Senior IAM Engineer (Keycloak)

Contract, initial 6-Months with possible extension 
Dublin | Hybrid (2–3 days/week)
Up to €500/day 

We're looking for a Senior IAM Engineer with 7+ years' relevant experience to join our Supervisory Workbench team as a key contributor to our continuous delivery squad. You'll take ownership of Keycloak and IAM implementation across a platform supporting 900+ internal supervision users. This is a hands-on engineering role at the centre of a live, high-impact platform. You'll be responsible for deploying, configuring, and evolving Keycloak-based IAM solutions on Azure Cloud, while acting as a technical authority on identity and access best practices across the team.


Key Responsibilities
  • Update, deploy, and configure Keycloak and IAM solutions on Azure Cloud
  • Implement Policy-Based Access Control (PBAC) policies, multi-realm Keycloak setups, and SSO/identity federation
  • Integrate Keycloak Authorisation Services with the new Supervisory Workbench platform
  • Collaborate with cross-functional teams to deliver secure, scalable IAM solutions
  • Provide technical leadership and guidance on IAM best practices and standards

Must-Have Skills & Experience
  • Mid-level experience with Keycloak, including hybrid cloud deployments
  • Strong proficiency in core IAM concepts and standards: OAuth 2.0, OpenID Connect (OIDC), JWT, On-Behalf-Of (OBO)/Token Exchange, and Fine-Grained Authorisation
  • Proven ability to configure and manage Keycloak realms, clients, and users
  • Experience working in continuous delivery or agile environments

Nice-to-Have Skills & Experience
  • Deep, hands-on experience customising and administering Keycloak
  • Solid development experience in Java/J2EE, including building custom Keycloak extensions
  • Familiarity with Azure Cloud services and infrastructure
  • Knowledge of security best practices and compliance requirements in IAM