N I CHOLAS POWELL
Senior IAM Infrastructure Engineer
************@*****.*** 405-***-**** Edmond, OK P ROFESSIONAL O BJECTIVE
Results-driven Senior IAM Infrastructure Engineer with 15+ years of progressive enterprise technology experience, including deep specialization in Identity and Access Management architecture, privileged access governance, and federated authentication frameworks. Seeking a senior-level infrastructure engineering role where I can leverage extensive hands-on expertise with Ping Identity, Azure AD/Entra ID, CyberArk, and Zero Trust security models to design, implement, and scale enterprise-grade IAM ecosystems that reduce organizational risk and enforce least-privilege compliance across hybrid and cloud environments. CORE COMPETENCIES
Identity & Access Management (IAM)
Architecture
PingFederate / PingOne / PingAccess
Administration
Single Sign-On (SSO) Design & Federation
(SAML, OAuth 2.0, OIDC)
Multi-Factor Authentication (MFA) Strategy &
Implementation
Role-Based Access Control (RBAC) & Least-
Privilege Policy Enforcement
Zero Trust Network Architecture & Security
Framework Design
CyberArk Privileged Access Management (PAM) Azure Active Directory / Entra ID & Hybrid Identity Integration
Enterprise Directory Services (LDAP / Active
Directory)
Disaster Recovery Planning, Audit Compliance &
Security Governance
P ROFESSIONAL E X P E R I E NCE
Senior Technical IAM Infrastructure Engineer Remote Nationwide Insurance — Contract Engagement Oct 2023 – Dec 2025
Architected and deployed enterprise-scale Identity and Access Management solutions leveraging PingFederate, PingOne, and PingAccess to support thousands of internal users and vendor integrations.
Engineered and operationalized role-based access control (RBAC) policies and adaptive risk profiles within PingFederate and PingOne, governing access to critical Ping Access applications and third-party vendor systems.
Conducted systematic IAM process reviews and gap analyses to align authentication and authorization frameworks with NIST, ISO 27001, and industry-standard zero-trust security principles.
Designed and delivered multi-factor authentication (MFA) strategies tailored to varying business risk tolerances, integrating Azure MFA, PingMFA, and DaVinci orchestration workflows.
Executed large-scale application onboarding initiatives, migrating legacy authentication mechanisms to modernized SSO policy frameworks within PingFederate using SAML 2.0 and OIDC protocols.
Configured, maintained, and tuned enterprise SSO federation connections, ensuring high availability and minimizing authentication-related service disruptions across production environments.
Coordinated cross-functional change management processes for production IAM deployments, partnering with infrastructure, security, and application teams to maintain SLA commitments and reduce customer impact.
Senior Solutions Architect — IAM & Enterprise Integration Oklahoma City, OK Dolese Bros. Co. Oct 2021 – May 2023
Served as the subject matter expert for enterprise imaging systems, SmartConnect middleware, and Dynamics CRM/GP integrations across the organization's hybrid infrastructure landscape.
Evaluated and recommended on-premises-to-cloud migration strategies, assessing identity federation requirements, SSO readiness, and data sovereignty considerations for critical business applications.
Designed and implemented automated workflow orchestrations to eliminate manual provisioning and de- provisioning processes, reducing identity lifecycle management overhead and human error risk.
Owned end-to-end project delivery for enterprise integration initiatives, including stakeholder communication, milestone tracking, and post-deployment validation.
Engineered and configured SSO federation connections to third-party SaaS applications via Azure Active Directory, enabling seamless identity propagation and centralized access governance.
Create and execute project plans, including defining project scope, objectives and deliverables.
Facilitate communication and collaboration between project team members, stakeholders and clients.
Track and report project status updates to stakeholders and senior management. Senior IAM Infrastructure Architect/Sr System Analyst Oklahoma City, OK MidFirst Bank Sep 2009 – Oct 2021
Spearheaded the enterprise-wide deployment and ongoing governance of the Ping Identity suite, including PingFederate and PingOne, serving as the primary SME for IAM platform operations across a large financial institution.
Architected, configured, and maintained SSO federation connections, enterprise MFA enforcement policies, and vendor application integrations within PingFederate's policy administration framework.
Designed and implemented authentication adapters, attribute contracts, and adaptive access policies in PingFederate, enabling granular, context-aware authorization for high-risk financial applications.
Directed strategic migration of legacy applications to redesigned SSO authentication policies, reducing authentication technical debt and improving end-user experience.
Led annual disaster recovery tests, system availability audits, and platform upgrade lifecycles, maintaining 99.9%+ uptime for identity-critical infrastructure components.
Evaluated and implemented on-premises to cloud migration strategies for enterprise infrastructure, including identity-aware workload transitions to Azure-based environments.
Developed automated workflow processes to streamline identity provisioning, reporting, and reconciliation tasks, reducing operational overhead for the IAM team.
Continuous Improvement: Contributes to continuous improvement within the team / Pro-actively supports knowledge sharing within the team and across regions / Analyses system support processes to achieve continuous improvement. Identify trends from ticket analysis and provide recommendations to production management, application development and infrastructure teams to improve technology performance and efficiency
Ongoing support: provide ongoing support for the bank’s core applications; register incidents in the tracking systems; resolve incidents and complete root cause analysis; work vendor support teams on changes and incidents; perform daily system health checks; track vendor information related to the new application versions or new system patches
Will act as a technology SME for the team on various integration points of the suite of products and will show cross technology expertise in analyzing and addressing the issues
Leveraging problem management procedures to ensure incident trends are identified, tracked and resolved in a timely manner
Supporting regulatory, management and activities on daily, monthly and quarterly basis
Provided technical mentorship to junior infrastructure and application support personnel, establishing documentation standards and knowledge-transfer frameworks. Quality Assurance Supervisor Oklahoma City, OK
Oklahoma Tax Commission May 2008 – Jul 2009
Supervised and directed a QA team of three analysts, establishing quality assurance standards, test case frameworks, and release validation procedures for state government software systems.
Coordinated development release cycles, managed defect triage workflows, and conducted periodic employee performance evaluations.
Project Manager / Quality Assurance Manager Oklahoma City, OK American Bank Systems Apr 2006 – Apr 2008
Managed cross-functional development and QA teams, overseeing project milestones, sprint deliverables, and executive-level status reporting for financial software product lines.
Established and enforced QA protocols, recruited QA team members, and validated software modifications for accuracy, performance, and regulatory compliance.
Developed and presented software change proposals, coordinating feasibility assessments with engineering leads and product stakeholders.
Create and execute project plans, including defining project scope, objectives and deliverables.
Facilitate communication and collaboration between project team members, stakeholders and clients.
Track and report project status updates to stakeholders and senior management
Conduct project evaluations to identify areas for improvement and implement lessons learned Quality Assurance Specialist / Computer Technician Oklahoma City, OK a la mode, inc. Sep 2002 – Apr 2006
Executed functional and regression quality assurance testing on software update releases, developing comprehensive test matrices to validate product accuracy and performance.
Delivered Tier 1 and Tier 2 technical support to clients via phone, diagnosing and resolving software configuration, installation, and operational issues within SLA timeframes. E DUCATION
Bachelor of Science, Computer Information Systems 2000 Tampa Technical Institute — Tampa, FL