Post Job Free
Sign in

Access Management Active Directory

Location:
Aubrey, TX
Posted:
October 21, 2024

Contact this candidate

Resume:

SRILAKSHMI G

Cell: 469-***-****

Email: **********************@*****.***

Professional Summary:

I have total 9+ years of experience in Identity and Access Management tools such as SailPoint IIQ and Sail Point IDN. I have strong abilities in technical background, strategic planning, and management solutions. I have good understanding of Identity and Access Management Framework and Industry best practices.

Accomplishments

Experienced with different OOTB connectors such as Active Directory, workday, Sales force, Service Now, Oracle Database, Direct, SAP S4, GRC, JDBC, AWS, SCIM and Delimited File.

Hands-on experience on Sail Point IIQ and Sail Point identity Now concepts such as Application Onboarding, Provisioning, Deprovisioning, LCM workflows,Certifications, Reports, Tasks, transforms, PowerShell scripts, Bean shell, Lifecycle management, Policy violation and Rules, etc.

Experience including installation,upgradation,patching,integration, and deployment of the Identity IQ product in client environments. Strong experience in assisting with identity and access management related customizations.

Expertise in various stages of Software Development Life Cycle (SDLC) including Requirement Analysis, Design, Implementation, Integration, Deployment and Post Development Maintenance

Excellent knowledge and experience in implementing Workflows, Forms, Certifications, Reports and Roles.

Excellent development, coding skills relevant to Sail Point (Java, Postman, Transforms).

Develop integrations with end points with complex systems like Service Now, using REST endpoints. Develop workflows, reports, custom rules, custom scripting and coding, web services using Java, SCIM/REST APIs.

Experience in writing aggregation rules, provisioning rules and connector rules in SailPoint IIQ.

Experienced in working in an Onsite/Offshore delivery model.

Built and Configured Sail Point in-built tasks like aggregation, Refresh ID, schedule tasks, correlation, etc.

Strong understanding of internal technical aspects of Sail Point IIQ, role-based access control (RBAC), Multifactor authentication (MFA), single sign on (SSO).

Developed delegation rules, customized certifications to send an email notifications based on client requirement.

Proficiency in programming with different Java IDE’s like eclipse.

Strong experience in quick link configuration and dynamic scoping in SailPoint IIQ.

Strong understanding of role engineering processes and hands on experience on Role Mining techniques (top-down) to create Enterprise roles and Application specific roles.

Strong understanding and implementation experience of RBAC models for big organizations. In-depth experience of implementing and supporting Access Certifications programs for various business applications using SailPoint Identity IQ and SailPoint Identity Now.

Strong experience with MS Office (MS Word, Excel, PowerPoint, and Project).

Provided knowledge transfer and post production activities as needed.

Experienced with both Authoritative and non-authoritative applications with various connectors.

Proven communication and troubleshoot skills to achieve business needs.

Capable of learning new technologies and adapting to new environment easily.

TECHNICAL SKILLS:

Languages:

JAVA, C

Technologies:

J2EE, JSP, HTML, XML, PHP, Json,Java script, Java Bean shell

Operating Systems:

Windows 2K/XP/9.X, UNIX, Linux

Databases worked:

My-SQL, JDBC, Oracle

Miscellaneous:

Sail Point Identity IQ, Sail point Identity Now,AWS

Education:

B. Tech from Jawaharlal Nehru Technological University Kakinada (JNTUK)

Projects

Company Name: Wave Strong Inc.

Role: SailPoint IDN SME Duration: Feb 2024 to Till Date

Client: Arkansas Blue Cross Blue Shield

Responsibilities:

Worked on migrating the project from one of the IGA tool to Sail Point IDN as part of this migration, implemented all the requirements in sandbox first, tested thoroughly and moved to production. As part of this, worked with client stakeholders and SailPoint support team to gather information needed for business application integration with Sail Point, doing gap analysis for migration activities ensuring minimal disruption of business operations.

