Payal Anand
M obile: +1-425-***-****
Email:
***********@*****.***
Summary
• 7+ Years of experience in TIM, TDI, TDS, TAM and JAVA J2EE.
• Involved in installation of products like ITIM, TDI TDS - design and implementation of ITIM
workflows, forms for User Creation, Access Change, Job Change, Deactivation, Status Change
and developing custom connectors, and very strong in building Services, IDI Data Feed and
provisioning policies in Tivoli Identity Manager, Working in Tivoli Directory Integrator and
Tivoli Directory Server.
• Experience in integrating various applications into Identity and Access Management Framework.
• Certified Deployment Professional – Tivoli Identity Manager V5.0 from IBM.
• Oracle Certification - Oracle Certified Associates (OCA)
• Strong programming skills in Core Java, J2EE(JSP Programming, Servlet Programming, JDBC)
• Committed to meeting customer needs and able to perform with high quality during intense
situations.
• Capable of delivering project documentation and training materials.
• Good communicational, Interpersonal, Analytical and problem solving skills.
• Effective team member and also an individual contributor
• Proactive to take challenges, Ability to lead team by examples.
Education
• Masters of Business Administration specialization as project management with ‘A’ Grade
• Masters in Computer Science with ‘A’ Grade
Professional Certifications
• IBM Certified Deployment Professional – Tivoli Identity Manager V5.0
• Oracle Certification - Oracle Certified Associates (OCA)
Skills
• IBM Tivoli Identity Manager (TIM 5.1, 5.0 and 4.6), IBM Tivoli Directory Integrator 7.x, 6.1.1,
IBM Tivoli Directory Server (TDS LDAP 6.3, 6.x), TAM, IBM Websphere, Tomcat, MySQL,
Oracle, DB2, Java/J2EE, JavaScript, Perl Script
• Tools :- Putty, WinSCP, RazorSQL, TOAD, ClearCase (IBM product for manage docs), Eclipse,
HP Quality Control, Eclipse
Professional Experience:
• Calance Software Pvt. Ltd.
Senior Security Consultant – (January 2011 – till date)
• Tata consultancy Services
Security Consultant – (April 2010 – January 2010)
• IB M India Pvt. Ltd.
Tivoli Consultant - (March 2007 – April, 2010)
Projects:
Client: Baker Hughes Inc., Houston, TX (Jan 2011 – till date)
BH IAM is Identity and Access Management tool built upon the Tivoli Identity Manager 5.1 to provision
system access to users based on details provided by IAR LIVE application (custom application). All the
modification in people profile comes from PeopleLink Application (custom application) and updates in
ITIM through reconciliation runs automatically twice in a day and from ITIM its pushed in other
applications like BHD LDAP, SAP, CISCO VPN etc.
The IAM system leverages on the workflows and provisioning policies of the Tivoli Identity Manager
product to manage the entire lifecycle of the user identities including creation, modification, suspension,
reactivation and termination.
Environment: IBM Tivoli Identity Manager 5.1 (ITIM), Tivoli Directory Server 6.3, Tivoli Directory
Integrator 7.0, Tivoli Access Manager 6.1.1
Role: Lead Security Consultant
Moving of ITIM and LDAP (TDS) infrastructure to a new data-center. This involved setting up
development, testing and production environments with more robust and efficient architecture.
Installation of Products like ITIM, ITDI, ITDS. Developed custom connectors for integration with
custom applications like peoplelink - using ITDI 7.1 and Adapter Development Toolkit (ADT). Part of
the production support team and handling production issues on daily basis.
Responsibilities:
• Requirements gathering for Enterprise Identity and Access Management Solution.
• Consulting, solution, design and development, end to end testing of application.
• Involved in multiple projects for the client. Worked on major enhancements to the
existing ITIM infrastructure, business processes/ functionality and new integrations of
applications with ITIM
I T I M 5.1 Installation for DEV and Test Environment: (3 months )
• Installation of IBM Websphere Application Server 7.0 (WAS)
• Installation of IBM HTTP Server 7.0 (HIS)
Payal Anand
• Installation of Update Installer
• Installation of Fix Pack for WAS / HTTP Server / HTTP Server Plugin
• Installation of DB2 9.5
• Installation of IBM Tivoli Directory Server 6.2 (ITDS)
• Installation of TDS Web Admin Tool (IDSWebApp) in WAS
• Configure DB2 and TDS for ITIM using the Middleware Configuration Tool
• Installation of ITIM 5.1
• Installation of Fix pack for ITIM 5.1
I T I M customization tasks (4 months)
• Organizational Structure design in ITIM.
