The firm's Information Security team initiated this project (ongoing) for meeting Sarbanes-Oxley regulatory requirements through the Identity and Access Management Solutions from Computer Associates (CA) for their UNIX infrastructure spread across US, Europe and Far East.
Responsibilities included:
High level design and implementation of eTrust Access Control (AC) on 10000+ Solaris and Linux hosts globally which includes master and secondary policy model database (PMDB) servers for fault- tolerance. Working with all the business and infrastructure teams: Fixed Income, Equity, Trading, UNIX SA, Autosys, DBAs, etc., to define application specific policy model database based upon their access requirements. Applying access restriction based upon initial access requirements set forth by app owners and the subsequent audit log reviews. Working with the System-Management team to provision monitoring for critical AC daemons. Working with the internal audit team to accomplish the Sarbanes-Oxley requirements for all critical business applications.
Environment:
Solaris 8, eTrust Access Control 5.1, Red Hat Linux 7.2, Intellitactics NSM, LMS from Sensage, Unix Shell and Perl scripts....
Posted @ 09:00AM, July 08, 2007
by Vamsi Krishna | Permalink
Answer this question | See all answers for this question
|