Summary
Overview
Work History
Education
Skills
Accomplishments
Languages
Extra-Curricular Activities
Certifications Awards
Personal Information
Timeline
Generic

Sasikumar CHENNIYAPPAN

Sydney,NSW

Summary

Over 18 years of experience as an Lead IDM Architect, IT Security Consultant & Senior Application Architect specializing in Identity and Access Management. Expertise in integrating identity verification products, designing client-agnostic IDV service platforms, and implementing real-time data monitoring solutions using Kafka. Proficient in CA Siteminder upgrades, custom development, and SAML, OIDC & OAUTH-based federation setups, alongside extensive knowledge of AWS managed services and various web technologies. Strong leadership and communication skills with a proven track record in project execution and team collaboration.

Overview

18
18
years of professional experience

Work History

Lead Architect, IDM

Optus Business
06.2023 - Current
  • Identity verification (IDV) service platform build to enable customer & vendor agnostic platform build using OAUTH CIBA framework.
  • Assisting APIGEE development agent assisted verification flow.
  • Being actively participated in Identity Verification vendor assessment & involved multiple workshops and technical discussions to understand the vendor solution landscape.
  • Proposed solution has been presented to across different panel including Australia & Singapore based stakeholders.
  • Understand and address security concerns of complex MCID implementation such as encryption, key roll over & standardised troubleshooting and investigation approaches.
  • Engaged multiple stakeholders and channels to onboard customers to telecom business to convert manual verification of users to digitalID verification such as retail store customer support channels, online portals where self service portals used for customer onboarding.
  • Acted as End to End architect to meet immediate business & architect chapter needs, where it involves multiple channels and different business units engagement demanded.
  • Always produced concise documentation and mail communication to provide the clarity across impacted components.
  • Actively assessed vendor solutions and their support for biometric authentication, fraud detection algorithms, identity check, passwordless authentication, custom & OOTB MFA solutions.
  • Solution offered with different aspects considered such as availability, fail-over, confidentiality & integrity and secure architect to protect customer PII.
  • Managed risk assessments during all phases of project execution to mitigate potential challenges proactively.
  • Championed staff development initiatives through mentorship programs, fostering a culture of continuous learning and professional growth.
  • Led value engineering exercises to identify cost-saving opportunities without compromising on aesthetics or functionality.
  • Promoted environmental sustainability by incorporating energy-efficient technologies and green building strategies into designs.

Senior Application Architect

Optus Business
09.2021 - 06.2023
  • Led the architectural vision and delivery of major Optus Business initiatives (Living Network) and multiple products (Optus Pulse, Carbon Offset, Call Translate).
  • Applied expert-level knowledge across API management (Apigee), IAM, data security, application security, and Node.js backend development to design and implement secure and scalable architectures.
  • Architected and implemented real-time data ingestion and processing pipelines to generate actionable customer insights.
  • Designed and delivered the technical architecture for customer carbon offset calculations and digital offsetting initiatives across Australia.
  • Drove the strategic adoption of cloud-based solutions, achieving significant cost efficiencies and enhanced application scalability.
  • Architected and oversaw the integration of numerous third-party APIs, ensuring seamless interoperability and adherence to architectural standards.
  • Designed and implemented scalable and robust architectural solutions for complex business problems, driving significant improvements in operational efficiency.
  • Provided critical architectural expertise in troubleshooting complex incidents, ensuring rapid resolution and system stability.
  • Streamlined development processes by introducing agile methodologies and automating repetitive tasks.
  • Analyzed user feedback to identify areas for improvement within applications, driving continuous enhancements over time.

Senior Software Engineer

HCL Technologies
07.2020 - 05.2021
  • Led the design, implementation, and ongoing management of the Identity and Access Management (IAM) platform for a mission-critical COVID-19 application used at national scale to support serviceNSW.
  • Defined access policies, roles, and entitlements to ensure secure and compliant user access across multiple stakeholder groups, including healthcare professionals, government agencies, and end users.
  • Collaborated with cross-functional teams including cybersecurity, application development, infrastructure, and compliance to ensure seamless and secure integration of IAM components.
  • Leveraged technologies such as Azure AD, OAuth2.0, SAML, and multifactor authentication (MFA) to enhance security and streamline the user experience.
  • Implemented role-based access control (RBAC) and least privilege principles to minimize risk and ensure data confidentiality and integrity.
  • Monitored identity lifecycle processes including user provisioning, de-provisioning, and audit logging for compliance and operational effectiveness.
  • Acted as the single point of accountability for identity-related incident resolution, enhancements, and platform scalability as usage surged during the pandemic response.
  • Ensured adherence to security best practices and regulatory requirements including HIPAA, ISO 27001, and Australian Privacy Principles (APPs).

