1

Keycloak Jobs in Alabama (NOW HIRING)

Senior Software Engineer

Huntsville, AL · On-site

$121K - $160K/yr

Required : • 8 years of experience • Java • Spring Boot • AWS • AWS RDS (PostgreSQL) • DynamoDB • Redis • OpenSearch • PKI/SSL • Keycloak • Travel: 10 % • Must be a U.S.

PKI/SSL * Keycloak * REST APIs & Microservices * GitLab CI/CD * Travel: 10% * Must be a U.S. Citizen * An active DoD Top Secret clearance with SCI eligibility is required to perform this work.

Senior Software Engineer

Huntsville, AL

$127K - $167K/yr

Keycloak * Travel: 10 % * Must be a U.S. Citizen * An active DoD Top Secret clearance with SCI eligibility is required to perform this work. Candidates are required to have an active Top Secret ...

Senior Software Engineer

Huntsville, AL · On-site

$127K - $167K/yr

Keycloak * Travel: 10 % * Must be a U.S. Citizen * An active DoD Top Secret clearance with SCI eligibility is required to perform this work. Candidates are required to have an active Top Secret ...

Senior Software Engineer

Huntsville, AL · On-site

$127K - $167K/yr

Keycloak * Travel: 10 % * Must be a U.S. Citizen * An active DoD Top Secret clearance with SCI eligibility is required to perform this work. Candidates are required to have an active Top Secret ...

Systems Integration Engineer

Huntsville, AL · On-site

$168K/yr

Familiarity with authentication platforms including Windows Active Directory, Red Hat Directory Services, and Keycloak * Familiarity with BOOTP, DHCP, DNS, Kerberos, LDAP, SSH, Syslog, and TLS ...

... Keycloak) is a plus. • Experience with load balancing technologies such as HA Proxy is a plus. • Experience with CI/CD pipelines utilizing Jenkins is a plus. • Familiarity with container ...

Systems Integration Engineer

Huntsville, AL · On-site

$168K/yr

Familiarity with authentication platforms including Windows Active Directory, Red Hat Directory Services, and Keycloak * Familiarity with BOOTP, DHCP, DNS, Kerberos, LDAP, SSH, Syslog, and TLS ...

Systems Integration Engineer

Huntsville, AL · On-site

$168K/yr

Familiarity with authentication platforms including Windows Active Directory, Red Hat Directory Services, and Keycloak * Familiarity with BOOTP, DHCP, DNS, Kerberos, LDAP, SSH, Syslog, and TLS ...

PIV-M authentication, OIDC, KeyCloak, and LDAP integrations. * AI GPU and model tuning: fine-tuning GPUs on AI worker nodes * AI Platforms: Familiarity with Red Hat AI, Poolside.ai, GPU utilization ...

Software Engineer (Senior)

Huntsville, AL · On-site

$127K - $167K/yr

GitLab CI/CD, PostgreSQL, Redis, PKI/SSL, DynamoDB, OpenSearch, KeyCloak * Strong understanding of SDLC methodologies, version control, and testing frameworks. * Proven ability to design and ...

next page

Showing results 1-20

Keycloak information

What is Keycloak?

Keycloak is an open-source identity and access management solution for modern applications and services. It provides features such as single sign-on (SSO), user federation, identity brokering, and social login, making it easier to manage authentication and authorization. Organizations use Keycloak to secure their applications and APIs, centralize user management, and integrate with external identity providers. Its flexibility and support for industry-standard protocols like OAuth2 and SAML make it a popular choice for developers and enterprises.

What are the key skills and qualifications needed to thrive as a Keycloak administrator?

To thrive as a Keycloak Administrator, you need a solid understanding of identity and access management (IAM) concepts, authentication protocols (such as OAuth2, SAML, and OpenID Connect), and experience with Keycloak setup and maintenance. Familiarity with tools like Keycloak Admin Console, REST APIs, containerization platforms (e.g., Docker, Kubernetes), and scripting languages is typically required. Strong analytical thinking, problem-solving skills, and effective communication help you excel in troubleshooting and collaborating with development and security teams. These abilities ensure secure, seamless authentication infrastructures and robust user management within an organization's digital ecosystem.

What are some common challenges faced by Keycloak administrators and how can they be addressed?

