Dipika Pattni

CyberArk PAM IAM SME/Business Analyst

Dubai, United Kingdom

Experience

Jun 2022 - Present
3 years 2 months
Remote

CyberArk PAM IAM SME/Business Analyst

Liberty Global

I currently work remotely for a global telecommunications organisation within the IT security department on the PAM, IAM, AD Migration, ITSM Programme.

  • Business Analysis & requirements gathering
  • Ensure alignment on documentation and requirements
  • Create PAM intranet user guide
  • Define requirements for SailPoint, ITSM, Osirium, Nerm, AD Migration
  • Create Raci
  • Facilitate meetings and drive discussions
  • Liaise with Vendors negotiate tool purchases/selection
  • Conduct POC for PAM & IAM tools
  • Create test scripts, test plan, manage & co-ordinate testing
  • Create JML, PAM, ITSM, IAM Processes
  • Operational readiness management
  • Conduct gap analysis on SailPoint testing scenarios
  • Guide teams on best practice
  • Close audit requirement gaps
  • Create onboarding plan
  • Guide team on DNA scans
  • Conduct workshops to capture data
  • Create process documentation
  • Create Visio flow diagrams
  • Gap analysis
  • Establish use cases
  • Gather onboarding requirements
  • Policies and procedure gap analysis
  • Provide input and best practice on processes, policies
  • Create onboarding plan
  • Create safe designs
  • Create comms templates
  • Engage with application owners
Sep 2021 - Jun 2022
10 months
United Kingdom
Remote

PAM Business Analyst

NFU Mutual Insurance

I worked remotely for a British insurance company within the IT security department on the PAM Project. Responsible for remediating audit issues within privileged access management.

  • Document the as is and to be Pam processes
  • Create process documents
  • Create process flows
  • Create process descriptions
  • Create Visio flow diagrams
  • Gap analysis
  • Establish use cases
  • Stakeholder engagements
  • Capture business and technical requirements
  • Create low level safe designs/RBAC for privileged users to onboard into CyberArk
  • Provide suggestions and improvements suggestions where possible
Jan 2020 - Jul 2020
7 months

PAM Project Manager

AXA Insurance

I worked for a global Insurance organisation within the PAM Audit Remediation Team. Responsible for the global management of privileged accounts access and remediation of audit issues within CyberArk.

  • Management of technologies to be onboarded into CyberArk
  • Provide CyberArk technical support & guidance
  • Data cleansing
  • Requirements gathering for onboarding of Emergency Accounts into CyberArk
  • Review security policies in alignment with expectations on Emergency Accounts
  • Support process vs gap analysis
  • Create process documentation
  • Gather uses cases from users and safe owners for show copy function usage
  • Analysis of show copy password use cases
  • Reduce the usage of show & copy password function.
  • Ensure monitoring of show & copy password usage to be up & running
  • Produce daily monitoring reports on show copy usage for privileged accounts
  • Stakeholder engagements
  • Liaise with CyberArk engineers, Architect, Analysts, Auditors
  • Attend weekly PAM meetings
  • Manage people against the plan
  • Ensure all milestones are met within strict timeframes
  • Produce bi-weekly project status reports
  • Create CyberArk low level designs for the onboarding of emergency accounts within Asia. This consisted of platform, policies, accounts following naming conventions, password policy.
May 2018 - May 2019
1 year 1 month

CyberArk Subject Matter Expert/Recertifications Lead

Bupa

I worked for an international private healthcare organisation within the Info Care IT Security team to implement a PAM solution CyberArk and manage recertifications of privileged accounts within the organisation.

