Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic

Raju Dumpala

Summary

• Experienced Cybersecurity and Risk Management professional with over 13 years of expertise in Identity and Access Management (IAM), security infrastructure, and risk mitigation.
• Skilled in adapting new solutions with Single Sign-On (SSO) and Federated Identity Management using tools like CA Siteminder, PingFederate, PingDirectory, and PingAccess, with a strong focus on ensuring robust security frameworks and compliance.
• Proficient in identifying vulnerabilities, mitigating risks, and optimizing IAM systems to enhance enterprise security posture.
• Experienced in implementing Multi-Factor Authentication (MFA) solutions in PingFederate and PingAccess to strengthen security and improve user authentication processes.
• Hands-on experience with PingAccess for securing APIs, applications, and web access, ensuring seamless integration with IAM solutions.
• Extensive experience implementing OAuth 2.0 and OpenID Connect protocols in PingFederate and PingAccess to enable secure, scalable, and compliant identity management solutions for modern applications and services.
• In-depth experience with PingFederate’s OpenToken for secure token generation, managing authentication and authorization workflows across different applications.
• Strong experience in configuring and managing Service Provider (SP) and Identity Provider (IDP) use cases in PingFederate, enabling seamless identity federation and secure data exchanges between various enterprise applications.
• Extensive hands-on experience with LDAP (Lightweight Directory Access Protocol) in integrating directory services with IAM systems for secure and efficient authentication, authorization, and user management across enterprise environments.

Overview

13
13
years of professional experience

Work History

Information Security Analyst

Citibank, NA
12.2021 - Current
  • Leading the effort to develop automated tasks with scripts, reducing manual tasks such as configuration-related changes, promoting changes to higher environments, patching activities, and continuously evaluating opportunities for further automation.
  • Expertise in identifying risks across IAM (Identity and Access Management) and IT infrastructure, conducting detailed risk assessments to determine the required security controls and mitigation strategies.
  • Maintaining datasource feeds to Splunk and AppDynamics to set up alerting rules, analyzing logs to identify trends and patterns, and creating dashboards for improved turnaround time.
  • Resolving vulnerability issues for applications and infrastructure, and setting up processes for documentation of newly reported vulnerabilities in the knowledge base portal.
  • Establishing escalation processes for security incidents and developing contingency plans and disaster recovery procedures.
  • Troubleshooting issues and collaborating with internal teams to identify patterns in incidents, preparing KB articles, and making them accessible to improve processes.
  • Providing L3 support for all critical business-impacting production issues, ensuring root cause analysis is documented to mitigate recurring issues, and standardizing information security control processes.
  • Collaborating with business and engineering teams to develop and implement new solutions, documenting these solutions in SharePoint, and providing knowledge transfer (KT) to teams.
  • Onboarding new applications into PingAccess and PingFederate with SAML 2.0 and OpenID Connect.

Information Security Analyst

NTT DATA Services
05.2017 - 12.2021

• Requirement gathering from application teams and business on their needs.
• Providing the best solutions to integrate with PingFederate.
• Offering OAuth solutions to various applications.
• Creating the Ping Open Token processor and token generators for applications.
• Setting up the IDP and SP configurations, both internal and external, based on requirements.
• Configuring Ping Web services for authentication from the applications.
• Troubleshooting PingFederate issues and managing its services.
• Installing certificates for the IDP and SP setups.
• Creating Runbooks for change implementations, processes, workarounds, and solutions.

Senior Software Engineer

CA Technologies Inc
06.2015 - 01.2017

• Troubleshooting various issues reported by Siteminder customers related to the Siteminder product.
• Troubleshooting issues related to Policy servers and WebAgent connectivity.
• Resolving issues reported on other Siteminder components, such as policy store and session store.
• Performed troubleshooting on policy server and database connectivity issues.
• Gathering technical details from application owners and performing issue analysis to identify the root cause of problems.
• Setting up LOD labs and reproducing issues in the CA environment to understand the problem and find solutions.
• Handling escalated tickets as per SLA processes and following internal escalation procedures to escalate to further technical and development teams.
• Creating SOP documents for production change orders.
• Conducting weekly review meetings with SDM to review SLA service support with CA.

Software Engineer

Tech Mahindra
11.2011 - 06.2015
  • Installing and configuring the Policy server and Secure Proxy servers.
  • Troubleshooting various issues reported by application teams and customers related to Siteminder and LDAP.
  • Onboarding new applications in Siteminder and providing Authentication, Authorization, and SSO services.
  • Creating and maintaining user and group profiles in LDAP Directory server.
  • Troubleshooting issues related to Policy servers and web agents.
  • Creating and maintaining user and group profiles in LDAP Directory server.
  • Configuring new object classes and attributes to the schema as per application requirements.
  • Troubleshooting issues related to Policy servers and web agents.
  • Setting up or enhancing policies for new applications and integrating them with SSO and CDSSO using Siteminder.
  • Configuring the web agent with Siteminder for IIS and Apache web servers.
  • Creating and maintaining SOP documents for production change orders.
  • Adding and modifying user entries in LDAP.
  • Configuring indexes for attributes used to search users in the Sun One directory server.
  • Creating new suffixes in Sun One directory server.
  • Extending the schema with new attributes based on application team requirements.
  • Installing web agent and configuring it in the LDAP.
  • Managing groups and roles for applications and assigning users to the groups and roles.
  • Configuring Service accounts and ACI for applications.
  • Meeting SLAs for production issues.
  • Configuring Replication and referrals for Multimaster Replication environment.
  • Troubleshooting replication issues and customer-reported issues in LDAP.

Education

Master of Computer Applications - Computer And Information Systems Security

Jawaharlal Nehru Technological University
Hyderabad
06-2010

Skills

    Identity and Access Management (IAM) Technologies:
    Ping Federate (SAML, OpenID, OAuth, Open Token, WS-Trust STS), Ping Access, SCIM (System for Cross-domain Identity Management), CA Single Sign-On (Siteminder), SPS, CA Directory

    Directory Services:
    ODSE (Open Directory Services Engine), Active Directory, LDAP (Lightweight Directory Access Protocol)

    Web Servers and Application Servers:
    Apache, IHS (IBM HTTP Server), OHS (Oracle HTTP Server), IIS (Internet Information Services), WebSphere, WebLogic

    Monitoring and Logging Tools:
    Splunk, AppDynamics

    Ticketing and Service Management Tools:
    JIRA, ServiceNow, ISAW (Incident and Service Request Management tool)

    Operating Systems:
    RHEL (Red Hat Enterprise Linux), Windows (Windows Server 2016/2019/2022)

Accomplishments

• Recipient of Platinum and Gold awards for outstanding deliverables related to the successful go-live of the next-generation application.
• Awarded the Platinum award for providing critical ad-hoc support in DigiCert updates as part of vulnerability management for over 1000+ applications.

Timeline

Information Security Analyst

Citibank, NA
12.2021 - Current

Information Security Analyst

NTT DATA Services
05.2017 - 12.2021

Senior Software Engineer

CA Technologies Inc
06.2015 - 01.2017

Software Engineer

Tech Mahindra
11.2011 - 06.2015

Master of Computer Applications - Computer And Information Systems Security

Jawaharlal Nehru Technological University
Raju Dumpala