Michael Lenz
Identity & PAM Architect
Experience
Identity & PAM Architect
BfArM
- Implementation of CyberArk OnPremise
- BSI basic protection (high protection needs)
- Breaking Class Strategy
- IdP / Identity Strategy / PIM
- Technologies: PAM, CyberArk OnPremise, KeyCloak
PAM Cloud-Migration
Aareal Bank
- Support for program management
- Migration Legacy -> CyberArk Cloud Platform
- Design PAM & Audit Process
- Vendor Management (Contract, Budget, Change Management)
- Technologies: PAM, CyberArk Cloud + OnPremise
IAM Cloud-Migration
Deutsche Bank
- Support for program management
- Migration Legacy -> Google Cloud Platform
- Design IAM, PAM & Audit processes
- Vendor Management (Contract, Budget, Change Management)
- Technologies: IAM, PAM, One Identity, CyberArk, Forgerock
PAM Consultant (Feasibility Study)
Landesbank Baden-Wüttemberg
- Current/Target analysis of PAM infrastructure
- Conducting and implementing a risk analysis
- Preparation of the PAM tender
- Creation of a feasibility study and preparation of executive presentation
- Technologies: Privileged Access Management; CyberArk
One Identity Implementer / Error Analysis
TÜV Süd AG
- Analysis of SAP connection to One Identity
- Error corrections in processes & interfaces
- Consultation in the area of Identity & Access processes
- Technologies: One Identity Manager v9, SQL Management Studio, SAP
IAM Consultant
BASF SE
- Current/Target analysis of IAM infrastructure
- Preparation of the IAM tender
- Support for project teams with IAM process know-how
- Setup of test environments on a Kubernetes cluster solution
- Technologies: Azure, Docker, One Identity v8 in Docker
IT Consultant / MIM Migration
Metro Digital GmbH
- Development of a migration plan (120k users / 5 continents)
- Development of intelligent time control for synchronizations
- Consultation and development of Identity & Access Management logics
- Implementation of new Management Agents
- Performance optimization
- Migration from LIM to MIM (Windows Server 2019)
- Technologies: LIM; MIM, MS SQL; Oracle; AD; LDAP; Windows Server 2019; AzureAD
IAM Consultant / Product Owner IAM
Hamburg Commercial Bank
- Creation of the role design strategy to ensure compliance with regulatory requirements (MAS BAIT)
- Process and report automation for compliance monitoring (ISMS)
- Responsible for the implementation of Identity & Access Management
- Optimization of role distribution and access processes
- Implementation of cloud interface (connection to PAM / CyberArk)
- Overall project management IAM & product ownership
- Technologies: ISO27001; ISMS; LDAP; AD; WEB-SSO; Dell One Identity; MS SQL; SoX; MAS; Azure AD; SAP HANA; CyberArk
BSI / ISO27001 Lead Implementer
Public Sector
- Implementation of ISMS based on BSI basic protection (200-x)
- Design of processes and operational monitoring
- ISMS audit preparation
- Technologies: ISMS; BSI 200-2; Security concept; ISO27001; Risk analysis; BASIS-Check; Taskforce; Azure
IAM Consultant
Public Sector
- Ensuring technical operation of identity and access management systems
- Setup of the OneIdentity IM Suite (IIS, SQL, concept, etc.)
- Compliance with BSI basic protection 200-x
- Management & adjustment of the IAM system + interfaces (IIS; SQL; AD/LDS; etc.)
- Maintenance of Microsoft Identity Management interface (MIM/FIM)
- Technologies: ISO27001; OneIdentity; MIM; AD/LDS; IIS; Windows Server 2016; Loadbalancer; Kerberos; Certificate Management; BSI
Consultant for Security Management / Manager for Regulatory Issues
Deutsche Bank AG
- Definition of compliance KPIs to ensure group governance (ISO, SoX, MAS, etc.)
- Process and report automation in the area of compliance monitoring (ISMS)
- Coordination of regulatory requirements in the financial sector
- International communication with regulators of the financial industry for requirements analysis and technical implementation in IT systems in accordance with regulatory requirements
- Data analysis in conformity with Cey Controls
- Technologies: ISO27001; ISMS; LDAP; AD; WEB-SSO; Dell One Identity; Aveksa; Oracle; SoX; MAS; AzureAD
Skills
Implementation Of Identity And Access Management Systems
Compliance & Security Monitoring (Iso27001 & Bsi 200-x)
International And Agile Project Management (Prince2)
Automation Of Processes And Security Monitoring
Member Of Isaca Chapter Germany
Standard: Iso27001 Lead Implementer 9 Years +++
Standard: Iso27017, Iso27022 4 Years +++
Standard: Bsi Basic Protection 5 Years +++
Standard: Prince2 9 Years +++
Standard: Itilv3 14 Years +++
Standard: Isms 9 Years +++
Standard: Ethical Hacker 5 Years ++
Standard: Marisk (+ Bait) 7 Years +++
Software: One Identity Manager 8 Years +++
Software: Aveksa 4 Years ++
Software: Safeguard 1 Year ++
Software: Cyberark 6 Years +++
Software: Keycloak 3 Years ++
Software: Compliance Monitor 8 Years +++
Software: Omada 3 Years ++
Software: Ibm Security Iam 3 Years +
Software: Office365 11 Years +++
Software: Jira/confluence 9 Years ++
Server: Iis Server 7 Years +++
Server: Ms Sql Server 6 Years +++
Server: Load Balancer 5 Years ++
Server: Ad / Adlds / Azure 7 Years ++
Server: Mim / Fim / Lim 7 Years ++
Scripting: Vba 11 Years +++
Scripting: Sql 6 Years +++
Scripting: .Net C# 4 Years ++
Languages
Certifications & licenses
BSI basic protection
Ethical Hacker
ISMS
ISO27001 Lead Implementer
ISO27017
ISO27022
ITILv3
Prince2
Similar Freelancers
Discover other experts with similar qualifications and experience