
Sr. Security Engineer I
Yum! Brands, Inc.1 month ago
Gurgaon, IndiaSenior / Staff+
Responsibilities
- Install, configure, upgrade, and migrate IBM ISIM, IBM ISAM, and SailPoint IdentityIQ environments.
- Develop custom workflows, provisioning policies, role-based access models, extensions, connectors, and adapters.
- Design and implement Joiner/Mover/Leaver processes and automated provisioning and de-provisioning policies.
- Build rules for access reviews, role mining, and access certifications.
- Integrate enterprise applications, directories, and databases with IAM platforms.
- Configure LDAP directory services, replication, schema extensions, authentication, authorization, SSO, and federation policies.
- Write and maintain Tivoli Directory Integrator scripts for data synchronization.
- Develop custom login modules and risk-based access rules.
- Diagnose and resolve provisioning, authentication, and directory replication issues.
- Provide operational support and optimize IAM processes.
Requirements
- Hands-on experience with at least two of IBM ISIM, IBM ISAM, and SailPoint IdentityIQ.
- Expertise in IAM workflow development, policy configuration, and application integration.
- Proficiency in Java/J2EE, BeanShell, JavaScript, or Python for writing extensions and rules.
- Experience with LDAP, including Tivoli Directory Services, Active Directory, and OpenLDAP, as well as replication and schema design.
- Strong knowledge of Tivoli Directory Integrator scripting.
- Understanding of SAML, OAuth 2.0, OpenID Connect, Kerberos, and RADIUS.
- Familiarity with Oracle, DB2, or SQL Server databases for IAM backend operations.
- Knowledge of provisioning connectors, adapters, and REST/SOAP APIs.
- Strong problem-solving and troubleshooting skills in complex IAM environments.
- Bachelor of Engineering or Bachelor of Technology degree.
- 8-10 years of relevant experience.
- Preferred certification in IBM ISIM, IBM ISAM, or SailPoint IdentityIQ.
- Preferred experience in IAM solution design and large-scale deployments.
- Preferred understanding of SOX, GDPR, and ISO 27001 compliance requirements.