  • Lead CyberArk implementation for Proof of Concept
  • Privileged Accounts Security 10.4
  • Password Management
  • Configure platforms, apply exceptions within master policy
  • On-board accounts
  • Create recertification process and conduct recertification of admin accounts
  • Attend weekly project meetings
  • Vault Administration
  • Create test scripts
  • Run Reports within private ark and pvwa
  • Attend regular workshops
  • Privileged Threat Analytics
  • Testing use cases within POC test environment
  • Low level design
  • Administration within Private Ark
  • Liaise with CyberArk engineers, Architect, Analysts, Project Managers
  • Create & manage recertifications process of privileged accounts
  • Provide support and guidance to team
May 2017 - Feb 2018
10 months
United Kingdom

CyberArk Technical Business Analyst

Sainsbury's Ltd

I worked for a leading UK retailer within the IT security team on Project PAM (Privileged access Management) to solely implement CyberArk solution within the organisation.

  • Privileged Accounts Security 9.6
  • Enterprise Password Vault Management
  • CPM Management
  • Configure Windows & Unix Centrify platforms, apply exceptions within master policy
  • Administration of platforms, safes and accounts within CyberArk & Active Directory
  • Create test scripts/run book
  • Troubleshooting
  • Testing in UAT environment
  • configuration & testing on psm, psmp, account migration
  • Create user accounts, PAM security & functional groups within Active Directory
  • On-board managed pooled accounts with PVWA for the Storage, Unix, Wintel, PSG, SQL, Oracle teams.
  • Administration within Private Ark
  • Liaising with Project Managers and Teams
  • Mentor teams to conduct knowledge transfer
  • Reporting within PVWA
  • Liaising with CyberArk engineers
May 2016 - Feb 2017
10 months
United Kingdom

IAM Project Manager

Direct Line Insurance

I worked for a leading UK Insurance Company in the Identity & Access Management Department on the IAM transformation project called Tiger. I was responsible for ensuring the end-to-end delivery of the project, met within a strict time frame & budget successfully ahead of schedule. I also participated in Business Analyst duties when required. User base of (14,000).

  • Business Analyst duties defining as is to be process, analysis, document new processes, create Visio flow diagrams.
  • Planning & Co-ordination
  • Manage the project delivery team to ensure all milestones and key deliverables are met
  • Managing people against the plan
  • Chasing teams, analysts, managers
  • Meeting tight deadlines
  • Manage budgets, project planning, risks & issues
  • Produce weekly on-boarding reports
  • Completing bi-weekly action plan status reports for the Project Management Office.
  • Engage with Stakeholders, portfolio manager
  • Liaise with Audit for milestone sign off
  • Liaise with 1st Line of Defence to risk accept milestone exceptions
  • Attend weekly project meetings
  • Influencing & negotiating when required
  • Delegation, task allocation
  • On-boarding applications, data cleansing
Mar 2015 - May 2016
1 year 3 months

CyberArk Engineer & Project PAM Coordinator

Deloitte

I worked for a major international accounting and consulting firm in their IT Security Team providing support for a user base of (16,000)

CyberArk Engineer As a member of the privileged access management team, I was responsible for the design & implementation of CyberArk including administrative tasks complying with controls to maintain the integrity of the overall CyberArk environment at Deloitte.

  • Privileged Accounts Security (PAS)
  • Privileged Identity Management (PIM)
  • Enterprise Password Vault Management
  • Capture detailed requirements for the CyberArk solution based on input from platform owners, target architecture and high-level requirements
  • Administration of platforms, safes and accounts within CyberArk & Active Directory
  • Testing in UAT environment
  • On-boarding privileged accounts with PVWA
  • Liaising with Project Managers and Teams
  • Producing Log & trace files for investigation
  • Design & Architecture
  • Mentor teams to conduct knowledge transfer
  • System lock downs
  • Incident management
  • Policy Management
  • Managing requests within Service Now.
  • Liaising with CyberArk engineers

PAM Project Co-ordinator (Privileged Access Management) Active Directory Remediation & Restructuring for Service Accounts, User accounts & Groups, Objects

