Infrastructure Systems Engineer III

Location
Hyderabad
Workplace
Hybrid

About this role

Identity and Access Management (IAM) professional with 5 years of hands-on experience in IBM Tivoli Identity Manager (TIM), IBM Tivoli Access Manager (TAM), IBM Security Directory Server/LDAP, and WebSphere Application Server. Experienced in identity lifecycle management, user provisioning, access control, LDAP administration, authentication, troubleshooting, security integration, and production support in enterprise environments.

 

Roles & Responsibilities

 

  • Administer and support IBM Tivoli Identity Manager (TIM/ITIM) environments for enterprise identity and access management.
  • Manage complete user identity lifecycle, including user creation, modification, suspension, restoration, password reset, and account termination.
  • Support automated and manual user provisioning/de-provisioning across multiple target applications and systems.
  • Configure and maintain TIM services, provisioning policies, adoption policies, workflows, roles, and access controls.
  • Monitor provisioning requests and investigate failed or pending account provisioning activities.
  • Troubleshoot TIM issues related to account synchronization, reconciliation, provisioning policies, adapters, workflows, and LDAP connectivity.
  • Support and maintain IBM Tivoli Access Manager (TAM/ISAM) for authentication, authorization, and web access security.
  • Administer TAM Policy Server, WebSEAL, authorization services, junctions, ACLs, POPs, and protected objects.
  • Create and maintain WebSEAL junctions for secured backend web applications.
  • Configure authentication and authorization policies based on application security requirements.
  • Troubleshoot WebSEAL authentication, junction connectivity, access-denied, session, SSL/TLS, and authorization issues.
  • Manage LDAP directory services, including users, groups, organizational units, attributes, object classes, and directory entries.
  • Perform LDAP searches, updates, imports, and exports using LDAP administrative utilities.
  • Manage LDAP groups and access permissions based on application and business requirements.
  • Support LDAP replication and monitored directory server availability and synchronization.
  • Configure and maintain secure LDAP/LDAPS connections using SSL/TLS certificates.
  • Manage certificates, truststores, keystores, and certificate renewals for TIM, TAM, LDAP, and WebSphere environments.
  • Support integration of TIM/TAM with IBM WebSphere Application Server and enterprise applications.
  • Perform application server start/stop, JVM monitoring, log analysis, and configuration troubleshooting.
  • Analyze application and system logs to identify IAM authentication and provisioning failures.
  • Work on password policies, account lockout policies, authentication policies, and role-based access control (RBAC).
  • Provide on call L2/L3 production support for critical IAM applications.
  • Willing to work after hours to support clients' production maintenance windows.

 

Technical Skills

 

  • Identity Management: IBM Tivoli Identity Manager (TIM/ITIM), IBM Security Identity Manager (ISIM)
  • Access Management: IBM Tivoli Access Manager (TAM), IBM Security Access Manager (ISAM), WebSEAL
  • Directory Services: IBM Security Directory Server (SDS/TDS), LDAP, LDAPS
  • Application Server: IBM WebSphere Application Server
  • Security: Authentication, Authorization, RBAC, SSO, SSL/TLS, Certificates, Keystores, Truststores
  • IAM Operations: User Provisioning, De-provisioning, Reconciliation, Password Management, Access Management, Identity Lifecycle Management
  • Operating Systems: Linux/Unix, Windows
  • Scripting/Tools: Shell Scripting, LDAP utilities, IBM administrative utilities
  • Support: Production Support, Incident Management, Problem Management, Change Management, Troubleshooting

 

Education

  • Bachelor’s degree in computer science, Information Technology, Engineering, or a related field, or equivalent professional experience.

Through our dedicated associates, Conduent delivers mission-critical services and solutions on behalf of Fortune 100 companies and over 500 governments - creating exceptional outcomes for our clients and the millions of people who count on them. You have an opportunity to personally thrive, make a difference and be part of a culture where individuality is noticed and valued every day.


Conduent is an Equal Opportunity Employer and considers applicants for all positions without regard to race, color, creed, religion, ancestry, national origin, age, gender identity, gender expression, sex/gender, marital status, sexual orientation, physical or mental disability, medical condition, use of a guide dog or service animal, military/veteran status, citizenship status, basis of genetic information, or any other group protected by law.

For US applicants: People with disabilities who need a reasonable accommodation to apply for or compete for employment with Conduent may request such accommodation(s) by submitting their request through this form that must be downloaded:  click here to access or download the form.  Complete the form and then email it as an attachment to FTADAAA@conduent.com. You may also click here to access Conduent's ADAAA Accommodation Policy.

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?