Location: Remote, US
Duration: Long Term Contract
Role Overview
We are seeking an experienced Keycloak Architect with hands-on expertise in Microsoft Entra ID to design, implement, and manage enterprise-grade identity and access management solutions. The ideal candidate will have deep knowledge of Keycloak architecture, integration patterns, and security protocols, along with practical experience in Entra ID administration and federation.
Key Responsibilities
· Architect and implement scalable Keycloak solutions for enterprise applications.
· Design and configure realms, clients, roles, and custom authentication flows in Keycloak.
· Integrate Keycloak with Microsoft Entra ID for SSO and identity federation.
· Implement OAuth2, OpenID Connect, and SAML protocols for secure authentication.
· Collaborate with DevOps teams for containerized deployments (Docker/Kubernetes).
· Ensure compliance with security best practices and regulatory standards.
· Troubleshoot and optimize identity flows, token management, and access policies.
· Required Skills & Qualifications
· Extensive experience with Keycloak architecture and configuration.
· Hands-on expertise in Microsoft Entra ID (Azure AD) administration and integration.
· Strong understanding of OAuth2, OIDC, and SAML protocols.
· Experience with RBAC and ABAC models.
· Knowledge of API security and identity federation.
· Familiarity with CI/CD pipelines and container orchestration.
· Preferred Qualifications
· Microsoft Identity and Access Administrator (SC-300) certification.
· Experience with Zero Trust architecture.
· Knowledge of Java or Python for custom Keycloak extensions.
Cloud Experience
· The candidate should have strong experience in designing and implementing IAM solutions in cloud environments. Expertise in Azure is mandatory, with additional experience in AWS and GCP considered a plus.
· Architect IAM solutions for hybrid and multi-cloud environments (Azure, AWS, GCP).
· Implement secure identity federation and SSO across cloud platforms.
· Ensure compliance with cloud security best practices and governance policies.
· Hands-on experience with Azure Active Directory and Entra ID in cloud deployments.
· Working knowledge of AWS IAM and GCP Identity services.
· Ability to design scalable IAM architectures in cloud-native environments.
· Microsoft Certified: Azure Solutions Architect Expert.
· AWS Certified Security – Specialty or Solutions Architect.
· Google Professional Cloud Security Engineer certification.
Regards
Naresh Kumar Jettem
—