  • Contact IT owners regarding service accounts that integrate into AD to establish the impact of moving each service to the new OU Structure.
  • Migrating user accounts and servers to new OU.
  • Contact line managers regarding expired users accounts and liaise with HR
  • Attend weekly PAM project meetings.
  • Review list of users that are admins over all workstations and then raise RFCs to remove those where the permission is not required
  • Provide administrative duties
  • Cleanse of Active Directory administrator groups, service accounts contacting members within the groups and removing form accounts groups once the RFC has been approved
Mar 2015 - May 2016
1 year 3 months

Identity & Access Management Administrator

Deloitte

  • Creating mailboxes & distribution lists within Power Shell application
  • Creating new users & leavers within Power Shell & Active Directory
  • Set up users with remote access – Desktop anywhere
  • NTFS file permissions, shares, folders, security groups
  • Granting Privileged Access
  • Grant overt access for mailboxes
  • Deal with requests & incidents using Service Now Application
  • Create modify & delete users within Good application
  • Create modify & delete users within Blackberry 5 & 10
  • Create user access within Share point
  • Management of leavers
  • Administer department moves
  • Answer to email queries within a timely manner
  • Password resets
  • Ownership management and resolution of access management requests issues from beginning to end.
  • Ensure agreed service level agreements are achieved and maintained
  • Data access management
  • Exchange 2010
  • System Manager
  • Lotus notes
  • Assist with Identity & Access Management team mailbox queries
  • IDAM via FIM Portal
Mar 2014 - Feb 2015
1 year

IAM SME - Subject Matter Expert

Credit Suisse

I worked for a Global Investment bank in the IT Security Team providing Support to a user base of (11,000)

  • Provide customer liaison support for the IAM Service
  • Provide SME expertise to other offshore AC specialists based in Costa Rica
  • Process requests limited to onshore execution
  • Work with application support teams to resolve provisioning workflow issues
  • Create quality practices to be shared with Access Control
  • Support end user community by providing onsite support for transactions and escalations
  • Create modify delete users within Unix
  • Create modify users within Swift, Citi Direct, Euclid, Crest, Radius, Cascade, Gloss
  • Creation online, TCMS Smart Card, Radius, Treasury Edge, HSBC
  • Administer users within RSA server
  • Deal with incidents within Remedy
  • Action My Access requests in a timely manner
  • Ensure agreed service level agreements are achieved and maintained
May 2012 - Sep 2013
1 year 5 months

IAM Administrator

Schroders

I worked for a global Asset management company in their IT Security Team Providing technical support & administration for a global user base of (6,000)

  • Perform day to day security administration and access control for 300 applications (add/modify/delete) following RBAC profile
  • Enabling/disabling of highly privileged accounts
  • Resolution of access and privilege related issues on management of remote access & service
  • Liaise with to assist with application, token issues, installation of applications
  • Management of break glass accounts
  • Create, and delete, modify Mailboxes & distributions lists within MS exchange
  • Grant access for high privilege users - admin rights
  • Add/modify/delete/assign responsibilities for users in Oracle HR/Financial
  • Management of leavers accounts and privileges
  • Management of Exchange and Outlook accounts 2007
  • Account unlocking and password reset on specific applications
  • Perform account transfers to & from different departments/countries
  • Create and modify Active Directory privileged accounts/generic and groups
  • Permission groups on servers and shares across multiple domains
  • Action authorised requests to create/modify/delete/suspend accounts
  • Creation/Deletions/modifications for remote access within RSA server
  • Management of authentication services - rsa tokens & vpn
  • Management of iPad requests & good access for mobile devices
  • Assist with BAU application request, approval, and implementation
  • Perform 1st 2nd line fixes via Remedy tool
  • Run weekly reports for bespoke applications/data analysis for good & Basware application
  • Perform account unlocking and password reset for user & Break Glass accounts
  • Ownership management and resolution of access management requests issues from beginning to end.
  • Document comprehensive operational procedures & processes
  • Ensure agreed service level agreements (SLA) are achieved and maintained
  • Attend meetings for application take over from third party, testing application and procedures
  • Train team on new applications
  • Permission users to folders
  • Seek approval for overt email access and permission user to the required mailbox for one month
  • Manage & assist the IT access control mailbox
  • Assign requests & incidents to team members via Remedy & RBAC
Mar 2012 - May 2012
3 months
United Kingdom
Remote