Keycloak administrators often encounter challenges such as integrating with diverse identity providers, ensuring high availability, and managing complex access control requirements. Staying up to date with frequent Keycloak updates and security patches is also crucial for maintaining a secure environment. These challenges can be addressed by thoroughly testing integrations in staging environments, leveraging Keycloak's built-in clustering and backup features for reliability, and regularly reviewing documentation and community forums for best practices. Collaboration with development, security, and IT operations teams is essential to ensure seamless authentication and authorization across applications.

What are the roles in Keycloak?

In Keycloak, roles define permissions and access levels for users and groups within an identity and access management environment. There are two types of roles: realm roles, which apply globally across the realm, and client roles, which are specific to individual applications or services. Assigning roles helps control user privileges and manage security effectively.
Infographic showing various Keycloak job openings in Alabama as of August 2026, with employment types broken down into 90% Full Time, 4% Part Time, and 6% Contract. Highlights an 82% Physical, 5% Hybrid, and 13% Remote job distribution.

Trust and Identity Engineer

CohesionForce, Inc

Huntsville, AL • On-site

$110 - $160/hr

Other

Posted 3 days ago

New


Job description

Trust and Identity Engineer

Job Title: Trust and Identity Engineer

Reference: 26-014

Job Type: Full-time

Job Status: Interviewing

Date Posted: 07-31-2026

Location: Huntsville

Duration: Permanent

Company Address: CohesionForce, Inc.

Street: 101 Quality Circle

Suite: Suite 140

City: Huntsville, AL 35806

Website: http://www.CohesionForce.com

Job Description

CohesionForce is actively seeking candidates for a Trust and Identify Engineer to become part of our team in Huntsville, AL. This individual will design, implement, and support identity and access capabilities for users, applications, services, workloads, and AI-enabled systems. The engineer will work across platform, software, reliability, and customer teams to provide secure authentication, federation, authorization, credential management, and auditable access.

Responsibilities
  • Integrate Microsoft Entra ID, Active Directory, and other customer identity providers using OAuth 2.0, OpenID Connect, SAML, and LDAP-based technologies.
  • Configure and support identity providers and authentication proxies such as Keycloak, oauth2-proxy, or equivalent products.
  • Define stable claims, groups, roles, and application onboarding patterns.
  • Design identity for Kubernetes workloads, services, automation, and AI agents using service accounts, short-lived tokens, service principals, certificates, or workload identity federation.
  • Implement least-privilege access using RBAC, ABAC, policy as code, and centralized authorization services.
  • Establish issuance, delivery, rotation, revocation, and recovery procedures for secrets, keys, tokens, and certificates.
  • Automate identity configuration and validation using APIs, scripting, infrastructure as code, GitOps, and CI-CD.
  • Troubleshoot login, token, claim, session, certificate, federation, and authorization issues across distributed systems.
  • Define identity-related logging and tracing requirements and work with reliability engineers to support monitoring and incident resonse.
  • Develop architecture documentation, integration guides, test procedures, runbooks, and customer handoff material.
Basic Qualifications
  • Bachelor’s degree in an engineering, computer science, cybersecurity, infommation technology or a related discipline, or equivalent experience and combined education, with 5-10 years of experience, or relevant professional experience.
  • Production experience with OAuth 2.0, OpenID Connect, JWTs, federation, token lifecycle, and secure application onboarding.
  • Experience integrating Active Director, Microsoft Entra ID, LDAP, SAML, or comparible enterprise identity systems.
  • Experience with Kubernetes or OpenShift service accounts, RBAC, secrets, ingress, or service-mesh identity.
  • Experience implementing identity for non-human services, workloads, or automation.
  • Experience with fine-grained authorization, policy as code, API scopes, or external authorization services.
  • Ability to automate configuration and testing with Python, PowerShell, or comparable language.
  • Works well in a fast=paces collaborative team environment.
  • Must be willing to work onsite in a closed/classified area.
  • Active Department of Defense (DoD) Secret clearance.
Preferred Qualifications
  • Experience operating Keycloak or another self-hosted identity provider in Kubernetes.
  • Experience with Microsoft Entra workload identity, managed identities, or service-principal governance.
  • Experience with OPA, Envoy, Istio, SPIFFE/SPIRE, or comparable technogies.
  • Experience with OpenBao, Vault, External Secrets, cert-manager, or enterprise certificate-management systems.
  • Experience applying identity and delegated authorization to AI agents and tool integrations.
  • Experience using OpenTelemetry for attributable activity and security-event diagnosis.
  • Strong oral and written communication skills.
  • Strong interpersonal and collaboration skills.
#J-18808-Ljbffr