
Identity and Access Management Experts in Hamburg
matched in minutes with AI and ready to secure critical accessHire experts who design IAM strategies, integrate Microsoft Entra ID and Okta, and automate access governance across cloud and enterprise systems. FRATCH connects you with precisely matched, vetted and available freelancers without a long search.
Meet FRATCH Experts in Hamburg, who have recently used Identity and Access Management
Christian H.
Last position:
Senior Business Consultant CTV Monetization - Livestreaming
- Strategic consulting for the implementation of a CTV monetization concept in the livestreaming sector - sports
- Consulting and support in selecting monetization partners
- Strategic consulting and screening of ad technologies, their integration, and the implementation of an integrated business workflow
- Stakeholder management and management support
- Pricing, cost, and benefit analyses
- Sub-project leadership for external and internal stakeholders and teams
Huy N.
Last position:
Modern Workplace & Dynamics 365 Consultant at Thinformatics
- Administration and further development of the M365 environment including Teams, Exchange Online, Intune and SharePoint Online
- Development of dashboards for performance monitoring using Microsoft Power BI
- Implementation of user requirements and processes with low-code/no-code technologies (Power Apps, Power Automate)
- Use of Jira and Azure DevOps to plan and implement user stories in an agile project context
- Participation in daily stand-ups, sprint planning, sprint reviews and retrospectives as technical point of contact
- Planning and implementation of security policies using Azure Conditional Access and multi-factor authentication
- Configuration and deployment of clients and applications via MECM (SCCM) and Baramundi
Daniel S.
Last position:
Senior Software Engineer at energielenker solutions GmbH
- Designed and implemented a Python-based ETL pipeline with the Dagster framework to transform raw energy data from heterogeneous sources using InfluxDB and visualizations in Grafana
- Defined time-based and dependency-based jobs
- Deployed to managed Kubernetes clusters using Helm
- Integrated InfluxDB Cloud
- Prepared data for use in Grafana, including cleaning, normalization, and time-based resampling in Python
- Developed dashboards and visualizations in Grafana
- Developed unit tests with mocking using pytest
- Set up a CI/CD pipeline in GitLab
Technologies: Python, Dagster, InfluxDB, Grafana, pandas, pytest, REST, CI/CD, GitLab, Container, Kubernetes, Helm, Docker, Cloud
Enrique G.
Last position:
Security Architect at Capgemini
I implemented a Zero-Trust architecture for robust, military-grade maritime container mini data centers based on VMware & Tanzu to support containerized GIS workloads for ground forces. The main focus was on securing communications, workload protection, and data access in contested electronic battle environments affected by jamming, interception, signal manipulation, and constantly changing operational conditions. I designed and architected use cases so that every element of workload, identity, and system could continue to operate independently and securely even in degraded or disrupted scenarios. In parallel, I defined the enterprise and solution security architecture with LeanIX, Bizzdesign, and HOPEX as enterprise architecture, repository, and governance platforms to maintain architecture inventory, relationships, traceability, target pictures, and security governance in complex environments. For the architectural designs, I used Sparx Enterprise Architect to describe formal architecture views, interfaces, trust boundaries, and system architecture in both IT and OT environments. IriusRisk was used for threat modeling of the solution to identify architecture-driven risks, derive security requirements, and detect countermeasures and design gaps directly from the solution models. Risk and compliance management was supported with Archer. Architecture decisions, control gaps, and operational risks were translated into controlled governance and auditable compliance measures. For documentation, collaboration, and visual design, I used Confluence to maintain Architecture Decision Records, Security Blueprints, and workflows. I used Lucidchart and draw.io to create design artifacts tailored to stakeholders. I also defined OT security concepts with support from electrical and mechanical engineers in the areas of oil, vehicle onboard systems, rail, power plants, pharma, gas turbines, and nuclear technology. I created the end-to-end OT security strategy, starting with global policy, developed into standards and procedures, and finally aligned with Bell-LaPadula, Purdue Model, SABSA, TOGAF ADM, CENELEC 50701, IEC 62443, and NIST standards. In addition, I worked with engineering team leads to identify critical KBP assets and place them under protective measures that segmented SCADA, PLC, and HMI assets. I drove collaboration between Security, IT, and OT teams to create standardized workflows and use cases for the OT security solution catalog, while integrating Defense-in-Depth and Zero-Trust principles into operational environments. A key part of my work was integrating multidisciplinary engineering, security, and operations stakeholders into a unified security blueprinting strategy and ensuring that architecture, threat modeling, governance, and documentation were technically strong and operationally practical.