IT Systems Analyst

Financial Ombudsman Service

I worked on a service desk providing support for a user base of (7,000)

  • Performing 1st & 2nd line fixes via remote services
  • Install software
  • Log incidents and service request via Hornbill application
  • Create and modify Active Directory privileged accounts/generic and groups
  • Action authorised requests to create/modify/delete/suspend accounts
  • Create, and delete, modify Mailboxes & distributions lists within MS exchange console
  • Assist with BAU application requests, approval, and implementation
  • Creation/Deletions/modifications for remote access within RSA server
  • Management of audio files to be burnt onto cd/usb.
Mar 2010 - Jan 2012
1 year 11 months

IAM Systems Security Administrator

Credit Agricole

I worked for a Tier 1 Corporate & Investment Bank in the IAM Systems Security Team Providing support for a user base of (10,000)

  • Create and modify Active Directory privileged accounts/generic and groups, shares
  • Permission groups on servers and shares across multiple domains
  • Create and administer break glass accounts
  • Action authorised requests to create/modify/delete/suspend accounts
  • Create, and delete, modify mailboxes & distributions lists within ms exchange console
  • Admin across multiple Domains
  • User Creation/Deletions/modifications for 100 banking applications
  • User Creation/Deletions/modifications within Blackberry Server
  • Request authorisation for privileged access and permission accordingly.
  • Creation/Deletions/modifications for remote access within RSA server
  • Assist with BAU application request, approval, and implementation
  • Answering calls
  • Recertification’s
  • First line support & fixes via incident management tool for all applications, ms outlook, remote access tokens, blackberry, ms exchange
  • Monitor and action my requests and queues and respond in a timely manner within call Grant logging system.
  • Management of incident related to user access
  • Manage urgent requests via our shared system security mailbox and action requests and respond to queries accordingly.
  • Process high volume of requests daily, role-based templates (RBAC) & user account transfers to & from different departments.
Dec 2009 - Mar 2010
4 months
United Kingdom

IT User Access Administrator

Royal Bank of Scotland

I worked within the global markets team for a Tier 1 investment bank, providing support for a user base of (7000) – staggered shift basis

  • Active Directory Administration including Exchange 2003 Mailboxes, Distribution lists
  • User Account Creation/ Deletion/Modifications across multiple domains
  • Permission user folder access
  • Monitor and action my requests and queues and respond in a timely manner within remedy call logging system.
  • Ensure agreed service level agreements (SLA) are achieved and maintained
Dec 2008 - Nov 2009
1 year
United Kingdom

IT Security Access Control Administrator

Lloyds TSB Bank

I worked within the Products & Markets IT Security Administration team to provide support for 150 systems across Products & Markets (Wholesale & International Banking) Business for a user base of (4000) on a shift basis

  • Perform User Administration activity on Exchange 2003
  • Permission User and Group access to the P&M Domain infrastructure within active directory
  • Permission users account according to RBAC profiles
  • Perform day to day security administration and access control for over 60 applications – RBAC
  • Review and implement user admin controls for new application into the P&M environment
  • Document comprehensive operational procedures
  • Assist in the production of Management Information (e.g. calls stats, SLAs, type of requests for control team
  • Ensure agreed service level agreements (SLA) are achieved and maintained
  • Evidence SARBOX controls defined within the end-to-end user admin processes to both internal & external auditors
  • Assist in Business Continuity compliance
  • Answering calls
  • First line support, liaising with clients, traders, support teams
  • Assist with BAU application request, approval, and implementation
  • Perform role-based access control
Jan 2006 - Nov 2008
2 years 11 months
Canada

Access Control Administrator/Helpdesk Analyst

EDS/Petro Canada

I worked on the Service Desk for a Canadian Oil firm for a user base of (5,000) supporting global users on a shift basis.

