Ashish P

Senior Developer

United States

About

Experience

  • SailPoint at Comcast
    Sep 2023 - Present · 2 yrs 10 mos

    • Currently driving third-party integrations and application onboarding for new systems across Comcast’s enterprise Identity Governance landscape using SailPoint IIQ 8.2. • Developed custom connectors and rules for integrating non-standard applications (JDBC-based, REST APIs) with SailPoint to extend provisioning automation beyond out-of-box capabilities. • Designed advanced LCM provisioning workflows with layered approvals and training prerequisite checks to manage high-risk access securely. • Engineered access request forms, custom UI enhancements, and role-based entitlement flows to support granular user access control aligned with business rules. • Acted as a SailPoint SME across application onboarding projects, collaborating with architecture teams and security stakeholders to validate compliance needs (SOX, GDPR). • Built and deployed access review campaigns including certifications for app owners, entitlements, and nested AD groups, with escalations and auto-revocation logic. • Created automated scripts to generate identity cubes, validate orphan accounts, and maintain identity hygiene across AD and non-AD systems. • Enhanced reporting framework with custom analytics dashboards for access insights, request trends, and audit history using SailPoint’s reporting APIs. • Supported critical security initiatives including SSO integration, password policies enforcement, and policy violation detection. • Managed ServiceNow ticket integrations for disconnected apps, enabling seamless incident tracking and provisioning workflows. • Mentored junior SailPoint developers and provided Tier 3 support on escalated provisioning failures and identity sync issues.

  • Senior Developer at Exelon
    Oct 2022 - Aug 2023 · 11 mos

    • Led the implementation and configuration of SailPoint IIQ 8.2 to replace legacy Oracle OIM systems as part of Exelon’s enterprise-wide IGA modernization initiative. • Collaborated with cross-functional stakeholders to deliver both Foundational Phase (IIQ-HRMS-AD integrations) and Full Implementation Phase (advanced lifecycle and access capabilities). • Developed and implemented lifecycle workflows for Joiner, Mover, Leaver, Rehire, LOA, and Identity Conversion events, strictly adhering to compliance frameworks including SOX, NERC CIP, and GDPR. • Built connectors and automated provisioning for birthright applications like Active Directory, Exchange, CCure, Mainframe, and LMS. • Configured IIQ to handle daily full/incremental HRMS data feeds, ensuring high accuracy and timely identity synchronization. • Integrated ServiceNow for manual access fulfillment processes for disconnected applications, reducing delays and ensuring traceability. • Designed and developed access request workflows, approval rules, escalations, and multi-level entitlement reviews including Transfer, Manager, and Role Certifications. • Delivered robust email notification and escalation systems with logic covering manager hierarchy, proxies, training/prerequisite validation (via LMS), and access revocation conditions. • Configured SSO, HTTPS-only access, and admin-role access control policies for secure SailPoint usage aligned with Exelon’s security framework. • Engineered data retention, password encryption, AD OU movement, and account disablement logic, including delayed delete schedules (e.g., Day 95 deletion for AD). • Coordinated onboarding for NERC and NON-NERC instances, implemented cross-instance data synchronization, and built integrations with ComEd AD, TSOP AD, and RPN AD. • Created detailed system architecture documentation, testing strategies (UAT/SIT/Regression), and performance tuning benchmarks.

  • Senior Developer at Comcast
    Sep 2018 - Sep 2022 · 4 yrs 1 mo

    • Worked on customizations and improvement on SailPoint IIQ 8.2 for the customer. • Worked in operations, reporting, analytics, and end-user support on real time issues and have an extensive experience with the IIQ tool. • Hands on Experience on handling all types Service Now Incidents tickets which comes from Level 1, Level 2 or directly by the user including escalated tickets. • Worked on various upgrades and bug-fixes in the SailPoint platform. • Development and configuration experiences of SailPoint various modules like audit, compliance, lifecycle, service account). • Design and deployed custom forms, approval workflows, connections in IdentityIQ for access request and provisioning. • Involved in design and implementation of IdentityIQ solution, configuring Active Directory, and Shared Folders. Wrote and tested JAVA code for plugins, schedule, transformation, and tasks. • Worked with an offshore team and coordinating the daily deliverables, testing and operations. • Customization of the SailPoint IIQ product to implement enterprise security and access control. • Worked on building propelled services to be incorporated on the IIQ Dashboard to give custom elements to the end-users. • Good understanding of risk-based authentication and methodology. • Responsible for integration of new applications for RBAC, Certification and Access Provisioning. • Involved in knowledge sharing sessions for SailPoint Compliance Manager component and involved in creation of design documents, code reviews. • Participated in the status meeting and & discussed issues related to SailPoint IdentityIQ with the group. • Good hands on SSO services. • Working with client post implementation for user testing, debugging, support, and maintenance. • Strong development experience in implementing the LCM events workflows, rules, and custom reports. • Assisting with management of project scope, schedule, status, and documentation.

  • Developer at Metra Commuter Rail
    Oct 2017 - Aug 2018 · 11 mos

    • Installed, Configured, Designed, and implemented Sailpoint Identity IQ. • Involved in building, testing, supporting, and determining Sailpoint Identity IQ Solution design. • Worked on upgrading 6.4, 7.0, 7.1, 7.2 of SailPoint. • Scheduling and Implementing various type of User Entitlement Reviews (UER) for applications and databases in a timely manner to all the business areas across the organization. • Worked on Application Onboarding connectors like Active Directory and other Out of the Box connectors, JDBC, Oracle Database Direct, Sales force & Delimited File. • Consult and configure access management policies for customer applications using enterprise level identity management tools. • Worked on IAM concepts such as Least Privilege, Privileged Access, Roles and Data Mining, Segregation of Duty and Role Based Access Control (RBAC). • Development of custom workflows with multi-level approval and time-based escalation for Approval process, self-service, profile update and changing the profile of User and Group modifications. • Designed and implemented custom SailPoint for User Access Recertification and Entitlements Review and Data Owner Recertification. • Extensively worked on identifying, analyzing, and resolving defects and issues with Sailpoint IIQ. • Configuration and development of SailPoint Life Cycle Events (LCM). • Worked on developing user provisioning and de-provisioning workflows, aggregation, tasks, rules, and roles in Sailpoint IIQ. • Implemented and Supported Sailpoint IIQ modules like Compliance Manager, Lifecycle Manager, Integration modules, Password Manager in both Production and NonProduction environments.