IAM Engineer with Keycloak, supporting deployment and integration of services in hybrid cloud platforms. Working independently with occasional onsite meetings in Germany.
Responsibilities
Implement RBAC/ABAC policies and configure multi-realm setups.
Map Kerberos/IPA identities into Keycloak realms, roles, and clients.
Configure SSO flows, MFA, and identity federation across hybrid environments.
Deploy Keycloak on VMs, Docker, and Kubernetes (including OpenShift and GKE).
Configure Keycloak for OIDC, OAuth2, SAML, LDAP/AD, and Kerberos integration.
Secure Keycloak with TLS certificates (Vault-issued or enterprise CA).
Map Keycloak roles to GCP IAM roles for hybrid cloud workload access control.
Configure multi-tenant setups for on-prem and cloud workloads.
Integrate Keycloak with Vault for secret management and PKI.
Configure dynamic secrets for Keycloak DB backends and automate rotation policies.
Automate Keycloak and Vault deployments using Terraform, Helm, or Ansible.
Integrate IAM and Vault into CI/CD pipelines for consistent application onboarding.
Troubleshoot token flows, federation errors, and certificate issues.
Monitor IAM and Vault services with Prometheus and Grafana.
Requirements
Residency in the EU, EEC, UK, or Switzerland.
Strong understanding of auth protocols: OIDC, OAuth2, SAML, Kerberos, LDAP.
Proven deployment and management experience with Keycloak across on-prem and cloud environments.
Integration of Keycloak with Vault for secrets and PKI.
Automation with Terraform, Helm, or Ansible.
Troubleshooting complex IAM and federation issues in hybrid setups.
Fluent English (C1 level or above).
Benefits
Flexible working hours and the freedom to choose your own projects.
Access to exciting projects in various industries.
Support in advancing your career.
Competitive pay.
Dedicated team to help with any questions you may have.
Work independently and utilise our strong network to achieve your professional goals.
Engineer designing, planning, and implementing cloud infrastructure for diverse clients in Defence Enterprise Business Unit. Support operations and manage system/network infrastructure projects effectively.
Project Engineer - Electrical delivering engineering projects to support safe and efficient mining operations at Ernest Henry. Collaborating with teams for successful project execution and electrical system management.
Mine Planning Engineer responsible for developing underground mine designs and schedules for Evolution Mining. Collaborating with planning, scheduling, and underground operations teams for efficient execution.
Load Calculation Engineer supporting certification activities and load calculation for wind turbine compliance. Requires advanced knowledge in wind‑turbine theory and proficiency with specific tools.
Engineer responsible for assuring software quality for Windfarm Control by developing programs and defining test cases. Collaborating with different departments in an international environment.
Software Engineer 3 at Newport News Shipbuilding collaborating on software requirements development and validation for naval systems. Conducting multidisciplinary research and ensuring compliance with software standards.
Mechanical M&R Engineer at LyondellBasell supporting Bayport Polymers Plant asset maintenance strategy. Collaborating across disciplines and applying data analysis for performance improvements.
Manufacturing Engineer Intern supporting development and documentation of aerospace hydraulic actuator production processes. Collaborating with teams to improve product flow and quality while utilizing CAD tools.
Process Engineer focused on continuous improvement in food manufacturing, leading projects and mentoring teams. Collaborating with plant leadership to implement lean manufacturing principles.
Process Engineer leading continuous improvement initiatives in manufacturing at Ventura Foods. Focusing on Lean manufacturing and process improvement projects to enhance operational efficiency.