• Creation of roles in ITIM.
• Implementation of Provisioning Policies, Identity Policies, Password Policies and Provisioning
policies in Tivoli Identity Manager.
• Developed custom workflows and lifecycle rules etc. in ITIM
• Worked on existing Active Directory users’ reconciliation and adoption in ITIM with minimal
impact on users.
• Setup TDS SSL Replication.
• Creation of provisioning policy of AD to integrate with CISCO VPN application (AD integrated
application)
I TD I installation and connector Development (9 months)
• Installing IBM Tivoli Directory Integrator 7.0 (ITDI) on windows server
• Install RMI Dispatcher
• Installing Fix Pack 7.0.0.7 for ITDI 7.0
• Developed custom connectors for integration with custom application peoplelink of the client
using ITDI 7.0 and Adapter Development Toolkit (ADT).
• Develop custom connector to get report of ITIM warnings on daily basis.
• Develop LDAP connector for adding role to end users in BHD LDAP.
• Develop LDAP connector for creation of groups in BHD LDAP
• Develop custom connector for dormant user report
Support Task: (10 months)
• Analysis for the issues reported in Prod/Development/Stage environment, replication, root cause
analysis and providing solution to fix the issue.
• Worked on Production rollout strategies, and providing offshore support on incidents reported for
production.
• Coordination with other teams in order to work on issues/task which spans across scope of
multiple teams.
• Documentation, Testing and Bug fixing for production issues.
• Monitoring all IAM components like TAM, TIM, ITDI, TDS, WAS - checking logs for custom
connectors, TIM components (WAS, TDS etc.), TDI logs (ibmdi.log), Agent logs for monitoring
to avoid issues.
• Technical Lead for ongoing production support
• Trained new team members on project related activities and incidents. Conducted several training
sessions on ITIM product for team members.
C lient: Commonwealth Bank of Australia, Australia (April, 2010 – January 2011)
IAM is the Bank’s primary Identity and Access Management tool built upon the IBM Tivoli Identity
Manager 4.6. IAM uses Role Based Access Control (RBAC) to provision system access to users based on
details stored in their PeopleSoft Human Resource profile, as well as information entered manually via
the IAM front-end. The primary objective of IAM is to provide a centralized source of user entitlement
information, while providing a decentralized model for managing those entitlements.
Environment: IBM Tivoli Identity Manager 5.0 (ITIM), Tivoli Directory Server 6.1, Active Directory,
Tivoli Directory Integrator 6.1
Role: - Security Consultant
Create custom person in ITIM through feed from peoplesoft application. Developed custom connector in
ITDI for creation of person in ITIM where peoplesoft served as feed. Integration of AD, SAP, Commsee
(custom application) with ITIM. Development of custom JDBC, LDAP connector in IBM Tivoli
Directory Integrator.
Responsibilities:-
• Played a crucial role in production and go-live activities for the client
• Participation in releases/builds to ensure successful release and resolve issue instantly if any
occurs during such activities.
Active Directory Integration with Tivoli Identity Manager (3 months)
Commonwealth Bank of Australia Acquired Bank west in 2008 and wanted to manage the active
directory of Bank west through the CBA Identity Manager Application and its Portal.
• Installation of agents and configuring agents according to the requirement.
• Worked on Workflow in order to fulfil the functionality requirements.
• As a Developer involved in change requests for Commonwealth Bank of Australia and created
many manual resource provisioning processes for the unmanaged systems of identity manager.
I T I M Enhancements (5 months)
• Creation of Custom Person and Identity and Password policy for Custom Person.
• Development of Provisioning Policies for all applications like AD, SAP, Peoplesoft.
• Point of contact for the onsite and offshore team for day to day activities.
• Handover to maintenance team to solve user problems in there day to day duties and helped them
to fix the bugs.
C lient: Bharti Airtel, India (March 2008 – February 2010)
Bharti-Airtel Limited has undertaken an enterprise-wide initiative called “ Stake holder's Security
F ramework ” to have centralized control on security and identity management for applications and
Payal Anand
systems being used by all its user communities consisting of employees, contractors, partners, associates
and customers.
The objective of this project is to provide a common/consistent interface for all security requirements of
the Bharti-Airtel enterprise. It will be responsible for enforcing policy based management of IDs,
accounts, roles, permissions and approval workflows. SSF is providing a single point access to all
accessible application based on employee role.
