MAHESH BUDIGAM
IAM Engineer/cloud security analyst
Mail: *************@*****.***
Mobile: +91-951*******
Summary:
●Seasoned IAM Engineer with over 5.10 years of specialized experience in designing, implementing, and managing robust Identity and Access Management (IAM) solutions. I am highly proficient in Security Monitoring Exhibits excellence in Establishing new IT infrastructure using latest technology, putting systems in roadblock cases or escalations. Active involvement in configuring and securing cloud environments on Azure, including setting up security groups, and complex connectivity scenarios like Direct connect and Express Routes. Experience with cloud platforms, risk assessment tools, identity management, and data encryption . Experience with Ansible configuration management .Research and implement updated security standards, systems, and best practices .Manage identity Access management of Azure AD, Cyber Security, lenity Protection, Active Directory, and Enterprise Delivering training to the entire team and organizing knowledgebase. Applications, Azure AD Application Proxy, Azure AD Connect, Azure AD Pass through Authentication, Multi Factor Authentication, Device Registration, ADFS. Handling infrastructure of large environments and advising the best security practices. I have experience in Azure MFA, Conditional Access Policies, Application Registrations, and Enterprise Applications. Handled issues with application integration in Azure, integration through Application Proxy. Familiarity in the following area: Single sign-on, seamless SSO. Having Experience Configuring and managing Azure AD Connect, Azure AD Connect health, Microsoft Azure Active Directory. Azure AD issues relating to Office 365, Active Directory to Azure AD. Creating an Azure Virtual Machines and handling issues with the Azure VM authentication, One Identity IAM Manger Tool, One Identity -PAM.
Azure IAM Engineer/Cloud Security Analyst:
Led the design and implementation of Azure Ad identity solutions for clients, ensuring secure access to cloud resources.
Worked closely with clients to assess their IAM needs, define requirements, and provide customized Solutions for their organizations.
Active involvement in configuring and securing cloud environments on Azure, including setting up security groups, and complex connectivity scenarios .
Experience on securing network, data & acces and information Security Management with Azure Security .
Research and implement updated security standards, systems, and best practices .
Experience with cloud platforms, risk assessment tools, identity management, and data encryption .
Implementing Role-based access control (RBAC) & Segregation of Duties (SoD) ensuring that critical tasks are divided among multiple individuals to prevent fraud, errors and enhancing security and compliance.
Creation users and groups, providing the roles using IAM configuring cluster for Load Balancing and for High Availability
License Management in Azure Active Directory.
Rapid 7 DAST tool Scanning for Security.
Maintaining and monitoring Azure infrastructure.
Install AD Connect and setup single sign on & Azure MFA, Security Policies like conditional access policies & Identity protection
One identity management software that secures user access and automates provisioning to any target on-premises or in the cloud
One Identity Privileged Access Management (PAM) is an information security (InfoSec) mechanism that safeguards identities with special access or capabilities beyond regular users. Like all other InfoSec solutions, PAM security works through a combination of people, processes and technology.
InfoSec IAM T3 / Security Incidents with NTT Data Handling Tickets.
Security lead engineer who got good skills in MS AD, MS Azure AD, and associated identity and access management skills.
Analyzing and documenting functional nonfunctional requirements for various IAM domains such a Access Management, Identity Lifecycle Management, Privileged Access Management, Reporting, and analytics.
Resolve support requests & issues per SLA.
Incident engineering which includes detection, investigation of incident, resolution and recovery.
Working on ITIL Process (Incident, Problem and Change Management) and coordinating with the incident/problem/change management teams and resolving them within SL
Collaborated with the operations team to monitor and maintain IAM solutions and promptly address incidents.
Configured Conditional Access policies to enforce security measures based on specific conditions and scenarios.
Managed the deployment and configuration of Azure Active Directory for various clients.
Managed the deployment and configuration of Azure Active Directory for various clients.
Skills
Customer Service, Time management, Cloud Security, Security Analyst, Azure AD, MFA, SSO, Microsoft Defender, Identity Protection, Conditional access policy, One Identity Cloud, Privilege identity management, Application integration in azure.