Extensively worked in identity Now setting virtual appliances. In virtual appliances, I've worked on analyzing different types of deployment options, like local with vSphere, local with Hyper V AWS cloud, Azure cloud, GCP. Also worked on configuring network configuration options like standard HTTP proxy, secure tunnel configuration options like standard HTTP proxy, secure tunnel. In addition, I've also worked on implementing transplant security, password interceptor, local NTP server.

Developed SailPoint deployment and solution architectures.

Worked on multiple tenants (dev,UATand Prod)

Worked on onboarding different types of applications using different connectors like direct connector, Delimited File, Active Directory, Azure AD for leveraging Azure AD MFA capabilities to strengthen authentication for accessing sailpoint, Web Services, JDBC and SCIM.

Integrate SNOW and service desk with SailPoint IDN to generate the tickets when user leaves the organization, when user raise access request, when manager revokes the access in certification etc.

Created SOD policies for identifying risks in advance for policy compliance.

Worked on scheduling role owner certifications, entitlement owner certifications, manager certification and application owner certifications to review the access of the users.

Imported bulk roles into SailPoint IDN using Ruby script.

Worked with Sailpoint IDN REST APIs to make changes on source, create profile, deploying transforms, deploying connector rules etc.

Developed transforms to manipulating the attribute values based on application owner requirement.

Build Roles, Access Profiles for various sources for request-based access processes.

Performed unit testing and Prepared test cases and hand it over to client and ask them to test and confirm from their end.

Worked with various internal business groups and IT application owners to define Role-based access templates/Roles for implementing Role Based Access Controls (RBAC) for multiple applications.

Worked on RBAC analysis to a set of birthright roles and request based roles, access profiles to be leveraged for role-based provisioning and de-provisioning fulfillment

Developed connector rules and cloud rules ex: After create rule, before provisioning rule and Build Map rule using Java and PowerShell scripts.

Enable automated user lifecycle management (user on-boarding and off- boarding) for Employees and Contractor using PowerShell scripts and also troubleshooting the JML issues by digging into the PowerShell scripts logs.

Troubleshooting the access requests issues raised by the requestors and troubleshooting the account creation issues for users.

Write search queries and scheduled to send the reports like list of access profiles, list of governance groups and list of access requests raised by the users in particular week or month or day based on the client requirement

Developed custom workflows like disable the AD account when user lifecycle state is Future Hire, LOA workflow, Terminated workflow etc.

Monitor the sources health on hourly basis and troubleshoot if any source is unhealthy by checking the logs in VA through putty.

Customize the OOTB email templated based on the client requirement.

Monitor the identities status on daily basis and troubleshoot if any identity having issues.

Scheduled an account aggregation tasks and entitlement aggregation tasks based on client requirement.

Changes made in PowerShell scripts based on the client requirement.

Worked on Onboard the disconnected applications in Sail point production

Attended daily standup calls to discuss about the issues.

Enabling self-service features like password management such as resetting passwords easily from any desktop browser or using mobile device in Identity Now.

Designed and maintained detailed run books that provided step-by-step procedures for system operations, troubleshooting, and incident management.

Engaged in post-migration reviews to gather feedback and continuously improve identity governance processes.

Enabling self-service features like password management such as resetting passwords easily from any desktop browser or mobile device using identity Now.

Created runbooks, training materials and documentation for end-users and administrators, facilitating smooth adoption of SailPoint IDN.

Environments: SailPoint identity Now, PowerShell script, LDAP, Okta,Postman, API web services

Company Name: Accenture

Role: SailPoint Associate Consultant

Client: Carnival Corporation Duration: Jun 2022-Jan 2024

Responsibilities:

Implemented provisioning, de-provisioning, end-user self-service other related functionalities for 50 plus applications in Sailpoint IIQ.

Involved architecture, design, build, test and deployment stages of the project.

