Mohammed Raza Ali
Sr Iam Engineer @Wells Fargo
Signup · Get unlimited contacts
WORK HISTORY
Sr Iam Engineer @Wells Fargo
US
Designed, configured, and managed PingFederate SSO integrations with internal enterprise applications and third-party platforms.• Developed automation scripts and tools to improve efficiency, consistency, and reliability of SSO workflows and identity lifecycle operations.• Implemented authentication policies, adapters, and connectors to enable hybrid authentication models using SAML, OAuth, and OpenID Connect (OIDC).• Managed and troubleshot complex federation connections, ensuring secure communication between Identity Providers (IdPs) and Service Providers (SPs).• Collaborated closely with development teams to embed secure authentication and authorization mechanisms into enterprise applications.• Designed and implemented enterprise IAM solutions using PingFederate and PingID, aligning with organizational security policies and compliance requirements.• Deployed and configured PingID Multi-Factor Authentication (MFA) integrated with PingFederate to strengthen access security for critical applications.• Enforced enterprise-wide MFA policies through PingID, reducing credential-based attack risks and improving overall authentication posture.• Developed a custom Ping RADIUS adapter and integrated it with RADIUS-based solutions such as CyberArk, F5, and Check Point VPN for secure remote access.• Implemented OAuth-based authorization integrations for multiple web applications using PingFederate, enhancing user experience and standardizing access flows.• Led coordination across IAM teams, external consultants, and technology partners to ensure successful delivery of IAM initiatives aligned with business goals.
EDUCATION
Wilmington University
Master's degree
ABOUT MOHAMMED RAZA ALI
Over 10 years of experience in security and technology professional in Identity and Access Management (IAM), recognized for delivering business-aligned security solutions while maintaining robust governance and compliance controls.• Demonstrated strong expertise in OAuth 2.0 and OpenID Connect to secure REST APIs and web applications, implementing all major grant types for web, mobile, and service-to-service access.• Implemented federated SSO solutions using PingFederate with HTML Form, Kerberos, OpenToken, PingID, and Composite adapters, and integrated PingAccess for centralized, policy-driven authorization.• Installed, configured, and upgraded PingFederate (v7–v9), PingID, and PingAccess in hybrid enterprise environments, while creating SOP documentation and providing L2/L3 operational support.• Configured and supported MFA using PingID and OKTA for internal and external users, enabling secure access to SaaS platforms including Salesforce, Office 365, and Workday via SAML and SWA.• Designed and managed OKTA policies, API tokens, and automated provisioning workflows, integrating OKTA with Active Directory for user synchronization and IWA-based seamless SSO.• Worked extensively with SailPoint IdentityIQ to support LCM events, configure connectors (LDAP, Workday), and implement role-based access models with customized workflows and REST integrations.• Managed end-to-end identity lifecycle processes (Joiner, Mover, Leaver) across multiple domains using SailPoint and CyberArk, including privileged account onboarding and account linking.• Installed and administered CyberArk Core PAS components and Application Identity Manager integrations, performing SSL certificate deployments and enforcing X.509-based secure access mechanisms.• Implemented data models and access control policies within ForgeRock Directory Server (DS), ensuring high availability and performance for directory-based identity queries.• Integrated ForgeRock Identity Gateway (IG) to control access to legacy and modern applications, applying contextual policies for adaptive authentication and authorization.• Developed scripts using JavaScript, Groovy, and REST APIs to automate identity lifecycle events, enforce dynamic attribute mapping, and enable real-time auditing.• Delivered identity orchestration flows in ForgeRock leveraging scripted decision nodes and RESTful connectors, reducing latency and enhancing user experience.• Designed multi-tenant and scalable IAM solutions for large enterprise deployments, leveraging ForgeRock stack in hybrid cloud environments.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.