Tools:
1.Jira
2.ServiceNow
3.Rapid7
4.CyberArk
Educational Qualification:
Bachelors in Electronics and Communication from JNTUH (2016).
Professional Experience:
IAM engineer/Cloud security Analyst Savena solutions pvt. ltd April 2019 –2025 March
Project1: Centralized IAM Solution for Healthcare Systems
Objective: To develop a centralized Identity and Access Management (IAM) solution that enhances security, ensures compliance with healthcare regulations, and improves the user experience for healthcare professionals and patients.
Roles&Responsibilities:
Managed the end-to-end lifecycle of user identities, overseeing onboarding, provisioning, and de-provisioning to ensure secure and timely access management.
Led the IAM team in establishing efficient onboarding processes for new hires, collaborating with Workday and Sharp to streamline workflows.
Develop standards, procedures, and guidelines for multiple platforms and diverse environments .
Served as an expert in Microsoft Identity Management, managing employee access and overseeing offboarding processes for departing users.
Implemented role-based access control (RBAC) for banking applications to ensure that employees had appropriate access based on their job functions while adhering to financial industry standards.
Developed and enforced robust access control policies, including Multi-Factor Authentication (MFA) and Role-Based Access Control (RBAC), ensuring stringent governance over user access.
Managed IAM processes for managing high-privilege accounts, ensuring enhanced monitoring and security over administrative access to core banking systems.
Experience with Ansible configuration management.
Created and managed RBAC models to ensure appropriate user access based on roles and responsibilities.
Leveraged expertise in REST APIs to build scalable, integrated identity solutions tailored to complex organizational requirements.
Administered Privileged Access Management (PAM) solutions to safeguard and monitor privileged accounts and sessions.
Handled L2 incidents, including user activations/deactivations, application access assignments, attribute updates, and certification renewals. Also, managed Okta CIAM Org2Org API tokens and URL changes.
Demonstrated extensive knowledge in implementing and enforcing security controls, including password policies and multi-factor authentication (MFA).
Project2: Centralized IAM Solution for Financial Services.
Objective: To develop a centralized Identity and Access Management (IAM) solution that enhances security, streamlines access control, and improves the user experience for employees and partners in a financial services organization.
Roles&Responsibilities:
Supported and troubleshooted SSO issues, implementing solutions with business partners using Ping Identity solutions.
Integrated IAM with Learning Management Systems (LMS) such as Canvas and Moodle to provide seamless, secure access for students, faculty, and staff, ensuring that only authorized users could access course materials and academic records.
Develop standards, procedures, and guidelines for multiple platforms and diverse environments .
Served as an expert in Microsoft Identity Management, managing employee access and overseeing offboarding processes for departing users.
Implemented role-based access control (RBAC) for banking applications to ensure that employees had appropriate access based on their job functions while adhering to financial industry standards.
Developed and enforced robust access control policies, including Multi-Factor Authentication (MFA) and Role-Based Access Control (RBAC), ensuring stringent governance over user access.
Segregation of Duties (SoD) means ensuring that critical tasks are divided among multiple individuals to prevent fraud, errors and enhancing security and compliance.
Managed IAM processes for managing high-privilege accounts, ensuring enhanced monitoring and security over administrative access to core banking systems.
Created and managed RBAC models to ensure appropriate user access based on roles and responsibilities.
Implemented web application OAuth integrations using Ping Identity solutions.
Administered Privileged Access Management (PAM) solutions to safeguard and monitor privileged accounts and sessions.
Handled L2 incidents, including user activations/deactivations, application access assignments, attribute updates, and certification renewals.
Demonstrated extensive knowledge in implementing and enforcing security controls, including password policies and multi-factor authentication (MFA).
Coordinated IAM team members, consultants, and partners during project planning and execution, ensuring effective collaboration and timely delivery.
Integrated multiple applications using the SAML 2.0 protocol to streamline secure access.
Active involvement in configuring and securing cloud environments on Azure.
Experience on securing network, data & acces and information Security Management with Azure Security .
Experience with Ansible configuration management .
Cultivated positive relationships with internal and external business partners, seeking opportunities to increase customer satisfaction and strengthen partnerships.
MAHESH BUDIGAM