Hands-on experience installing, developing, configuring and supporting Sail Point IdentityIQ in administration and maintenance of production Sail Point Identity IQ platform

Created custom connectors for the applications who are not supported by out of the box connectors in SailPoint IIQ.

Implemented custom workflows for provisioning to AD and other applications.

Integrated CyberArk with SailPoint IIQ to manage privileged accounts for provisioning/certification using SCIM API.

Onboard various applications like delimited file, JDBC, AD, LDAP, SAP, etc.

Invoked custom workflows through java by building provisioning plan, workflows, account request, attribute request.

Developed build map rule, correlation rule, delegation rule as per client requirement in SailPoint.

Customize workflows for joiner, mover, leaver to do automatic provisioning.

Configuration of roles, policies and certification for governance compliance.

Involved in coding, testing and support activities.

Developed a code that will send expiration notification to contractors.

Worked on access re-certification, automatic/manual remediation for applications managed by SailPoint for employees and contractors.

Requirement analysis and preparing requirement documents and design documents.

Developed a schedular using java code that periodically runs and terminate the contractors based on their contract end date.

Developed a custom form in the SailPoint UI so that various admin can create employees a and contractors manually through UI and provision the users.

Developed and implemented SIT and UAT test cases.

Environments: SailPoint IIQ7.3, J2EE, CSS, JavaScript, XML, Hibernate, MySQL, HTML, Java7, Bean shell script, Tomcat 7.

Company Name: Accenture

Role: SailPoint Associate Consultant

Client: Carnival Corporation Duration: Jul 2021-May 2022

Responsibilities:

Experience in onboarding the different types of applications within Sail Point like Active Directory and Azure AD integrations, Databases (Oracle, MySQL, Postgres, MSSQL),SCIM integrations, REST & XML web services integrations, Service Now,Salesforce integrations.

Hands-on experience installing, developing, configuring and supporting Sail Point IdentityIQ in administration and maintenance of production Sail Point Identity IQ platform

Extensive knowledge and understanding of Information Security, Identity & Access Governance (IAG), and Sail Point technologies;

Proven experience with Identity Lifecycle, User Provisioning, Directory Services, Password Management, Single Sign-On(SSO), Audit & Compliance, Identity Governance, and Role Management;

Good understanding and experience with Sail Point connectors;

Ongoing operational support of Sail Point Identity IQ platforms, monitoring and troubleshooting;

Develop and implement connectors, workflows, forms, rules, policies and reports;

Actively participate in application onboarding, role analysis and workflow development activities;

Delivers Sail Point based Identity Governance & Administration services: Request Access - Approve - Provision / de-provision Access;

Worked on Certifications;

Knowledge on Manager Correlation and Account Correlation;

Worked on Production Issues;

Multi-Layered Environment Setup for Sail point IIQ;

Worked on Dashboard New Quick links creations;

Worked on creation of Roles using Role Mining as per the Business Requirements;

Develop and implement connectors, workflows, forms, rules, policies and report;

Developed Build Map, Correlation and other associated Connector Rules;

Implemented Scheduled Custom task to disable the contractors on their Termination date/ to send approval request to extend the Termination date (if required) before 2 weeks;

Implemented Termination process for Employees;

Performed customization based on client requirement, which included creating Custom Task, Custom Reports, Custom Email Templates, Custom forms and minor UI Customizations.

We Implemented Separate Workflows for Provisioning Process and Deprovisioning;

Worked from the design, Implementation and unit testing;

Involved in gathering requirements from the customer and implementing it with the onshore team

.

Environments: SailPoint IIQ7.3,J2EE,CSS,JavaScript,XML,Hibernate,MySQL,HTML,Java7,Beanshell script, Tomcat 7.

Company: Capgemini

Role: Senior SailPoint Developer

Client: Emblem Health Duration: Sep 2018 to Jun 2021

Responsibilities:

Worked on onboarding different application connectors like Delimited File, Active Directory, JDBC, AWS and Oracle.

