• Experienced Cybersecurity and Risk Management professional with over 13 years of expertise in Identity and Access Management (IAM), security infrastructure, and risk mitigation.
• Skilled in adapting new solutions with Single Sign-On (SSO) and Federated Identity Management using tools like CA Siteminder, PingFederate, PingDirectory, and PingAccess, with a strong focus on ensuring robust security frameworks and compliance.
• Proficient in identifying vulnerabilities, mitigating risks, and optimizing IAM systems to enhance enterprise security posture.
• Experienced in implementing Multi-Factor Authentication (MFA) solutions in PingFederate and PingAccess to strengthen security and improve user authentication processes.
• Hands-on experience with PingAccess for securing APIs, applications, and web access, ensuring seamless integration with IAM solutions.
• Extensive experience implementing OAuth 2.0 and OpenID Connect protocols in PingFederate and PingAccess to enable secure, scalable, and compliant identity management solutions for modern applications and services.
• In-depth experience with PingFederate’s OpenToken for secure token generation, managing authentication and authorization workflows across different applications.
• Strong experience in configuring and managing Service Provider (SP) and Identity Provider (IDP) use cases in PingFederate, enabling seamless identity federation and secure data exchanges between various enterprise applications.
• Extensive hands-on experience with LDAP (Lightweight Directory Access Protocol) in integrating directory services with IAM systems for secure and efficient authentication, authorization, and user management across enterprise environments.
• Requirement gathering from application teams and business on their needs.
• Providing the best solutions to integrate with PingFederate.
• Offering OAuth solutions to various applications.
• Creating the Ping Open Token processor and token generators for applications.
• Setting up the IDP and SP configurations, both internal and external, based on requirements.
• Configuring Ping Web services for authentication from the applications.
• Troubleshooting PingFederate issues and managing its services.
• Installing certificates for the IDP and SP setups.
• Creating Runbooks for change implementations, processes, workarounds, and solutions.
• Troubleshooting various issues reported by Siteminder customers related to the Siteminder product.
• Troubleshooting issues related to Policy servers and WebAgent connectivity.
• Resolving issues reported on other Siteminder components, such as policy store and session store.
• Performed troubleshooting on policy server and database connectivity issues.
• Gathering technical details from application owners and performing issue analysis to identify the root cause of problems.
• Setting up LOD labs and reproducing issues in the CA environment to understand the problem and find solutions.
• Handling escalated tickets as per SLA processes and following internal escalation procedures to escalate to further technical and development teams.
• Creating SOP documents for production change orders.
• Conducting weekly review meetings with SDM to review SLA service support with CA.
Identity and Access Management (IAM) Technologies:
Ping Federate (SAML, OpenID, OAuth, Open Token, WS-Trust STS), Ping Access, SCIM (System for Cross-domain Identity Management), CA Single Sign-On (Siteminder), SPS, CA Directory
Directory Services:
ODSE (Open Directory Services Engine), Active Directory, LDAP (Lightweight Directory Access Protocol)
Web Servers and Application Servers:
Apache, IHS (IBM HTTP Server), OHS (Oracle HTTP Server), IIS (Internet Information Services), WebSphere, WebLogic
Monitoring and Logging Tools:
Splunk, AppDynamics
Ticketing and Service Management Tools:
JIRA, ServiceNow, ISAW (Incident and Service Request Management tool)
Operating Systems:
RHEL (Red Hat Enterprise Linux), Windows (Windows Server 2016/2019/2022)
• Recipient of Platinum and Gold awards for outstanding deliverables related to the successful go-live of the next-generation application.
• Awarded the Platinum award for providing critical ad-hoc support in DigiCert updates as part of vulnerability management for over 1000+ applications.