S. A Hafiz

Sr. IAM Engineer at BNY/Lead IAM Engineer

Role
Sr Iam Engineer at BNY
Location
New York, NY, US
LinkedIn followers
500 followers

About S. A Hafiz

Experience in design and development of Identity and Access Management using SailPoint Identity IQ and cloud environment with SailPoint Identity Now. • Experience in SailPoint Identity IQ implementation and configuration for Application on-boarding, Compliance and LCM Modules. • Responsible for installing, integrating and deploying the Identity IQ product in client environments. • Having hands on Experience in developing Provisioning rules for User Accounts to Create, Delete, Enable, and Disable Operations. • Customization and configuration of Workflows for Provisioning and de-provisioning accounts across various internal and external systems in SailPoint Identity IQ. • Experienced in writing custom connector. • Ability to Configure and Aggregate the data from Destination Applications Like Active Directory, LDAP, Delimiter Files through the Application Definition. • Maintain the Identity Cubes to update (Like Role, Policies Etc.) by executing tasks. • Experience in Provisioning and De-Provisioning Identity Workflows, Access Management, RBAC (Role-Based Access Control). • Experience in working on Role mining, Role Based Access Control (RBAC), Entitlement Management and Identity Management. • Experience configuring Joiner, Mover and Leaver workflows to maintain user accounts as per the birth right accesses. • Hands on Experience with Database Complex SQL Queries, Procedures, Functions, Exports and Imports. • Creating the Identity access to the employees and managing the certifications and provisioning accordingly with the SailPoint Identity IIQ • Proficient in creating and modifying workflows for implementing business flows • Hands on experience in developing custom rules such as customization rule, build-map rule, connector rules and custom workflows. • Integrated OKTA with SailPoint for identity provisioning and access control, utilizing SCIM and REST APIs, and configured policies for SSO and MFA enforcement to ensure secure access management. • Integrating with Azure AD B2C requires several configuration steps and considerations, particularly if integrating with applications, APIs, or other identity providers. • Test flows, monitor via Azure logs, and enable Application Insights if needed. • Proficient in managing Microsoft Active Directory (AD) environments, including user and group administration, OU structure design, and GPO implementation. • Skilled in configuring and troubleshooting AD replication, domain controllers, and DNS integration to ensure high availability.

Experience

  1. Sr Iam Engineer

    BNY

    Aug 2023 — Present · New York, NY, US

    Designed and deployed Identity & Access Management (IAM) solutions using SailPoint IdentityIQ and IdentityNow, improving user experience and meeting compliance requirements.• Extensively worked on defect resolution in SailPoint IIQ, focusing on LCM workflows, connector configurations, and provisioning rules for seamless account management.• Configured Out-of-the-Box (OOTB) connectors and custom Web Services for integrating Active Directory, Oracle, and Delimited Files.• Integrated ServiceNow with SailPoint IIQ for automated incident creation and management of provisioning and deprovisioning tasks.• Collaborated in the deployment and implementation of SailPoint IdentityNow for cloud environments on Windows platforms.• Worked on application onboarding with Active Directory, Delimited, and Oracle connectors, ensuring secure and efficient provisioning across connected systems.• Involved in role management, role mining, and access certification to enforce security and compliance requirements.• Developed Joiner workflows for provisioning accounts in AD, SailPoint, and ServiceNow based on HR triggers.• Managed client requirements for SailPoint IIQ connector configuration, handling multiple applications for user provisioning and governance.• Developed custom tasks, schedules, and rules for task automation, leveraging BeanShell scripting for customization.• Implemented RBAC, Entitlement Management, and Role Mining to optimize identity and access management processes.• Configured and enforced SoD Policies to prevent conflicts and meet regulatory compliance standards.• Developed LCM workflows, including Joiner, Mover, Leaver, and Reinstate workflows, integrating Java and PowerShell scripts for automation.• Constructed Roles, Policies, and Certifications for governance and compliance using SailPoint’s Certification Manager.• Expertise in managing Microsoft Active Directory, including user/group administration and GPO implementation.

Education

  • The City University of New York

    Bachelor of Science - BS

Find verified contacts for anyone on LinkedIn

Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.

Free plan included · No credit card required

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

S. A Hafiz — Sr Iam Engineer at BNY in New York, NY, US | Unifers