Involved in integration of workday and service now with SailPoint. Analyze and verify the onboarding and offboarding reports to ensure workday feed is properly correlated. Directly with HR/workday team on verifying any new onboarding or offboarding requests.

Experience with HR automation process by integrating workday with sailpoint.

Worked on Custom Workflows and Developed Provisioning Policies.

Worked on custom workflows by building custom Quick link for doing password change, account unlock and User creation.

Design and development of custom reports using java in SailPoint identity IQ

Developed Build Map Rule, Correlation Rule, Escalation Rule and Delegation rule as per client requirements.

Participated in the daily status meeting and discuss about the issues in the group.

Requirements gathering, analysis and documentation.

Involved in testing the custom workflows.

Involved in development of Use Cases and Design Documents

Built Joiner, Mover and Leaver workflows to maintain user accounts

Developed Delegation rule as per client needs.

Developed custom rules and workflows.

Performed unit testing and involved in bug fixing of the applications and actively involved in production related issues.

Responsible for identity mapping, provisioning plan etc.

Scheduling the tasks depending on the client requirement and troubleshooting the errors occurred in daily scheduled tasks.

Developed Build map rules, pre iterate rules and customization rules.

Worked on custom and out of the box workflows in SailPoint.

Worked on enterprise role mining, Role based access control (RBAC), Multifactor authentication (MFA), single sign on (SSO) and identity management.

Worked on various Certifications, developed custom tasks and reports like Audit reports, SOX reports and remediation reports as per client needs.

Code Reviews, customization and maintenance of code across applications.

Build and Configure SailPoint in-built tasks like aggregation, Identity refresh, schedule.

Environment: SailPoint IIQ7.3,J2EE,CSS,JavaScript,XML,Hibernate,MySQL,HTML,Java7,Beanshell script, Tomcat 7.

Company: Capgemini

Client: AIA-Vitality Insurance

Role: SailPoint Developer Duration: Jun 2015-Aug 2018

Responsibilities:

Designing and Implementation of Sail Point IIQ

Performed installation, configuration and maintenance of SailPoint IIQ 7.1 version.

Experience in applying patch to IIQ 7.1 version to 7.2.

SailPoint IIQ Installation and Configuration as required by the design solution

Implementation of Self-Service feature of SailPoint IIQ

Implementation of Password features (PTA, forgot password, Change Password) of SailPoint IIQ

Configuring various roles and policies in SailPoint

Implementing the provisioning feature of SailPoint IIQ by using various connectors

Designing custom connectors for the applications that are not supported by the out of the box connectors of SailPoint IIQ

SailPoint provisioning via both out of the box connectors and custom written java code connecting to variety of systems via mechanism such as SOAP and REST webservices.

Responsible in managing the administration functionality of the SailPoint such as loading data, create policies, roles, scheduling tasks and certifications and reports.

Developed user role provisioning using IDM workflows.

Worked on SailPoint IIQ quick links for custom access request submission for user access various target system.

Monitor schedulers for identities, account and entitlement connectors from all applications.

Customizing the workflows, life cycle events and rule for birth right provisioning.

Worked on agile methodology.

Wrote policy rules to ensure separation of duties and wrote new workflows to reflect business needs.

Responsible to generate the configuration and campaign reports.

Developed custom workflow to provision users to LDAP and other respective clients.

Developed logging framework using log4j.

Setting up SailPoint IIQ policy server on 4 environments (Dev, QA, UAT & Production)

System Integration Testing

Implementation java classes using java code.

UAT, Performance Test and Capacity Planning Support

Configuration and development of SailPoint lifecycle events (LCM)

Provide Knowledge transfer and postproduction support activities as necessary

Implemented provisioning, de-provisioning, end-user self-service, and other related functionalities.

Environment: SailPoint IIQ 7.3, J2EE CSS, JavaScript, Hibernate, MySQL, HTML, Java 7, Bean shell, script, Tomcat 7.



Contact this candidate