Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
Praveen Sumathi

Praveen Sumathi

Associate Director - Cyber Identity
Bengaluru

Summary

Associate Director with 12+ years of experience in Identity and Access Management (IAM), specializing in Identity Governance & Administration (IGA), Privileged Access Management (PAM), and Cyber Security Consulting. Proven track record of leading large-scale IAM transformation programs using SailPoint IdentityIQ, SailPoint Identity Security Cloud, and Saviynt, delivering secure, scalable, and compliant identity solutions for global financial services clients. Experienced in practice leadership, stakeholder management, solution architecture, and managing high-performing teams while driving business growth, operational excellence, and regulatory compliance

Overview

2
2
Certifications
11
11
years of professional experience

Work History

Associate Director

Deloitte Touche Tohmatsu India LLP
01.2024 - Current
  • Lead a 40+ member multi-disciplinary Identity practice, delivering complex global programs across IGA, PAM, and CIAM, with consistent on-time and high-quality outcomes.
  • Own end-to-end identity service delivery, spanning solution architecture, implementation, automation, and 24x7 managed support across platforms, including SailPoint IIQ/ISC and Saviynt.
  • Spearhead market eminence and practice-building initiatives, contributing to a 30% growth in identity sales pipeline, and strengthening the firm’s positioning in Identity Security.
  • Manage and grow strategic alliances with leading identity vendors, co-creating GTM strategies and joint solutions to accelerate revenue and market penetration.
  • Partner extensively with large Global Capability Centers (GCCs) supporting Tier-1 banks across the US, Europe, and Australia corridors, driving standardization and scalable identity operating models.

Senior Consultant

Ernst & Young India LLP
05.2021 - 12.2023
  • Managed a high-performing team of 35+ Identity & Access Management (IAM) professionals across consulting, solution architecture, and delivery functions.
  • Designed and implemented enterprise identity strategies aligned with regulatory frameworks and industry best practices, significantly improving governance, compliance, and audit readiness.
  • Led multiple Saviynt IGA implementations and transformation programs, including application onboarding, identity lifecycle management (Joiner, Mover, Leaver), access request workflows, role-based access control (RBAC), birthright access, certification campaigns, and SoD governance.
  • Delivered large-scale SailPoint IdentityIQ (IIQ) and SailPoint Identity Security Cloud (IdentityNow) implementations, covering identity lifecycle automation, provisioning, access certifications, role modeling, policy management, and application integrations.
  • Supported pre-sales and business development activities by leading solution workshops, preparing RFP/RFI responses, developing effort estimates, conducting product demonstrations, and presenting IAM transformation strategies to prospective clients.

Consultant

Capgemini Technology Services
04.2020 - 05.2021
  • Implemented Toxic Access Management (Segregation of Duties - SoD) solutions using SailPoint IdentityIQ and Saviynt, enhancing proactive identification and remediation of high-risk access combinations.
  • Designed and configured SoD rule sets, risk matrices, mitigating controls, and violation workflows based on business and compliance requirements.
  • Implemented Saviynt Identity Governance capabilities including Joiner-Mover-Leaver (JML) processes, application onboarding, access request workflows, role management, and access certifications.
  • Developed and maintained RBAC models by analyzing user populations and entitlement usage, streamlining access governance and addressing excessive privileges.

Senior Business Analyst

Bank of New York Mellon Corp
08.2015 - 04.2020
  • Interaction with business clients, senior information risk officer, creating business flows and functional requirements (BRD, FRD) to onboard applications into the IAM platform.
  • Work with Business Unit Information Security Officers (BUISOs), system owners, and other IAM colleagues to address audit and regulatory-related issues.
  • Analysis and determining the root cause of the failure of 1,200+ applications running in SailPoint, and following up with the development team and business team to ensure that issues are properly addressed.
  • Built and maintained application connectors for provisioning, aggregation, and reconciliation with Active Directory, LDAP, databases, and enterprise applications.
  • Developed and maintained custom reports, tasks, and dashboards to support audit, compliance, and operational monitoring.
  • Created and managed RBAC structures, including business roles, IT roles, and entitlement mappings, to streamline access governance.

Education

Bachelor of Technology - Engineering

Vellore Institute of Technology
Vellore, India
04.2001 -

Skills

Technology & Platforms:

SailPoint (IIQ, ISC)

Saviynt

CyberArk, BeyondTrust (PAM)

Identity & Security Expertise

Identity Governance & Administration (IGA)

Privileged Access Management (PAM)

Access Management (CIAM, Workforce IAM)

Identity Lifecycle Management

Role Engineering & Access Standardization

Commercial & Growth

Cyber Sales & Revenue Enablement

Deal Shaping & Solution Architecture

Proposal Development & Client Pursuits

Practice Building & Capability Development

Certification

Certified Information Security Manager (CISM)

Timeline

Saviynt L100

04-2026

Certified Information Security Manager (CISM)

02-2026

Associate Director

Deloitte Touche Tohmatsu India LLP
01.2024 - Current

Senior Consultant

Ernst & Young India LLP
05.2021 - 12.2023

Consultant

Capgemini Technology Services
04.2020 - 05.2021

Senior Business Analyst

Bank of New York Mellon Corp
08.2015 - 04.2020

Bachelor of Technology - Engineering

Vellore Institute of Technology
04.2001 -
Praveen SumathiAssociate Director - Cyber Identity