Requirements
The ideal candidate will have 5-7 years of experience in backend development, with a strong focus on Java 17+ and Spring Boot. Expertise in Keycloak (Red Hat SSO) is essential, including hands-on experience with its configuration, user management, MFA, RBAC, and integration with external identity providers. Proficiency in CI/CD, Docker, Kubernetes, Linux, and Bash scripting is also required.
Description
About the Role:We're hiring a highly skilled engineer with deep expertise in Keycloak (Red Hat SSO) and strong backend development experience using Java 17+ and Spring Boot. You will lead efforts in identity & access management, secure microservices development, and CI/CD automation across cloud-native architectures.We seek someone who can code, integrate, automate, and secure modern systems with confidence.Key Responsibilities:Develop robust and scalable Spring Boot microservices using Java 17+Design and implement secure IAM strategies using Keycloak (Red Hat SSO), including:Realm and client configurationsUser ManagementMulti-Factor Authentication (MFA)Role-based access control (RBAC)Federated identity providers (LDAP, Azure AD)Protocol mappers, custom authenticatorsToken customization (OIDC / JWT / SAML)Integrate Keycloak into enterprise applications and CI/CD pipelinesAutomate deployment processes using CI/CD tools (e.g., GitLab, Jenkins, GitHub Actions)Deploy and manage services in Docker/Kubernetes environmentsApply best practices in security, performance, and observabilityMust-Have Skills:Strong Java (17+) and Spring Boot experienceJava Microservices architectureIn-depth Keycloak or Red Hat SSO experience — both hands-on and architecturalExperience building secure REST APIs using OAuth2, OIDC, and JWTProven ability to design, configure, and troubleshoot Keycloak realms, clients, flows, and policiesHands-on experience with CI/CD, Docker, and KubernetesExperience integrating Keycloak with external IdPs, LDAP, social loginsFamiliarity with Linux, Bash scripting, and infrastructure automation toolsNice to Have:Knowledge of Istio, Service Mesh, or API GatewaysBackground in securing public APIs and implementing zero-trust patternsExposure to Kafka, Redis, PostgreSQL, MongoDB