Senior IAM Engineer (Keycloak)
Contract, initial 6-Months with possible extension
Dublin | Hybrid (2–3 days/week)
Up to €500/day
We're looking for a Senior IAM Engineer with 7+ years' relevant experience to join our Supervisory Workbench team as a key contributor to our continuous delivery squad. You'll take ownership of Keycloak and IAM implementation across a platform supporting 900+ internal supervision users. This is a hands-on engineering role at the centre of a live, high-impact platform. You'll be responsible for deploying, configuring, and evolving Keycloak-based IAM solutions on Azure Cloud, while acting as a technical authority on identity and access best practices across the team.
Key Responsibilities
- Update, deploy, and configure Keycloak and IAM solutions on Azure Cloud
- Implement Policy-Based Access Control (PBAC) policies, multi-realm Keycloak setups, and SSO/identity federation
- Integrate Keycloak Authorisation Services with the new Supervisory Workbench platform
- Collaborate with cross-functional teams to deliver secure, scalable IAM solutions
- Provide technical leadership and guidance on IAM best practices and standards
Must-Have Skills & Experience
- Mid-level experience with Keycloak, including hybrid cloud deployments
- Strong proficiency in core IAM concepts and standards: OAuth 2.0, OpenID Connect (OIDC), JWT, On-Behalf-Of (OBO)/Token Exchange, and Fine-Grained Authorisation
- Proven ability to configure and manage Keycloak realms, clients, and users
- Experience working in continuous delivery or agile environments
Nice-to-Have Skills & Experience
- Deep, hands-on experience customising and administering Keycloak
- Solid development experience in Java/J2EE, including building custom Keycloak extensions
- Familiarity with Azure Cloud services and infrastructure
- Knowledge of security best practices and compliance requirements in IAM
