We are looking for a Sr. Active Directory Identity Management Consultant to assist with researching and migrating existing applications and integrations currently leveraging the on-premises Active Directory (AD) at CUNY's 25 colleges. The consultant will provide expertise in migrating authentication mechanisms to Oracle Access Manager (OAM) Federation used by CUNY.
CORE RESPONSIBILITIES and ESSENTIAL DUTIES Research and Analysis: Work with CUNY colleges' IT and application teams to inventory and assess current AD-integrated applications.Analyze application use cases and document the authentication mechanisms in use. Migration Planning: Design a migration plan for each application and integration using AD to shift authentication mechanisms to OAM Federation, including SAML or other federated services.Collaborate with application vendors and owners to define detailed requirements for migration.Ensure that best practices are applied in shifting from AD-based authentication to federated Identity Providers (IDPs). Implementation and Integration: Configure and migrate selected applications from on-premises Active Directory authentication to Oracle Access Manager Federation services.Thoroughly test the application migrations in a test environment before production deployment.Troubleshoot any issues arising during migration, including federation (SAML) issues and cross-platform authentication challenges. Documentation and Knowledge Transfer: Document all migration procedures, challenges, and resolutions.Provide knowledge transfer to CUNY staff through detailed documentation and live demonstrations. Collaboration and Support: Work closely with CUNY's teams, including networking, application, and support teams, to troubleshoot issues and ensure smooth integration.Liaise with Oracle support teams as necessary to resolve product-related issues during the migration process. KEY RESPONSIBILITIES include, but are not limited to: Work with vendors and application owners (At colleges) to define the requirements for each application for SSO integrations using OAM Federation Services such as SAML.Setup and configure applications in the test environments.Prepare the OAM environment to test various use cases based on the requirements and discussions with various stakeholders.Integrate SAML applications in production OAM and thoroughly test the applications' integrations in end-to-end flow.Work with vendors and application owners to confirm applications are functioning as expected.Thoroughly document all details and tasks involved with various integrations, developing solutions in OAM.Work closely with application teams on integrating various flavors of applications for SSO.Should be able to independently troubleshoot and fix issues related to Application integrations and/or product-related issues.Configure and customize SSO solution in high availability mode using Oracle Access Management to implement various features such as Federation/SAML, OAuth, Open ID Connect, Multi-Factor Authentication besides current solution setup only for Header Based application integrations.Maintain the OAM/SSO environments with regular patching.Configure to leverage API usage in all Oracle IAM components for various use cases.Configure to leverage API usage in all Oracle IAM components including Oracle Microservices – Oracle Advanced Authentication (OAA) and Oracle Adaptive Risk Management (OARM) for various use cases.Work closely with other teams to identify and solve issues.Other duties as assigned. MANDATORY SKILLS/EXPERIENCE Note: Candidates who do not have the mandatory skills will not be considered
7 years Oracle Identity Governance experience required.7 years of experience with Active Directory Authentication and Identity Management solutions.7 years of experience migrating applications from Active Directory to federated services like OAM Federation.7 years of experience in troubleshooting and debugging skills for identity-related integration issues across platforms.7 years of experience in working with authentication protocols: SAML, OAuth, and OpenID Connect.7 years of experience in collaborating with cross-functional teams including network, application, and Oracle support teams.Job duties require flexibility; evening or weekend work may be needed as required for system-related tasks.Travel to CUNY campuses within NYC. If you are interested in getting more information about this opportunity, please contact Irina Rozenberg at ****** at your earliest convenience.
At Ariel Partners, we solve the most difficult problems that inhibit technology from enabling our customers to achieve their goals. Our vision is to be recognized by our stakeholders as an elite provider of IT solutions, so when they have their biggest challenges, we are on their short list. We are looking for team members who share our values of: Integrity to do the right thing even when it hurts; Commitment to the long-term success and happiness of our customers, our people, and our partners; Courage to take on difficult challenges, accept new ideas, and accept incremental failure; and the constant pursuit of Excellence. Ariel Partners is an Equal Opportunity Employer in accordance with federal, state, and local laws.
#J-18808-Ljbffr