  • Providing 1st/2nd line support on bespoke application, intranet, ms office, xp
  • Run weekly reports within SAP application for Project Office
  • Calling logging & call ownership via Remedy
  • Remote application installations
  • Password resets
  • Work within strict SLA’s
  • Remote connect via terminal services to perform 1st time fixes
  • Create/delete/modify accounts within Active Directory, Citrix, Intranet, Unix
  • Call logging via Remedy for email and phone requests
  • Create role id accounts in Active directory
  • Create phone extensions for new users and visitors
  • Manage people pages within intranet directory
  • Rename accounts within intranet, active directory, Mitel
  • Disconnect citrix sessions
  • Organise moves and changes with facilities department
  • Arrange & conduct I.T inductions for new users
  • Manage the new user and leavers process
  • Manage and update changes to new users spread sheet
  • Administer secure id tokens in RSA
  • Create shared mailboxes, distribution lists
  • Organising, attending meetings, taking minutes, arranging venues
  • Arrange laptop requests for permanent access & temporary use
  • Input & assist in processes & writing procedures
Oct 2004 - Dec 2005
1 year 3 months
London, United Kingdom

IT Technician/User Access Administration

Metropolitan Police

I worked on the Service Desk for the Metropolitan Police for a user base of (30,000) On a 24x7 shift basis

  • Call logging via Remedy
  • Installing Software
  • Call Ownership
  • Creating Mail Groups, Mailboxes
  • Performing remote fixes via terminal services
  • Resetting passwords in active directory & intranet
  • Troubleshooting
  • Supporting bespoke applications
  • Managing out of hours call outs for applications and alarms
  • Creating User Accounts in Active directory and various bespoke applications
  • Restarting Print Services/Spooler
  • Set up printers on user profile
  • Providing daily reports on calls
  • Log and action email requests within Remedy
  • Respond to queries within request managed inbox
Jan 2002 - Oct 2004
2 years 10 months
United Kingdom

IT Technical Analyst

AXA Insurance - CAS

I worked on a Helpdesk for NHS Direct supporting bespoke clinical assessment system with user base (3000 users) on a 24x7 shift basis across the UK.

  • Providing first/second line support
  • Connecting remotely to user’s pc via Citrix
  • Disconnect Citrix sessions
  • Call logging phone & email request via Magic
  • Manage incidents within Magic call logging system
  • Reset passwords in Active Directory, Citrix, Clinical assessment software

Summary

A professional with good interpersonal skills, currently seeking position and challenges within an IT Security department where my application and knowledge will add value and creativity to those projects which I become involved with. A hardworking flexible team player with excellent interpersonal communication skills. An ability to rapidly accommodate various concepts allows me to add creativity to teams and concepts within short time frames to achieve success. I enjoy working as part of a team and work extremely well independently under difficult circumstances. I am a quick learner, extremely organised, pay attention to detail and very diplomatic and even-tempered during tense situations.

Languages

English
Elementary

Education

Oct 1996 - Jun 2000

Thames Valley University

BA · Tourism and Business · United Kingdom

Oct 1996 - Jun 2000

Thames Valley University

HND · Tourism Management · United Kingdom

Oct 1992 - Jun 1996

Croydon College

GNVQ · Advanced Travel & Tourism · Croydon, United Kingdom

Certifications & licenses

Sail Point Identity ISC

SailPoint University

FR-111-SP RevB ForgeRock Identity Management Product Overview

ForgeRock University

FR-120-SP RevC ForgeRock Access Management Product Overview

ForgeRock University

Privileged Password Security Training

Thycotic Academy

Sail Point Identity IQ V7

Tek Slate Training

CyberArk PAS Administrator V9

CyberArk University

CyberArk Privileged Account Security Administrator

CyberArk University

Project Management (Prince 2) Foundation

Computer Career Centre