Hema Raghupathy, Azure Active Directory Engineer

Hema Raghupathy

Azure Active Directory Engineer

Pearson India Education Services Pvt. Ltd.

Location
Qatar - Al Khawr
Education
Bachelor's degree, Bachelor of Engineering - Electronics and Communications
Experience
9 years, 9 Months

Share My Profile

Block User


Work Experience

Total years of experience :9 years, 9 Months

Azure Active Directory Engineer at Pearson India Education Services Pvt. Ltd.
  • India - Chennai
  • My current job since May 2022

• Managing daily operations includes Incident management and change management.
• Creating & Managing Users, Groups, and Group policies.
• Reports which includes Monthly(PEROOT) metrics, Quarterly metrics, Quarterly SOX audit report and Monthly Lockout reports.
• Changes includes AADC Patching, AD attribute changes, SSL Certificate updates, DNS Changes, etc, .
• AD Manger plus Administration which includes Creation and modification of templates.
• Handling Agile & One Jira and One confluence for assigning the daily task.
• MS graph powershell for updating the SAML certificate notification email id for all enterprise applications in Azure
• Trigger email notification to DL when client secret token expires using Logic app in azure.
• Update Proxy address for Service Account in AD.
• Sync service account, users and groups to Azure.
• Remove server objects and LWLOGON in On prem AD.
• Create user, service account, groups and adding mail contact in On prem AD.

Project Conditional Access Policy Access Automation via Pipelines
• Deploy and Automation of CA policies using Azure DevOps, Azure Active Directory and Azure Platform and Visual studio Code.
• Worked with MS team and created a technical guidance for Infrastructure as Code (IaC) for Pearson Education, describing and defining how Conditional Access as Code would work and all required elements.
• Used JSON templates to define all aspects of a Conditional Access Policies to be applied to the environment.  
• Any changes applied to template are committed to Azure DevOps repository branch, reviewed via pull request by specified set of users and deployed via pipelines.

Project Saturn - Cleaning and updating passwords for around 1000 Service accounts using Privilege User Management (PUM) and AD.

Project Faethm - New project bought by Pearson and migrated their applications (Auth0, Datadog, GitHub, Atlassian, Buildkite, Tableau) to Azure SSO.

Email restoration project- Cleaning of 30k+ emails that was created 2 years before using scripts.

Azure AD Migration Engineer (L3) at Pearson India Education Services Pvt. Ltd.
  • India - Chennai
  • May 2021 to May 2022

• Migration of the 340+ applications that currently utilize Open AM for SSO to Azure AD platform.
• Responsible for configuring and onboarding OIDC, OAUTH, SAML enabled applications into the service.
• Handling Incident, Change, Service Request in ServiceNow tool.
• Enabling/Implementing System for Cross-domain Identity Management (SCIM) provisioning using Azure Active Directory for applications.
• Creation of Dynamic membership group rule in Azure
• Creation and Managing the Azure account using Conditional Access (CA) Polices.
• Setting up MFA (Multi Factor Authentication) for applications using Microsoft Authenticator app in mobile devices, SMS MFA, Email and Yubikey Security key setup.

senior system administrator at United Industrial Services Co. LLC
  • Oman - Sohar
  • February 2020 to August 2020

• Serve as the first contact with customers who need technical assistance via the phone or email
• Perform troubleshooting using different diagnostic techniques
• Troubleshoot, diagnose, and resolve technical hardware and/or software issues
• Provide quick resolution and excellent customer service
• Redirect unresolved issues to the next level of support personnel
• Provide needed information on IT products or services
• Keep record of problems and their resolution
• Follow-up with customers
• Provide feedback on processes and make recommendations on areas to improve
• Maintain technical documentation and service catalog on installation of software, configuration of hardware and problem troubleshooting
• Suggest improvements on procedures

System administrator at IT Career Challenge Technologies Pvt Ltd
  • India - Chennai
  • January 2019 to January 2020

• AZ - 900 Microsoft Azure Fundamental and AZ - 104 Microsoft Azure Administrator Associate Certified.
• Experience in migration of applications using Identity Manager Plus (cloud-based, single sign-on (SSO) solution for enterprises).
• Enterprise SSO, Access management, User life cycle management, SCIM-based automated user provisioning and Reporting & analytics.
• Knowledge on SAML, OAuth and OpenID connect.
• Good knowledge on Cloud Infrastructure Models (IaaS, PaaS, SaaS, IDaaS)
• Knowledge on migration of On-prem to Azure
• Managing Azure resources using Azure portal, CLI, Powershell
• Modify NSG and Permit HTTP Traffic to Web Server
• Deploy a Container Instance Using Azure Portal and upload data to azure storage account
• Create Web App using Azure Function App and Workflow using Azure Logic Apps
• Organize Resources using Azure Tags and Enforce Guidelines with Azure Policies and prevent Accidental Changes with Azure Locks
• Best Practices with Azure Advisor, Azure Service Health and Azure Monitor
• Providing and Configuring Backup and Recovery solution for Cloud hosted VMs
• Deep understanding on Azure IAM, monitoring and diagnostic tools (Azure Diagnostics, Traffic
Manager, CDN, Azure Notification Hubs)

IT Analyst at Tata Consultancy Services
  • India - Chennai
  • June 2012 to August 2017

Tools: Oracle Identity Manager, ITSM Tools - Remedy, BMC Service Request Management, Incident Management, Bitlocker and Safeboot, Active Directory, Putty, RSA Secure ID
Skills: Active Directory, RSA Secure ID, Administration of Mainframe, AS400, Unix, IBM Lotus Notes, Authenticator, Jumpserver, McAfee Safeboot
• Created roles, groups, entitlements and accounts in OIM/OAM & Mypass tool for the applications
• Active directory delegation using Quest tool
Providing License to Cloud Accounts and handling the Cloud related issues.
• Worked in hardware encryption tool like Safe-boot and Bit-locker by doing recovery operations.
• Provided Soft token access to the user’s mobile and laptop using RSA SecurID.
• Maintaining all user problem and queries by logging BMC Remedy ticket tool & acknowledge user the ticket number for further reference via chat and calls.
• Account creation of SOX applications (BDRS, Deal Entry, Deal Ledger, KPI, Lawson, Lease, PARS
, Rate & Status, SEM ) and TACACS+
Created roles, groups, and user accounts in Xceedium JumpServer

Education

Bachelor's degree, Bachelor of Engineering - Electronics and Communications
  • at Thiagarajar College of Engineering (TCE)
  • January 2012
High school or equivalent, Biology
  • at Vairams Matriculation Higher Secondary School
  • January 2008

Specialties & Skills

Two factor Authentication
Active Directory
Windows Azure
Azure Single Sign On Migration/Integration (SAML, OpenID, OAUTH)
SCIM - System for Cross-domain Identity Management
Azure Active Directory (AD)
Conditional Access Policies
Azure Devops
Azure Automation
CLOUD INFRASTRUCTURE
INFRASTRUCTURE

Languages

English
Expert

Training and Certifications

AZ-104 Microsoft Azure Administartor (Certificate)
AZ-900 Microsoft Azure Fundamental (Certificate)