Security professional well-prepared for high-level responsibilities in protecting organizational assets. Proven track record in developing and implementing robust security strategies. Exceptional focus on team collaboration and adaptability to dynamic environments. Known for analytical problem-solving and proactive defense measures.
Overview
11
11
years of professional experience
Work History
Senior Information Security Engineer
Wells Fargo Bank, NA
05.2023 - Current
Lead multiple SSO integrations and engage cross-functional technical and non-technical stakeholders to successfully migrate enterprise applications from Okta to Entra ID with zero production rollbacks.
Expert in end-to-end SSO and application integration, including kickoff, configuration, testing, and production deployment.
Expertise in the configuration and implementation of Privileged Identity Management, Conditional Access, Zero Trust, Identity Governance, MFA, Entitlement Management (access packages and catalogs), and Identity Protection.
Leverage and configure SCIM to automatically create, update, and delete users, saving time and cost while ensuring that only authorized users have access to approved resources.
Experience in the implementation of Okta and Entra ID solutions in ensuring secure and efficient access to resources and applications.
Collaborate with cross functional teams and vendors for all SSO integration related activities both for Okta and Entra ID.
Managed and secured over 100,000 users accounts, 2000 groups and several service accounts in Microsoft Entra ID.
Integrated and configured single sign on of over 2000 gallery and non-gallery applications in Microsoft Entra ID and Okta for seamless and secure access to application and resources.
Work thoroughly in ensuring successful implementation, configuration and testing of all SSO integrations and deployment into the production environment.
Expert in the design, building and implementation of identity protocols from the application requirement gathering stage to deployment and maintenance.
Experience in OAuth authentication flows from app registration to the grant types, retrieving access token, security metadata transaction and accessing various Microsoft Graph API, SharePoint Online site and various rest API or resource server.
Experts in configuring SAML attributes and mappings for improved and additional security layers to users’ traits.
Proficient in identity life circle management and application life circle management.
Team lead in several projects from kickoff, implementation to sign off.
Expert in identity protocols such as SAML 2.0, and OpenID Connect.
Proficient in the configuration of OAuth application registration and various authorization grant type in OAuth 2.0 and hands on experience on Microsoft Graph API
Vast experience in App registration and enterprise application configuration in Microsoft Entra ID.
Good work experience in Microsoft Entra Connect and Entra Connect Sync for on-prem and cloud synchronization of users, groups, application and resources.
Experience in Life Circle Management of users and expert in SCIM provisioning to automatically create, update and delete accounts when users join, leave or move within organization for improved security.
Experience in making API calls to Okta API and Entra ID leveraging on the use of postman for API implementation.
Experience in the effective communication of SSO concepts to clients, vendors, and other team members.
Interact and engage with several vendors and other team members for successful project execution.
Experience in Okta application integration methods such as Okta Integration Network (OIN), Application Integration Wizard (AIW), and Okta Template.
Experience in Okta application integration, Single Sign On, and MFA
Experience in Okta policies, groups, and user management.
Experience in multiple integrations with OKTA including on-prem active directory with the use of Okta AD agent.
Design and deploy Okta solutions to enhance authentication and access control.
Collaborate with cross-functional teams to integrate Okta with various applications and systems, enabling streamline access for users.
Good knowledge of Active Directory, GPO, file mappings, and software deployment using PDQ.
Experience in SSO troubleshooting using tools such as SAML Tracer.
Experience in Jira and confluence platforms for project tracking, ticketing, team and project collaboration.
Good understanding of governance elements and policies such as SOX, GDPR, NIST and ISO.
IAM ENGINEER- OKTA
JC 20 Technologies, Dallas, Texas
02.2020 - 03.2023
Experience in identity and access management.
Worked on Multifactor Authentication using OKTA.
Experience in multiple integrations with OKTA.
Good understanding and experience with Active Directory and Microsoft Entra ID.
Experience with OKTA Identity Lifecycle, OKTA policies, Groups, reports, and system logs.
Experience with the integration of Active Directory with OKTA.
Designed and implemented OKTA SSO from scratch.
Designed and implemented OKTA SSO with over 100+ SAML/SaaS applications and worked with more than 35 different groups to integrate their applications into SSO.
Automated new hire Onboarding process.
Designed a secure solution for moving data from an on-prem location to Office 365.
Experience in OKTA Administration and providing support to clients.
Experience with OKTA API access management.
Designed the implementation of single sign-on solutions based on SAML 2.0, SWA, and API services.
Experience in Azure AD Connect, AD Connect Cloud Sync, Privileged Identity Management (PIM), Role Base Access Control (RBAC), Identity Protection, Conditional Access, MFA, and Identity Governance.
Familiar with compliance and auditing controls required to implement corporate identity governance on cloud-based and on-premises resources.
Integrating and securing external applications into the OKTA environment.
Experience in Active Directory GPO, folder mapping, and DNS configuration.
General knowledge of Privileged Access Management Solutions such as CyberArk.
Excellent troubleshooting skill set.
SNR IAM ENGINEER
AJ BART INC, ADDISON, TX
08.2015 - 02.2020
Collaborated with other cloud engineers to address security, risk, and implementation of controls during the cloud platform onboarding lifecycle and provide mitigation recommendations.
Create and manage users, permissions, directories, and files in a Linux environment.
Created and managed IAM user accounts and role-based policies for access to AWS services.
Planned and migrated on-prem multi-tier IT infrastructure to AWS cloud.
Azure AD Role Based Access Control (RBAC) and privilege Identity Management (PIM)
Azure Multi-Factor Authentication (MFA)
Designed, developed, and implemented a backup and recovery strategy for applications and databases.
Implemented and Maintained monitors, alarms, and notifications on EC2 instances using CloudWatch and SNS.
Evaluated and improved existing AWS deployments.
ASSISTANT STORE MANAGER
DOLLAR GENERAL IRVING, TX
01.2015 - 08.2015
Supported the store manager in the daily operations of the store and ensured that employees provided exceptional customer service.
Ensured that the store is clean and meticulously organized.
Ensured that all store policies, procedures, and controls are followed.
Developed strong interpersonal skills and the ability to think quickly to deal with problems as they arose with the customers and the employees.
Collateral Valuation Analysis at Wells Fargo Home Mortgage and Wells Fargo Bank NACollateral Valuation Analysis at Wells Fargo Home Mortgage and Wells Fargo Bank NA
Commercial Banking Portfolio Associate at Wells Fargo Bank NA (Commercial Investment Bank-CIB)Commercial Banking Portfolio Associate at Wells Fargo Bank NA (Commercial Investment Bank-CIB)