Christoph L.
Last position:
Program Manager - SAP S/4 HANA at BAHAG AG
- Took over the steering of the SAP S4 transformation program after 15 months of project duration
- Assessed the quality of soft facts, especially the quality of collaboration and communication
- Evaluation, program planning, resource control, and realignment of the timeline
- Introduction of the software delivery model and quality gates
- Initial scope definition in the form of business capabilities
- Introduction of enterprise architecture
- Reporting to the SteerCo for the S4 transformation program / C-level
- Risk management and escalation when project risks were identified
- Coordination of the various projects within the program
Felix O.
Last position:
Cloud Architect at uni-assist e.V.
- Project lead ‘Cloud Migration’ for moving the on-premise production environment to Scaleway.
- Transformed a Docker-Swarm legacy setup to a modern Kubernetes-based cloud environment.
- Architected a GDPR-compliant cloud landscape and deployment setup – 100% European sovereign cloud.
- Hands-on bootstrapped the cloud environment with Terraform, ArgoCD, and GitLab Pipelines CI/CD.
- Replaced the legacy VPN with modern mTLS PKI and deep AD integration.
- Managed an 11-headed agile team using Kanban, moderating team meetings and plannings.
- Successfully finished the migration, moving infrastructure, services, and data, from planning to execution.
Shahram D.
Last position:
IT Project Manager & Consultant (Concept and implementation of EU regulations) at Witt Group / Otto Group
- Planning, steering, and monitoring the Corporate Responsibility Tech Enablement project for IT
- Concept and implementation of the EUDR (EU Deforestation Regulation)
- Concept and implementation of the Eco-Design Regulation
- Continued support of projects within the Corporate Responsibility strategy
- Definition and review of guidelines (e.g. governance, success metrics) and, if needed, analysis of issues and their solutions
- Overall project management, marketing, communication, and quality assurance for the projects
- Creation of the project plan including timeline/roadmap, budget, and resources
- Ensuring compliance with budget and deadlines
- Defining guidelines for project control, methods, and priorities
- Planning and tracking resources and effort, also together with other IT teams
- Evaluation of projects and preparation of results (reporting to management)
- Identification and reduction of risks
- Regular communication with stakeholders
- Steering internal and external stakeholders and service providers (Jira, Confluence, backlog management, task tracking, SharePoint, MS 365 platform etc.)
- Development of standards and process automation
Label: Azure Cloud, Jira, Confluence, Power BI, SAP BW, AWS, Miro, Bee360, Draw.io, SharePoint, MS 365 platform, Trello etc.
Sridhar H.
Last position:
SAP CX Consultant at Anonymous
- Stack: SAP Commerce 2011 (B2C).
- Migrating the data from Stibo system to SAP Commerce Cloud.
- Mapping the data from Stibo system to SAP Commerce Cloud.
- Integrating hot folders to support multiple countries and languages.
- Integrating validation tools for migrated data and generating validation reports.
Nikolas R.
Last position:
Data Protection Coordinator for Online-Services and Tracking-Technology at Telefónica Germany GmbH & Co. OHG
As a bridge between Legal, IT, and Marketing, my responsibilities include conducting technical due diligence, documentation, and designing privacy-compliant IT functions across multiple B2P Telefónica Germany brands as part of the RAITT digitalization program. Focused on aligning web and app services with GDPR, TDDDG, and Privacy by Design & Default principles.