Environment: - IBM Tivoli Identity Manager 4.6 (ITIM), Tivoli Access Manager 6.0, Tivoli Directory
Server, Tivoli Directory Integrator 6.0,
Role: - T ivoli Consultant
Project involves an integration of Tivoli Identity Manager with Tivoli Access manager, along with
Directory server as the common user registry and Tivoli directory integrator as custom connector
development framework for a large set of user base. Started working on project from initial stage of
designing till production releases/ post-production support.
This project was primarily divided into 3 stages:
1. Proof of Concept
2. SIT (Systematic Integration Testing)
3. Production
Responsibilities:
• Requirements gathering for IAM solution.
• Worked from initial stage till post production support in project in all phases - consulting,
solution, design and development, testing.
• Play a vital role in the production roll out for all over India.
• Active member in the design/Development Team for integrating Sri Lanka and Jersey business
with SSF.
• Trained Operations teams to solve user problems in there day to day duties and helped them to fix
the bugs.
• Presentation and Training for the Clients to use ITIM.
• Responsible for UAT Sign off for Design and Development Phases from Client.
• Involved in the Go-Live and post production support activities for roll-out of various billing
applications.
• Work involved handling customer (user) problems, escalations, training end users about the
newly launched identity & access management framework etc.
I TD I Custom Connector Development (12 months)
• Development of custom connectors using TDI 6.0 – to integrate billing and enterprise stake
application like HRMS, NMS, CPS, RMS etc.
Integration of CPS (Common Payment System) application
• CPS is custom application with db2 backend integrated with ITIM using ITDI 6.0 – developed
custom connector where provisioning, deprovisioning, modification is automated from ITIM as
per specific role.
• Designed and developed the connector from scratch to provision and reconcile application users.
• Prepared of solution & design document.
• Successfully handled UAT and security audits.
• Involved in the Go-Live and successful production roll-out
• Post production support activities for roll-out of various billing applications.
• Work involved handling customer (user) problems, escalations, training end users about the newly
launched identity & access management framework etc.
Integration of N MS (Number Management System) application
• NMS is custom application with oracle backend integrated with ITIM using ITDI 6.0 custom
connector, where stored procedures is used to create, delete, update in NMS application.
• Developed custom JDBC connector to automate entire life cycle of users in NMS application
from ITIM.
• Develop Subforms using Rapid Application Developer and Websphere Application Server and
deploy subforms in TIM.
I ntegration of HR MS application
• HRMS served as feed connector to create person entity in ITIM. HRMS is authoritative
datasource for ITIM. HRMS application used oracle as data repository.
• Developed custom connector to create, delete, modify person in ITIM.
Integration of Active Directory
• Installation of agents and configuring agents according to the requirement
• Automated provisioning, deprovisioning, suspension, restore of users in Active directory through
ITIM for employees using out of box AD Agent.
I T I M Implementation and Customization (12 months)
• Organization Structure, password policy, provisioning policies, Identity policy, Life Cycle Rules,
planning and running reconciliations.
• Form customization.
• Developing Adaptor profiles and importing in ITIM. Creation of services.
• Working on restore person workflow, Approval workflows with different kinds of email
notifications.
• Develop the workflows for lifecycle management of users for creation, modification, deactivation
of users/accounts.
• Managing users and their memberships into the various TAM groups.
• Worked on design and development solution for business in other countries like Sri Lanka and
Jersey using existing system.
ID Management Life Cycle for Bharti Datacenter (April 2007 – December 2007)
The ID Management life cycle project has been initiated to provide Bharti Data Center for managing
security of applications, data and system resources. It is responsible for enforcing policy based
management of IDs, accounts, roles, permissions and approval workflows. ID Management life cycle
Payal Anand
basically designs for data center where thousands of users and servers repository have to maintain
manually. So provide the solution for AIX servers, Oracle servers, Windows.
Role: Tivoli Consultant
Integration of out of box agents like windows, Linux, AD with ITIM to provision/deprovision of users on
these servers
Responsibilities:
• Installing and configuring of agent servers for AIX, Linux and Windows.
• Development for Identity Policy, Provisioning Policy for all applications.
• Creation of Custom Person and Identity and Password policy for Custom Person.
• Automated provisioning, deprovisioning, suspension, restore of users in all target resources
through ITIM for employees using agents.
• Adoption rule, LDAP Filters for Reconciliation.
• Responsible for UAT Sign off for Design and Development Phases.