Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Nirnaya Baral

Euless,TX

Summary

  • 4+ years of IT experience in the Application Security domain, specializing in devising integration solutions in Identity and Access Management and Privileged access management.
  • Experience implementing AIM in push/pull models leveraging usages and also through REST APIs to fetch the passwords into the configuration and applications.
  • Experience in using SAML federation tools like SailPoint and Azure ACS. Used Secure Auth appliance to provide step-up solutions to cloud-based applications like Cornerstone and Salesforce.
  • Performed operational support in Active Directory (AD), such as creating security groups, creating users, assigning policies, and maintaining password complexity rules. Commissioning and decommissioning computer objects, developing and maintaining service accounts.
  • Proficient in creating server-side components, designing, and implementing Business Tier objects, User Interface (GUI) design and development, unit testing, debugging and Deployment.
  • Strong experience in RDBMS using DB2, Oracle 9i/10g, MySQL and MS SQL Server.
  • Supports and monitors ongoing compliance activities relative to applicable regulations and standards (e.g., SOC I&II, HIPAA, HITRUST, PCI DSS, NIST CSF, ISO 27000, COBIT).
  • Experience in designing, installing, and upgrading identity and access management applications.
  • · Proficient in internal and external penetration testing, PII/data protection, and security architecture.
  • Skilled in managing security operations, implementing security controls, and conducting cyber risk assessments.
  • Proficient in leveraging Azure AD advanced security features, such as multifactor authentication (MFA), conditional access policies, and Privileged Identity management (PIM) to enhance organizational security posture.
  • Experience in developing security policies within the Palo Alto firewall, including rules for traffic filtering, application control and threat prevention.
  • Proficient in Administration and optimization of Meraki and Cisco switches to facilitate efficient data transmission and network connectivity.
  • Experienced in configuring and managing HP ArcSight Enterprise Security Manager (ESM) to collect, correlate, and analyze security event data from diverse sources.

Overview

6
6
years of professional experience
1
1
Certification

Work History

Security Engineer Intern

Seimens Energy
04.2023 - 09.2023
  • Resolved security events and incidents or conducted security assessments using penetration tests, ethical hacking tools, or risk mitigation methodologies to evaluate vulnerabilities.
  • They are coordinated with third-party security information and event management (SIEM) providers to maintain protections and predict threats.
  • Managed company Bring Your Own Device program, onboarding employee devices and verifying absence of inherent security threats.
  • They conducted threat-hunting exercises using ThreatConnect to proactively identify and mitigate potential security threats before they could impact Siemens Energy's systems and data.
  • Fine-tuned ArcSight dashboards and reports to provide actionable insights to security operations team, enabling quicker response to security incidents.
  • Collaborated with cross-functional teams to integrate ArcSight with other security tools and systems, such as SIEM solutions and threat intelligence platforms, for improved threat detection and response.

IAM Developer

NCELL
12.2020 - 01.2022

● Implemented Agile Methodology with Sprint teams in a highly dynamic environment.

● Rewriting workflows to encompass new ways of provisioning. Restructured entire product to reflect direct provisioning across many applications. In process of upgrading IdentityIQ product from SailPoint 6.3 to SailPoint 7.0.

● Analyzing security logs to identify security events to implement alerts to monitor & respond by the 24x7 Security Operations Center (SOC).

● Integrate Unix/Linux servers into AD (Active Directory) while extending compliance and security of Active Directory (AD) Domain Services.

● Break Glass Access Management Process, Integration with other Systems (email configuration). Change Management Process Plan (OS, patch updates). Responsible for creating new users and activating and enabling users, groups, and OU accounts in theActive Directory (AD).

● Experience using SOC monitoring devices (SIEM, IDS, DLP) to review and analyze pre-defined events indicative of incidents.

● Administration experience of CyberArk vault with Safe creation, integration with LDAP, and other authentication methods. Mitigation of risks using CyberArk, Aveksa, and policy changes on servers. Incident intake, ticket updates, and reporting of cyber events.

● Deployed several out-of-box SailPoint connectors to connect various client Systems (JDBC, LDAP, AD, RACF etc.)

● Worked with SAP system and developed BAPI functionality.

System Engineer

NCELL
08.2018 - 11.2020

● Proficient in Administration and optimization of Meraki and Cisco switches to facilitate efficient data transmission and network connectivity.

● Implementation of fully API based SSO architecture using CA SiteMinder, CA IDM, PingFederate, and Radiant Logic Virtual Directory Server which accomplishes end applications integration with SSO easier.

● In-depth knowledge of developing, reviewing, and executing UAT test cases.

● Designed, deployed, and supported highly available and scalable Ping federate infrastructure in AWS and On-premises that provides single-sign-on (SSO) and federation solutions for internal accesses.

● Gathered business requirements to onboarding business applications into SailPoint IdentityIQ for provisioning, de-provisioning, certification, password management.

● Deployed several Ping federate integration kits for Apache, CoreBlox, Atlassian, Java, PHP, Symantec VIP, Agentless, IWA, etc., to establish federated identity's “first- and last-mile” implementation.

● Developed security policies within Palo Alto firewall, including rules for traffic filtering, application control, and threat prevention

Associate Software Engineer

Avishkaram Technologies
05.2017 - 07.2018
  • Implemented business logic in C# .NET, interacting with Microservices and MySQL databases to ensure seamless data integration and processing.
  • Involved in all stages of Software Development Life Cycle like Application Design, Development, Debugging and Application Testing.
  • Engage in performance analysis, profiling, and code reviews, tackling bottlenecks and bugs for optimal application performance.
  • Enhanced interfaces to promote better functionality for users.

Education

Master of Science - Cybersecurity

Webster University
Orlando, FL
10.2023

Bachelor of Science - Computer Engineering

Sharda University
Greater Noida, India
04.2018

Skills

  • Security Tools: Splunk, ArcSight, QRadar, Nessus, Metasploit, Burp Suite
  • Endpoint Security: CrowdStrike, SentinelOne, Carbon Black
  • Databases and Cloud: Oracle 11g/10g/9i, MS-SQL Server, AWS, Azure
  • Encryption: OpenSSL, PGP, BitLocker
  • Cloud Security: AWS Security Hub, Azure Security Center, Google Cloud Security Command Center
  • Threat Intelligence Platforms: ThreatConnect, Anomali, Recorded Future
  • Identity and Access Management: Sailpoint, Okta, Microsoft Azure Active Directory, Ping Identity
  • Privileged Access Management: Cyberark, Beyond Trust

Certification

Sailpoint Identity IQ training

  • Completed comprehensive training program covering IdentityIQ fundamentals and advanced features.
  • Focused on modules including access certification, role management, and provisioning workflows.

CyberArk Training

  • Completed CyberArk training program with a focus on privileged access management (PAM) and session management.
  • Cybersecurity - Threat Detection Certificate

Timeline

Security Engineer Intern

Seimens Energy
04.2023 - 09.2023

IAM Developer

NCELL
12.2020 - 01.2022

System Engineer

NCELL
08.2018 - 11.2020

Associate Software Engineer

Avishkaram Technologies
05.2017 - 07.2018

Master of Science - Cybersecurity

Webster University

Bachelor of Science - Computer Engineering

Sharda University
Nirnaya Baral