Core responsibilities included analysing and visualising data flows across customer journeys, validating tracking and martech integrations, and supporting IT teams in designing privacy-compliant digital architectures. Delivered documentation for internal legal assessments and maintained OneTrust governance and cookie-banner accuracy.
Services and technologies involved:
- Identity & Authentication: CIAM (OAuth2, OIDC), login and session handling, customer account services
- Analytics & Measurement: Google Analytics (GA4), Google Tag Manager (Server-side Tagging & Data Stream Design), event tracking and tagging
- Advertising & Attribution: Google Ads, Google DoubleClick / Campaign Manager, Meta Pixel, affiliate partner integrations
- Experience & Personalisation: Adobe Experience Manager (AEM), Adobe Target, Adobe Experience Platform (AEP), Adobe Edge Network
- Security & Delivery: Cloudflare (CDN), PayPal FraudNet
- Compliance & Governance: OneTrust CMP, consent categories, cookie governance, TDDDG-compliant banner logic
- General web/app services: partner APIs, data transfers, tracking schemas, consent-dependent data activation
Timo W.
Last position:
Project Manager, Requirements Manager, Business Analyst, Solution Architect at Service Provider for Heat Quantity Measurement
Supporting integration testing
Writing and creating the cut-over script
Conducting workshops to clarify requirements
Gathering business requirements
Business process modeling
IT design
Project planning
Supporting migration tests
Executing a greenfield S/4HANA conversion. A DATEV application and an AS400 are to be replaced by an S/4HANA system in a public cloud. The DATEV system runs the general ledger and accounts payable. The AS400 handles accounts receivable and business partners. The payables and receivables will be migrated to S/4HANA and the DATEV solution decommissioned.
Taher S.
Last position:
DevOps Engineer at Confidential
- Working with developers, security, and operations teams to align requirements
- Supporting product owners and development teams in using logging and monitoring solutions based on the Elastic Stack
- Developing and standardizing log schemas as well as defining practical standards for observability
- Designing and further developing logging architectures for complex, distributed multi-tenant environments
- Connecting application and infrastructure logs as well as security tools and metrics
- Optimizing data flows and modeling for analysis and reporting purposes
- Building automated infrastructures using Terraform/Terragrunt and Ansible
- Maintaining and further developing CI/CD pipelines in GitLab as well as automated development environments in Hetzner Robot
- Operating and automating Proxmox clusters including Ceph storage
- Setting up and operating Kubernetes (k3s) clusters on Fedora CoreOS including base services such as Vault, OpenLDAP, and HA Proxy
- Implementing security-critical infrastructures according to BSI baseline protection and securing existing systems
- Supporting the operation of solutions in cloud environments (including AWS)
- Working in agile teams using Scrum and Kanban
- Technologies/ applications: Elastic Stack (Elasticsearch, Logstash, Beats/Elastic Agent, Kibana), Terraform, Terragrunt, Ansible, GitLab CI/CD, GitOps, Proxmox, Proxmox Ceph, Kubernetes (k3s), OpenShift, Helm, Kustomize, Vault, OpenLDAP, HA Proxy, Hetzner Robot systems, AWS, Prometheus, Grafana, Syslog Linux/Windows, Docker, NGINX, Apache Security & Compliance (BSI baseline protection, SIEM/SOC)
Oliver L.
Last position:
Developer, Architect at libri GmbH
- Role: Developer, Architect
- Technologies: java, typescript, golang, spring (boot, web, security, data), Angular, AWS (OpenSearch, Aurora, SNS/SQS, CloudWatch, EC2, IAM), Kubernetes, Terraform, Helm, OAuth, Keycloak, CI/CD, gradlew, Liquibase, Test Driven Development, shell scripting
Mike B.
