TAM/TIM Security Administrator/Engineer
Location: Chicago, IL Employment Type: Full Time, Temporary/Contract/Project TAM/TIM Security Administrator/Engineer We’re in search of a TAM/TIM Security Administrator/Engineer to join our client here in downtown Chicago for a minimal 9 month contract position. This position is with a large insurance company in downtown Chicago. Hourly rates are commensurate upon experience. Role Description: A Security Administrator performs the installation, configuration and day-to-day tasks associated with ensuring the smooth and efficient operation of LDAP, WebSEAL and Identity Manager run-time environments This includes product installation, configuration and deployment of said applications, administration of users, groups and application security resources, and advanced troubleshooting Provides support to other Security Administrators, and serves as an example to same Implements new technology with innovative infrastructure designs that are fully comprehensive in terms of supportability and maintainability Seeks out problems and inefficiencies in regards to security infrastructure and the technology that they depend on, in an effort to create solutions that provide correction and improvement A Security Administrator is totally self-sufficient and able to perform most of the tasks involved in the role with limited assistance from peers, product documentation, and vendor support services Products: IBM Tivoli Access Manager for eBusiness (TAM) 5.0, 6.0 IBM Tivoli Identify Manager (TIM) 4.6 IBM Directory Integrator (IDI) 6.0 IBM Tivoli Directory Server (IDS) 6.0 IBM GSKit Sun Java System Directory Server (JSDS) 5.2 Required Skills/Experience: Excellent understanding of Internet & networking concepts TCP/IP fundamentals Excellent understanding of PKI Excellent understanding of the SSL handshake process Excellent network IP routing skills Excellent operational skills for Windows and Unix platforms Excellent knowledge of web protocols such as HTTP, HTTPS, and XML Advanced load balancer concepts and session persistence methodologies Basic firewall concepts Advanced LDAP knowledge Experience in reading, interpreting, and creating regular expressions Advanced scripting knowledge in the following languages/tools: Korn shell JavaScript ANT Perl Windows Batch Deep understanding of TAM/TIM product architecture Understand how WebSEAL secures Web-based resources Understand the variety of authentication methods including basic authentication, forms-based single sign-on, and client-side certificate Able to determine and document Java enterprise application security requirements TAM – use standard IBM and internal tools to: install and configure TAM and its prerequisites customize External Authentication Interface (EAI) to supply custom authenticated identity information to WebSEAL develop custom login pages for each junction to tailor the user experience integrate custom applications into Access Manager using Java Authentication and Authorization Service (JAAS), and the aznAPI create users, groups, access control lists, and protected object policies to manage the authentication and authorization of users manage users, groups, access control, and the WebSEAL environment create and manage WebSEAL junctions to unify the Web space of the back-end servers with the Web space of the WebSEAL server TIM – use standard IBM and internal tools to: install and configure TIM and its prerequisites add organizational units, locations, business partner organizations, admin domains, static and dynamic organizational roles, and navigate through LDAP manually add users, load user data, describe self registration, and manage user information create ITIM groups and access control items (ACIs) create services and corresponding identity, password, and service selection policies create provisioning policies and set join directives, preview provisioning policies, configure provisioning policy parameter lists, provision and manage user accounts, analyze, notify, and correct noncompliant accounts, provision multiple accounts, and adopt orphaned accounts create a scheduled reconciliation and perform a manual reconciliation describe workflow elements, create basic workflows, approve account requests, describe and configure lifecycle management view reports and design custom reports configure forms, password settings and synchronization and export and import ITIM objects use problem determination tools and logs to troubleshoot problems Open and manage problems using IBM Electronic Support Request (ESR) Document Java enterprise application security topology Use shell scripting (Unix and Windows), ANT, and pdadmin commands to automate repeatable tasks Use tools to identify problems for complex TAM/TIM and application issues Use tools to comprehensively tune TAM/TIM for best performance, and capacity Preferred Certifications: IBM Certified Deployment Professional - Tivoli Access Manager for e-business V5 & V6 IBM Certified Deployment Professional - Tivoli Identity Manager V4.6 Sun Certified Engineer for Sun ONE Directory Server 5.x IBM Certified Advanced Deployment Professional - Tivoli Security Management Solutions 2006, 2007 Apply today and discover what thousands of other technology professionals have—Technisource is the right choice to advance your career! EOE M/F/D/V Please forward your resume to chuckwiggins@technisource.com Contact: PLEASE E-MAIL RESUMES TO: Apply by Email
|