About the role

  • IAM Engineer with Keycloak, supporting deployment and integration of services in hybrid cloud platforms. Working independently with occasional onsite meetings in Germany.

Responsibilities

  • Implement RBAC/ABAC policies and configure multi-realm setups.
  • Map Kerberos/IPA identities into Keycloak realms, roles, and clients.
  • Configure SSO flows, MFA, and identity federation across hybrid environments.
  • Deploy Keycloak on VMs, Docker, and Kubernetes (including OpenShift and GKE).
  • Configure Keycloak for OIDC, OAuth2, SAML, LDAP/AD, and Kerberos integration.
  • Secure Keycloak with TLS certificates (Vault-issued or enterprise CA).
  • Map Keycloak roles to GCP IAM roles for hybrid cloud workload access control.
  • Configure multi-tenant setups for on-prem and cloud workloads.
  • Integrate Keycloak with Vault for secret management and PKI.
  • Configure dynamic secrets for Keycloak DB backends and automate rotation policies.
  • Automate Keycloak and Vault deployments using Terraform, Helm, or Ansible.
  • Integrate IAM and Vault into CI/CD pipelines for consistent application onboarding.
  • Troubleshoot token flows, federation errors, and certificate issues.
  • Monitor IAM and Vault services with Prometheus and Grafana.

Requirements

  • Residency in the EU, EEC, UK, or Switzerland.
  • Strong understanding of auth protocols: OIDC, OAuth2, SAML, Kerberos, LDAP.
  • Proven deployment and management experience with Keycloak across on-prem and cloud environments.
  • Integration of Keycloak with Vault for secrets and PKI.
  • Automation with Terraform, Helm, or Ansible.
  • Troubleshooting complex IAM and federation issues in hybrid setups.
  • Fluent English (C1 level or above).

Benefits

  • Flexible working hours and the freedom to choose your own projects.
  • Access to exciting projects in various industries.
  • Support in advancing your career.
  • Competitive pay.
  • Dedicated team to help with any questions you may have.
  • Work independently and utilise our strong network to achieve your professional goals.

Job title

IAM KeyCloak Engineer

Job type

Experience level

Junior

Salary

Not specified

Degree requirement

No Education Requirement

Location requirements

HybridGermany

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job