Technical Lead-IDAM

IDAM Development, Optus Australia
03.2014 - 06.2020
  • APIGEE Platform build & developing OAUTH2.0, SAML2.0 & OIDC authentication authorisation implementations.
  • Digital transformation including moving IDAM platform to cloud and migrating the policy controls without impacting to end users.
  • Build custom authorisation server using Google SaaS platform to run hybrid authentication system across cloud and onpremises platform to meet distributed customer requirement.
  • Backend java development based on SOAP services to Customer identity services including customer life cycle.
  • Designed and developed identity access management solutions using CA Siteminder and Federation Manager.
  • Implemented custom authentication modules leveraging Java web services and SQL database.
  • Administered CA identity minder environment, performing user management tasks including creation and modification.
  • Upgraded CA Siteminder from R12 SP2 to R12.52 SP3, enhancing system capabilities.
  • Delivered single sign-on solutions for Optus users across various environments.
  • Created and managed enterprise security policies for authentication and authorization in SDLC environments.
  • Developed REST and SOAP-based web services to integrate with OIM, OID, OIA, and OAM.
  • Ensured data security through Bit Locker implementation while managing IAM infrastructure.
  • Coordinated with cross-department teams like QA, DevOps, and Support to ensure seamless end-to-end software delivery process.

IDM Developer

AMP Limited
09.2013 - 08.2014
  • Architected and implemented a robust Identity and Access Management (IAM) framework for a mobile application, encompassing comprehensive requirement gathering, design, and deployment.
  • Led the technical integration of IBM Tivoli Access Manager (TAM) and Directory Integrator (TDI) to establish a unified and secure identity management platform.
  • Developed and deployed critical system enhancements utilizing Java Web Services and SQL Database, optimizing IAM functionality and performance.
  • Designed and implemented identity federation solutions leveraging IBM Tivoli Federated Identity Manager (TFIM) to simplify and secure user access across diverse systems.
  • Executed complex data migrations from two distinct sources utilizing IBM Tivoli Directory Integrator (TDI) and Tivoli Directory Server (TDS), ensuring data accuracy and system stability.
  • Quickly acquired proficiency in new technologies and programming languages, enabling the team to adopt innovative solutions and improve overall efficiency.

Security System Administrator + Consultant

Woolworths Group
12.2012 - 09.2013
  • Function at offshore: Consultation and Support
  • Technology Involved : PKI, DLP and McAfee antivirus (EPO)
  • Role Played : Acted as EUD McAfee antivirus administrator and applying patches to end user devices based after verification is successful.
  • Provisioned new software and hardware for use, following established security policies.
  • Simplified troubleshooting processes by creating detailed documentation for system configurations, procedures, and best practices.
  • Managed user access rights to maintain a high level of information security while ensuring appropriate levels of accessibility for authorized personnel.
  • Supported the implementation of new technologies by providing technical expertise and training to colleagues as needed.

Consultant

ABS
09.2012 - 12.2012


  • Project Domain: Identity & Access Management
  • Project Description: ABS is leading survey provider organization in Australia and old legacy systems were replaced by oracle identity management suite, to achieve user’s seamless integration and login feature, which includes OID, OAM, OIA and OID 11g
  • Function at offshore : Development / Support
  • Technology Involved : Apache Webserver, Web Logic 11g, OAM, OID, OIA and OIM 11g
  • Role Played : Security System Administrator + Integration testing
  • Nature of tasks : Testing & Consultant
  • Team Head Count : 5 Customer Identity - Team
  • (Yes Optus)
  • Project Domain: Identity & Access Management [Security Engineering, Project Description: Yes Optus uses multiple identity and access management products for maintain user’s seamless integration and login feature
  • Customized solutions using CA SiteMinder
  • Identity Manager with server side java web service technology
  • It uses centralized security policy bound to user identity to provide authentication, authorization, administration and accounting services.

Senior Software Engineer

Wipro Technologies
02.2012 - 06.2012
  • Specialized in Identity & Access Management within banking and finance sectors.
  • Demonstrated expertise in CA Single Sign-On and RSA Secure-ID integration.
  • Applied knowledge of JPMC EAST SiteMinder, including Policy Server and Web Agents.
  • Utilized IBM Rational Developer, Eclipse Ganymede, and VMware Workstation for development tasks.
  • Managed source control using SVN and CVS for version tracking.
  • Configured application and web servers including IBM WebSphere 7.x and Microsoft IIS 6.0.
  • Administered directory services and databases such as SunONE LDAP and MS SQL 2005/8.
  • Operated across multiple platforms including Windows, Solaris Sparc 10, and Linux/Unix.

