Identity and Access Management (IAM) professional with 5 years of hands-on experience in IBM Tivoli Identity Manager (TIM), IBM Tivoli Access Manager (TAM), IBM Security Directory Server/LDAP, and WebSphere Application Server. Experienced in identity lifecycle management, user provisioning, access control, LDAP administration, authentication, troubleshooting, security integration, and production support in enterprise environments.
Roles & Responsibilities
- Administer and support IBM Tivoli Identity Manager (TIM/ITIM) environments for enterprise identity and access management.
- Manage complete user identity lifecycle, including user creation, modification, suspension, restoration, password reset, and account termination.
- Support automated and manual user provisioning/de-provisioning across multiple target applications and systems.
- Configure and maintain TIM services, provisioning policies, adoption policies, workflows, roles, and access controls.
- Monitor provisioning requests and investigate failed or pending account provisioning activities.
- Troubleshoot TIM issues related to account synchronization, reconciliation, provisioning policies, adapters, workflows, and LDAP connectivity.
- Support and maintain IBM Tivoli Access Manager (TAM/ISAM) for authentication, authorization, and web access security.
- Administer TAM Policy Server, WebSEAL, authorization services, junctions, ACLs, POPs, and protected objects.
- Create and maintain WebSEAL junctions for secured backend web applications.
- Configure authentication and authorization policies based on application security requirements.
- Troubleshoot WebSEAL authentication, junction connectivity, access-denied, session, SSL/TLS, and authorization issues.
- Manage LDAP directory services, including users, groups, organizational units, attributes, object classes, and directory entries.
- Perform LDAP searches, updates, imports, and exports using LDAP administrative utilities.
- Manage LDAP groups and access permissions based on application and business requirements.
- Support LDAP replication and monitored directory server availability and synchronization.
- Configure and maintain secure LDAP/LDAPS connections using SSL/TLS certificates.
- Manage certificates, truststores, keystores, and certificate renewals for TIM, TAM, LDAP, and WebSphere environments.
- Support integration of TIM/TAM with IBM WebSphere Application Server and enterprise applications.
- Perform application server start/stop, JVM monitoring, log analysis, and configuration troubleshooting.
- Analyze application and system logs to identify IAM authentication and provisioning failures.
- Work on password policies, account lockout policies, authentication policies, and role-based access control (RBAC).
- Provide on call L2/L3 production support for critical IAM applications.
- Willing to work after hours to support clients' production maintenance windows.
Technical Skills
- Identity Management: IBM Tivoli Identity Manager (TIM/ITIM), IBM Security Identity Manager (ISIM)
- Access Management: IBM Tivoli Access Manager (TAM), IBM Security Access Manager (ISAM), WebSEAL
- Directory Services: IBM Security Directory Server (SDS/TDS), LDAP, LDAPS
- Application Server: IBM WebSphere Application Server
- Security: Authentication, Authorization, RBAC, SSO, SSL/TLS, Certificates, Keystores, Truststores
- IAM Operations: User Provisioning, De-provisioning, Reconciliation, Password Management, Access Management, Identity Lifecycle Management
- Operating Systems: Linux/Unix, Windows
- Scripting/Tools: Shell Scripting, LDAP utilities, IBM administrative utilities
- Support: Production Support, Incident Management, Problem Management, Change Management, Troubleshooting
Education
- Bachelor’s degree in computer science, Information Technology, Engineering, or a related field, or equivalent professional experience.
Through our dedicated associates, Conduent delivers mission-critical services and solutions on behalf of Fortune 100 companies and over 500 governments - creating exceptional outcomes for our clients and the millions of people who count on them. You have an opportunity to personally thrive, make a difference and be part of a culture where individuality is noticed and valued every day.
About the TeamConduent is an Equal Opportunity Employer and considers applicants for all positions without regard to race, color, creed, religion, ancestry, national origin, age, gender identity, gender expression, sex/gender, marital status, sexual orientation, physical or mental disability, medical condition, use of a guide dog or service animal, military/veteran status, citizenship status, basis of genetic information, or any other group protected by law.
For US applicants: People with disabilities who need a reasonable accommodation to apply for or compete for employment with Conduent may request such accommodation(s) by submitting their request through this form that must be downloaded: click here to access or download the form. Complete the form and then email it as an attachment to [email protected]. You may also click here to access Conduent's ADAAA Accommodation Policy.
Skills Required
- Five years of hands-on experience with IBM Tivoli Identity Manager, IBM Tivoli Access Manager, IBM Security Directory Server or LDAP, and WebSphere Application Server
- Experience with identity lifecycle management, user provisioning and de-provisioning, access control, authentication, authorization, RBAC, and production support
- Experience administering TIM/ITIM, TAM/ISAM, WebSEAL, LDAP/LDAPS, and WebSphere environments
- Experience with SSL/TLS certificates, keystores, truststores, and secure LDAP connections
- Experience with Linux/Unix, Windows, shell scripting, LDAP utilities, and IBM administrative utilities
- Bachelor’s degree in computer science, information technology, engineering, or a related field, or equivalent professional experience
- Willingness to provide after-hours and on-call support during client production maintenance windows
Conduent Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Conduent and has not been reviewed or approved by Conduent.
-
Healthcare Strength — Health coverage is broad, with multiple plan options, preventive care at 100%, telemedicine access, behavioral health support, and wellness resources.
-
Leave & Time Off Breadth — Paid time off, holidays, sick days, volunteer time, and parental leave are included, offering multiple avenues for rest and personal needs.
-
Wellbeing & Lifestyle Benefits — Perks include childcare and commuter benefits, fitness stipends, discount programs, an Employee Assistance Program, and a remote work program that support overall wellbeing.
Conduent Insights
What We Do
Conduent delivers mission-critical services and solutions on behalf of businesses and governments — creating exceptional outcomes for its clients and the millions of people who count on them. Through process, technology and our diverse and dedicated associates, Conduent solutions and services automate workflows, improve efficiencies, reduce costs and enable revenue growth. It’s why most Fortune 100 companies and over 500 government entities depend on Conduent every day to manage their essential interactions and move their operations forward. At Conduent, we are one team with one mission. When you join Conduent, you are engaged in creating the future — both our company’s and your own. You’ll have the opportunity to grow and thrive through experiences and formalized learning programs.