Last position:
Managing Partner at My-Privacy GmbH
International Management Consultant
External Data Protection Officer
TÜV certified Data Protection Officer and Auditor
Consulting for national and international data protection
Expert/Auditor for EU Data Protection Seal
GDPR implementation in SAP with SAP ILM and EPI-USE Labs
Compliance Suite
SAP consulting – focus on GDPR, HCM, Cloud
Projects:
GDPR implementations
Compliance Suite
SAP ILM
Design and implementation of SAP authorizations
SAP and IAM consulting
International SAP HCM and S/4 rollouts and support
Project management for the introduction of time tracking (Dormakaba) with company agreement on company pension accounts (lifetime working time accounts)
Data protection implementation
H4S4
Various cloud solutions
Audits
AI-driven IAM
AI/KPI optimization of SAP ERP
Valentina L.
Last position:
Parental Break & Professional Development at Parental Break & Professional Development
- Embraced full-time caregiving while achieving B2 German fluency
- Advanced cybersecurity skills through hands-on training at Masterschool
- Worked with AI & LLM tools: ChatGPT, Claude, Gemini, prompt engineering basics, LLMs, AI-assisted writing tools
George G.
Last position:
SAP Authorization Consultant/ SAP Authorization Consulting (Freelancer/SAP Consultant) at Publicly Listed Pharmaceutical Company
- Consulting on SAP authorizations and governance
- Conducting governance consultations, iteration support and project coordination
- Developing solutions for effective control and monitoring of SAP authorizations
- Creating concepts and recommendations
- Drafting detailed concepts to improve the assignment and management of SAP authorizations
- Providing clear recommendations based on established methods and best practices
- Creating/customizing authorizations for MM including MDG/MDM as well as FI, PP including AIRC Services within SAP Finance
- Reviewing existing structures and processes
- Analyzing and evaluating current SAP authorization structures and processes
- Identifying weaknesses and developing optimization strategies
- Conducting trainings and workshops
- Planning and delivering trainings and workshops for awareness
- Sharing knowledge in SAP authorizations, including role assignment, support during iterations and consulting on role development in the pharmaceutical environment.
Discover over 15,000 top freelancers
Statistics of experts using Identity and Access Management
Aggregated from the professional profiles of matched freelancers.
Experience
21 years (Germany: 20 years)

Position duration
2 years (Germany: 2.2 years)

Positions per freelancer
14

Top business areas
Information Technology, Project Management, Operations

Top industries
Information Technology, Professional Services, Retail

Certification focus areas
Information Technology, Project Management, Legal
Bachelor's degree or higher
82% (Germany: 85%)
Master's degree or higher
47% (Germany: 52%)
Doctorate
6%

Certifications per freelancer
3 (Germany: 4)

Most common languages
German, English, French

Speak two or more languages
91% (Germany: 96%)
Based on our profile pool as of 19 Sep 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Hamburg are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Hamburg using Identity and Access Management
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 19 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
Identity and Access Management experts industry focus
See which industries our matched freelancers work in most often — every figure is calculated live from the freelancers on FRATCH.
- Information Technology (95%)
- Professional Services (64%)
- Retail (55%)
- Banking and Finance (41%)
- Manufacturing (41%)
- Transportation (36%)
- Healthcare (32%)
- Aerospace and Defense (27%)
Please note that freelancers can work across multiple industries, so percentages overlap.
About the technology
Access control foundations
Identity and Access Management (IAM) governs who can access which applications, data and infrastructure, under what conditions. It combines identity lifecycle management, authentication, authorization and audit controls. Companies use it to protect cloud services, internal systems, customer portals and APIs while keeping access practical for users.
Core use cases
IAM specialists support initiatives such as:
- Designing single sign-on and multi-factor authentication journeys
- Automating joiner, mover and leaver processes
- Applying role-based or attribute-based access policies
- Securing workforce, partner and customer identities
- Preparing access reviews and audit evidence
They connect business rules with enforceable controls, reducing manual access work and limiting unnecessary permissions.
Platforms and tooling
The ecosystem includes Microsoft Entra ID, formerly Azure AD, Okta, Ping Identity, Keycloak and cloud-native identity services. Professionals often work with SAML, OAuth 2.0, OpenID Connect, SCIM and LDAP, alongside directory services and privileged access controls. Terraform, API integrations, workflow tools and SIEM platforms help make identity operations repeatable and observable.