Associate

JPMorgan Services India Pvt Ltd
07.2010 - 02.2012
  • Provide Single Sign On solution for all JPMC internal applications (APAC, EMEA & AMER data center hosted applications)
  • Create and manage enterprise security policies in regards to Authentication & Authorization for firm-wide web applications in various SDLC environments (Dev, QA & PROD)
  • Manage IAM infrastructure (Certificate renewal, cluster setup (multi-data center hosted), Loadbalancer & Failover server maintenance)
  • Managing Apache Webserver, SiteMinder Web Agent & RSA SecurID

Software Engineer

Mphasis, HP Company India & US
12.2006 - 05.2010


  • Consistently met project deadlines by effectively managing time and prioritizing tasks according to importance.
  • Developed applications utilizing Spring Framework, web services, and web-based UI technologies.
  • Created reports using Actuate tools, focusing on analysis and design.
  • Implemented efficient Java solutions with Servlets, JSP, and JDBC for improved performance.
  • Analyzed proposed technical solutions based on customer requirements.
  • Developed scalable and maintainable code, ensuring long-term stability of the software.
  • Collaborated with management, internal and development partners regarding software application design status and project progress.

Education

Master of Science - Software Systems

BITS Pilani
BITS Pilani, Rajasthan
11.2010

Bachelor of Engineering - Electrical and Electronics Engineering

Anna University
Anna University, Chennai, INDIA
05.2005

Skills

  • Identity and access management (OAUTH20, OIDC10 & SAML20, FIDO20, Passwordless auth, MFA)
  • APIGEE Platform build & Development
  • Identity Verification (IDV) as Service
  • SSO, Social Authentication
  • AWS Cloud Services & Platform transformation
  • Data security (PKI, Encryption)
  • Application Security ( Customer & Employee)
  • User Onboarding (UAM)
  • Okta, VipAuthHub
  • CA SiteMinder and Federation Manager
  • IBM TAM and TFIM
  • RSA Secure-ID integration
  • Policy server management
  • Web server administration
  • Application server agents
  • Java and nodeJs
  • J2EE development

Accomplishments

  • Designed and led the end-to-end architecture of a next-gen, vendor-agnostic Identity Verification (IDV) platform leveraging OAuth 2.0 CIBA, enabling secure, seamless customer onboarding across both digital and assisted channels.
  • Pioneered the integration of APIGEE-based agent-assisted verification flows, significantly improving verification efficiency and reducing support team effort.
  • Led multi-vendor technical evaluations through deep-dive workshops, comparative analysis, and risk assessments, resulting in the selection of a scalable, secure IDV solution aligned with enterprise strategy.
  • Presented architectural solutions and technical proposals to diverse stakeholder groups across Australia and Singapore, gaining cross-border buy-in for strategic digital identity initiatives.
  • Addressed critical security challenges in Mobile Customer ID (MCID) deployments including encryption, key rollover, and implementation of robust incident investigation standards.
  • Digitized manual customer verification processes by enabling integration with retail POS systems, online portals, and self-service tools — boosting onboarding efficiency and reducing verification time.
  • Mitigated project delivery risks by embedding security and compliance into the solution lifecycle, and conducting proactive risk assessments across all phases of implementation.
  • Mentored cross-functional teams, fostering internal capability growth in IAM technologies and solution design, while cultivating a high-performance, knowledge-sharing environment.
  • Drove innovation and cost-efficiency through value engineering practices that balanced cutting-edge design with operational and financial sustainability.
  • Embedded sustainability principles into platform development by advocating green IT approaches, including scalable cloud-native design and energy-efficient technology adoption.

Languages

English
Tamil

Extra-Curricular Activities

Engineering entrance certificate for being a 2nd rank holder in the Mathematics. 'Medals' in Chess for 3 years in a row

In recent times, AI freak.

Certifications Awards

  • CyberSecurity Certified Professional
  • Proven Professional, CA SSO 12.x Implementation Certified
  • Awarded for Best Performer of the year during 2015-2016.
  • Certified in Solaris 10 Operating System from Sun Authorized Center
  • Certified by CA as centre of excellence (COE).

Personal Information

  • Visa: H1B
  • Date of Birth: 05/15/83
  • Nationality: Indian
  • Marital Status: Married

Timeline

Lead Architect, IDM

Optus Business
06.2023 - Current

Senior Application Architect

Optus Business
09.2021 - 06.2023

Senior Software Engineer

HCL Technologies
07.2020 - 05.2021

Technical Lead-IDAM

IDAM Development, Optus Australia
03.2014 - 06.2020

IDM Developer

AMP Limited
09.2013 - 08.2014

Security System Administrator + Consultant

Woolworths Group
12.2012 - 09.2013

Consultant

ABS
09.2012 - 12.2012

Senior Software Engineer

Wipro Technologies
02.2012 - 06.2012

Associate

JPMorgan Services India Pvt Ltd
07.2010 - 02.2012

Software Engineer

Mphasis, HP Company India & US
12.2006 - 05.2010

Master of Science - Software Systems

BITS Pilani

Bachelor of Engineering - Electrical and Electronics Engineering

Anna University
Sasikumar CHENNIYAPPAN