IAM Engineer with Keycloak, supporting deployment and integration of services in hybrid cloud platforms. Working independently with occasional onsite meetings in Germany.
Responsibilities
Implement RBAC/ABAC policies and configure multi-realm setups.
Map Kerberos/IPA identities into Keycloak realms, roles, and clients.
Configure SSO flows, MFA, and identity federation across hybrid environments.
Deploy Keycloak on VMs, Docker, and Kubernetes (including OpenShift and GKE).
Configure Keycloak for OIDC, OAuth2, SAML, LDAP/AD, and Kerberos integration.
Secure Keycloak with TLS certificates (Vault-issued or enterprise CA).
Map Keycloak roles to GCP IAM roles for hybrid cloud workload access control.
Configure multi-tenant setups for on-prem and cloud workloads.
Integrate Keycloak with Vault for secret management and PKI.
Configure dynamic secrets for Keycloak DB backends and automate rotation policies.
Automate Keycloak and Vault deployments using Terraform, Helm, or Ansible.
Integrate IAM and Vault into CI/CD pipelines for consistent application onboarding.
Troubleshoot token flows, federation errors, and certificate issues.
Monitor IAM and Vault services with Prometheus and Grafana.
Requirements
Residency in the EU, EEC, UK, or Switzerland.
Strong understanding of auth protocols: OIDC, OAuth2, SAML, Kerberos, LDAP.
Proven deployment and management experience with Keycloak across on-prem and cloud environments.
Integration of Keycloak with Vault for secrets and PKI.
Automation with Terraform, Helm, or Ansible.
Troubleshooting complex IAM and federation issues in hybrid setups.
Fluent English (C1 level or above).
Benefits
Flexible working hours and the freedom to choose your own projects.
Access to exciting projects in various industries.
Support in advancing your career.
Competitive pay.
Dedicated team to help with any questions you may have.
Work independently and utilise our strong network to achieve your professional goals.
Senior Transmission Line Engineer designing high - voltage overhead and underground systems for utilities. Engaging in technical design tasks and project management with a focus on compliance and quality control.
Associate Chief Engineer overseeing DevOps transformation within a large - scale program. Drive technical execution and strategy to achieve customer mission success.
Information Assurance Engineer providing cybersecurity support for USAF Cloud One environment. Involvement in risk management, compliance, and continuous monitoring in multi - cloud systems.
Transmission Line Engineer designing high - voltage overhead and underground transmission systems for leading utilities. Involves project management, engineering analyses, and technical compliance to standards.
Information Assurance Engineer providing RMF and cybersecurity support for USAF Cloud One. Responsibility includes maintaining cloud security and compliance across multiple platforms.
Mining Engineer providing technical support in blast design for Orica's mining operations. Collaborating with customers and teams to optimize blasting outcomes and improve safety.
Senior Water Resources Engineer at Bodwé Group leading the firm’s water resources practice and overseeing complex projects. Responsible for project management, client engagement, and team leadership.
Senior Maintenance Engineer at Solvay improving equipment reliability and performance in industrial engineering. Leading teams to enhance asset productivity and compliance with safety standards.
Alternant Ingénieur(e) Performance Industrielle au sein d'Arquus à Limoges. Participation à des chantiers d'amélioration et gestion de projet au sein d'une équipe professionnelle.
Senior R&D Engineer developing medical devices for Continence Care at Convatec. Leading product development from concept to launch with multi - functional team collaboration.