IAM Engineer with Keycloak, supporting deployment and integration of services in hybrid cloud platforms. Working independently with occasional onsite meetings in Germany.
Responsibilities
Implement RBAC/ABAC policies and configure multi-realm setups.
Map Kerberos/IPA identities into Keycloak realms, roles, and clients.
Configure SSO flows, MFA, and identity federation across hybrid environments.
Deploy Keycloak on VMs, Docker, and Kubernetes (including OpenShift and GKE).
Configure Keycloak for OIDC, OAuth2, SAML, LDAP/AD, and Kerberos integration.
Secure Keycloak with TLS certificates (Vault-issued or enterprise CA).
Map Keycloak roles to GCP IAM roles for hybrid cloud workload access control.
Configure multi-tenant setups for on-prem and cloud workloads.
Integrate Keycloak with Vault for secret management and PKI.
Configure dynamic secrets for Keycloak DB backends and automate rotation policies.
Automate Keycloak and Vault deployments using Terraform, Helm, or Ansible.
Integrate IAM and Vault into CI/CD pipelines for consistent application onboarding.
Troubleshoot token flows, federation errors, and certificate issues.
Monitor IAM and Vault services with Prometheus and Grafana.
Requirements
Residency in the EU, EEC, UK, or Switzerland.
Strong understanding of auth protocols: OIDC, OAuth2, SAML, Kerberos, LDAP.
Proven deployment and management experience with Keycloak across on-prem and cloud environments.
Integration of Keycloak with Vault for secrets and PKI.
Automation with Terraform, Helm, or Ansible.
Troubleshooting complex IAM and federation issues in hybrid setups.
Fluent English (C1 level or above).
Benefits
Flexible working hours and the freedom to choose your own projects.
Access to exciting projects in various industries.
Support in advancing your career.
Competitive pay.
Dedicated team to help with any questions you may have.
Work independently and utilise our strong network to achieve your professional goals.
Commercial Engineer responsible for business development in Lyon for an IT company. Focuses on client relationships and strategic partnerships for sustainable projects.
Engineer III responsible for refrigeration maintenance and repair in a resort setting. Ensuring safe and clean operations while providing excellent guest service.
Project Engineer providing civil engineering support at Matrix Design Group in San Antonio, TX. Collaborating on infrastructure projects and preparing engineering designs and documentation.
Chemical Process Engineer supporting nuclear material processing systems and high‑hazard chemical operations in Oak Ridge, TN. Involved in process design, troubleshooting, and operational support.
Senior Assurance Engineer part of a multinational team performing independent verification and validation for various projects. Engaging in planning, execution, and reporting of complex initiatives with a NATO SECRET clearance.
Software Verification Engineer on the Vehicle Control Software team automating DevOps pipeline for Ford's Body Control Application. Delivering high - quality software for next - generation vehicle systems.
Product Development Engineer designing aerodynamic components and systems for Ford Racing vehicles. Collaborating with cross - functional teams to ensure high performance and quality standards are met.
Electrical Heat Tracing Engineer leading EHT systems design for energy projects in Canada's oil and gas industry. Focus on compliance, mentoring teams, and project execution.
Steel Structure and Non Pressure Parts Engineer with significant experience in Power Plant Projects at Wood in Madrid. Hybrid work providing means flexible arrangements while engaging in meaningful projects.
Senior Piping Engineer role in Power & Industrial business focused on Power Plants projects with extensive experience in piping. Hybrid work attachment located in Madrid, Spain.