When specialists help
Companies bring in freelance IAM expertise during cloud migrations, directory consolidations, mergers, compliance programmes and identity platform changes. In Hamburg, specialists may support locally rooted organisations with on-site workshops while coordinating remotely with security, infrastructure and application teams elsewhere. Clear documentation and confident communication in the working language matter as much as configuration skills.
Delivery and integration
A strong professional maps identities, groups, roles and entitlements before changing production access. They define policies, migration steps, test cases, rollback plans and ownership models, then integrate IAM with HR systems, SaaS applications, CI/CD pipelines and service desks. They also distinguish workforce IAM, customer identity and privileged access rather than forcing every need into one pattern.
Signs of quality
Look for specialists who can explain risk and user impact in plain language, not only name a preferred product. Useful evidence includes:
- A documented identity and access model tied to business responsibilities
- Tested federation, provisioning and deprovisioning flows
- Measurable audit trails and clear exception handling
- Secure migration planning with limited disruption
- Practical handover documentation for internal teams
The best professionals leave behind maintainable policies, reliable integrations and a clear operating model.
Frequently asked questions
Questions about Identity and Access Management? Start with the answers below.
Identity and Access Management controls digital identities and their permissions across applications, infrastructure and data. It supports single sign-on, multi-factor authentication, lifecycle automation, access reviews and privileged access controls.
IAM covers more than storing users in a directory. It adds federation, adaptive authentication, authorization policies, lifecycle workflows and governance across cloud, SaaS and on-premises environments, while directory management is usually narrower.
A strong IAM specialist often understands cloud security, networking, HR system integrations and security monitoring. Familiarity with SAML, OAuth 2.0, OpenID Connect, SCIM, LDAP, APIs and infrastructure automation is also valuable.
Before hiring an Identity and Access Management professional, document the systems, user groups, current authentication methods and access pain points. Clarify compliance needs, ownership decisions, migration constraints and the outcomes expected from the engagement.
The right IAM experience depends on scope, risk and the number of systems involved. A focused integration may need a specialist familiar with the selected platform, while a transformation requires broader expertise in architecture, governance, migration and organisational change.
Identity and Access Management work is often suitable for remote collaboration because configuration, documentation and testing can be performed securely online. On-site workshops in Hamburg can still help with stakeholder alignment, access discovery and sensitive migration planning, especially when teams prefer local interaction.
When selecting an IAM platform, companies often compare Microsoft Entra ID, Okta, Ping Identity, Keycloak and native cloud identity services. The decision should reflect existing directories, application protocols, lifecycle needs, operating model and the required balance between control and managed services.
A capable IAM professional links every policy to a clear business or security requirement. Review the quality of their identity model, test coverage, audit trails, exception handling, migration plan and handover documentation, and ask how they will avoid excessive access or lockouts.
The average hourly rate of freelancers in Hamburg, Germany who have used Identity and Access Management in their recent projects is 106 €, which corresponds to a daily rate of about 847 € based on an 8-hour working day.
Of the freelancers in Hamburg, Germany who have used Identity and Access Management in their recent projects, 82% hold at least a Bachelor's degree, 47% hold at least a Master's degree, and 6% hold a doctorate.
On average, freelancers in Hamburg, Germany who have used Identity and Access Management in their recent projects have 21 years of professional experience, with a single engagement typically lasting around 2 years.
The most common languages among freelancers in Hamburg, Germany who have used Identity and Access Management in their recent projects are German (95%), English (95%), and French (36%).
The most common industries among freelancers in Hamburg, Germany who have used Identity and Access Management in their recent projects are Information Technology (95%), Professional Services (64%), and Retail (55%).
The most common business areas among freelancers in Hamburg, Germany who have used Identity and Access Management in their recent projects are Information Technology (100%), Project Management (73%), and Operations (68%).
Main locations of FRATCH Experts, who have recently used Identity and Access Management
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Munich
Cologne
Frankfurt
Stuttgart
Dusseldorf
Essen
Nuremberg