations.
- Track and complete security-related issues via trouble ticket system.
- Perform user security administration and provisioning for both Active Directory and Application level accounts, provisioning, adds, changes, terms, and deletions.
- Documentation of changes, events, new processes, this includes project security requirements.
Environment: CNET, Active Directory, WholeSale Ticketing system, LDAP, Outlook 2007, Remote Desktop, Lac Tools.
Confidential, Atlanta GA
Security Access Analyst
Responsibilities:
- Domain account creation and modifications (updates/changes).
- Exchange account administration, new mailboxes, distribution lists, contacts, accounts changes as needed for users.
- UNIX account setup.
- Knowledge Base Documentation and Incident ticket resolution.
- RSA (VPN) user setup.
- Compliance approvals and reporting.
- Facilitate the identification and resolution of SailPoint security issues or questions by involving identified associates and other stakeholders; escalate when appropriate.
- Compiled reports and documented as needed for the business projects.
- Exposure to Windows and Mainframe computing environments with a strong emphasis on Active Directory (AD) and Resource Access Control Facility (RACF).
Environment: Mainframe, Active Directory, and RACF.
Confidential, St. Petersburg FL
IT Security Administrator
Responsibilities:
- Performed Access Control functions associated with Confidential 's file folder and group permissions environment.
- User account setup for programs, systems, and applications and Active Directory account management.
- Multitasked and completed work within established corporate standards.
- Experienced with a ticketing system Get-ITT and Picasso.
- Created SIP accounts for Microsoft Office Communicator on MS Exchange Server 2007.
- Modified and updated user accounts in Enterprise People Tools 8.48 system.
- Performed end of the month Purgatory Purge clean up.
- Updated user accounts in Hummingbird V:12.
- Provided direct support to the business and IT staff as it relates to access control function of issuing user identification and assigning appropriate rights to that user identifier.
- Enforced security policies and procedures for monitoring security profiles.
- Utilize PICCASO ticketing system.
- Basic training on NERC CIP.
- Experienced with Microsoft Windows Active Directory file system concepts and features - NTFS, Shares, SharePoint.
Environment: GetITT, Remedy, Good Mobile, BES, Blackberry Admin Service, Active Directory 5, PeopleSoft Enterprise 8, Hummingbird Host Explorer V12, User Administration Tool V2, Avaya CSR Front End 5.2., Mainframe, Active Directory, and RACF.
Confidential, Somerset NJ
Security Administrator Analyst I
Responsibilities:
- Performed Security Maintenance for specific systems/applications.
- Created user accounts on Windows and UNIX platforms.
- RSA / VPN setup and support and software asset tracking.
- Performed reconcilement task related to user access accounts.
- Processed evaluations and documentations.
- Maintained user request documentation for Knowledge Base.
- Unlocked and reset passwords for eLearning.
- RSA Authentication/SecureID troubleshooting including uninstalling and reinstalling software and password resets in Device Manager
- RSA Management Support: Ordered and processed key fobs/cards as well as kept track of expired equipment to reorder.
Environment: Citrix, Lotus Notes 8, MS Windows XP, and MS Office 2007, Inform, LDAP, Active Directory, Dashboard, PRAEEO, and UNIX environments. Peregrine 5x, PC Anywhere 10, Timbuktu Pro 8, Novell Console one 1.3.6f, Odyssey Access Client Manager Enterprise Edition 4, Remedy 6, and Outlook 2007, MS Windows XP, and MS Office applications.
Confidential, Bridgewater NJ
System Monitoring Event Administrator
Responsibilities:
- Provided reliable and quality, Operations desk support in electronic and production environment.
- Tracked and monitored system, task status as well as data storage retention and retrieval, review system functions.
- Recorded and tracked problem events and follow up to ensure resolution and/or escalate to Tier 2 as necessary.
- Monitored events for business-critical production systems.
- Provided ticket coordination between Incident Management and System.
- Followed established system workflows and processes to view and coordinate ticket escalations.
- Notified appropriate staff members when a problem does occur with the servers.
- Escalation experience, including paging, conferencing, e-mails, cell/home calling.
- Reviewed data in Jigsaw - This user interface allows application owners rapid retrieval of all their application related information.
- Aided in the support of our help desk with the first level support of contact and possibly second level if necessary.
- Company training and Certificate for CSM Change Management.
- Managed the process of maintaining daily logs and equipment malfunction reports.
- Monitored network, server, Internet/intranet services, and applications to ensure availability and performance in accordance with Service Level Agreements (SLA).
- Communicated with Sanofi-Aventis Service Desk and Support Groups about issues that may impact customers.
- Followed/Updated Operations Center Disaster and Recovery Escalation procedures.
- Answered the help desk line and responds to users' requests regarding communications systems and did weekly follow-ups via email and phone to maintain positive customer feedback.
- Network and application account/password resets.
- Escalate outages and service failures to Incident Management.
- Coordinated the update of technical documentation and ensures risk and impact of any proposed changes are pre-assessed and necessary controls are introduced.
- Scheduled upgrades, testing and software/hardware rollouts in addition to training, customer support and monitoring.
- Tracked and purchased Hardware and Software through Ariba as well as office equipment.
- Asset Management - documents service orders and performs follow up of completed orders for management information reporting and customer satisfaction.
- Coordinated user requests with external vendors according to policies and procedures and maintains an accurate user database.
Environment: Windows 2000/2003/XP and Microsoft Office 2003 applications, MS Visio 2003, Net IQ, Ariba Buyer version 8.2