
Keycloak Experts in Hamburg
for secure identity systems, matched in minutes with vetted and available freelancersHire experts who secure applications with OpenID Connect and SAML, connect enterprise directories, and tailor Keycloak realms, themes and identity flows. FRATCH matches you quickly and precisely with vetted, available freelancers.
Meet FRATCH Experts in Hamburg, who have recently used Keycloak
Daniel S.
Last position:
Senior Software Engineer at energielenker solutions GmbH
- Designed and implemented a Python-based ETL pipeline with the Dagster framework to transform raw energy data from heterogeneous sources using InfluxDB and visualizations in Grafana
- Defined time-based and dependency-based jobs
- Deployed to managed Kubernetes clusters using Helm
- Integrated InfluxDB Cloud
- Prepared data for use in Grafana, including cleaning, normalization, and time-based resampling in Python
- Developed dashboards and visualizations in Grafana
- Developed unit tests with mocking using pytest
- Set up a CI/CD pipeline in GitLab
Technologies: Python, Dagster, InfluxDB, Grafana, pandas, pytest, REST, CI/CD, GitLab, Container, Kubernetes, Helm, Docker, Cloud
Rutger B.
Last position:
Partner & Managing Director at AI.IMPACT
- Building an AI & Data Consultancy Practice with the goal of helping European companies adopt Artificial Intelligence and modern data platforms
- End-to-end further development of a production system using modified coding agents (OpenCode). Tech stack: Kubernetes, Argo, Keycloak, Typescript, Grafana, GitOps, DevOps, Playwright
- Internal research project on the use of coding agents in the field of mathematical logic for creating formal models. Use of Cursor IDE and Codex, Codex CLI. Architecture design, quality control and refactoring, as well as writing code and tests. Repository (open source) available pre-launch
- Research on the role of mathematical logic as a formal language that connects IT and AI with business processes
- Project lead for collecting and deploying parking recommendations for rail vehicles with significant savings potential based on real-time data in a mobility and transport company
- Project lead for collecting and distributing process measurement points for real-time control in a mobility and transport company
- Deputy application owner for an app used for communication in the dispatching and provision of rail vehicles
Cornelius H.
Last position:
Solution Architect at STIHL
- Remodeling of the system architecture for an Azure-based platform aimed at rapid development of new functionalities
- Modeling of a staging concept for the fulfillment of diverse customer and QA needs
- Creation of requirements for, and oversight of, a proof-of-concept supplier project for a Flutter app with highly advanced BLE functionalities
- Comparison of multiple observability platforms for feasibility and requirements fit within the project environment
- Creation of a mobile app architecture based on domain-driven architecture
- Position of technical advisor and accountable solution architect for two development teams
- Execution of architecture reviews and alignment of changes with architectural expectations
- Skills & Technologies: Microsoft Azure , App Services, NodeJS Mono-repository, microservice architecture, domain driven design, self contained systems, requirements engineering, CI/CD, DevOps, API design, solution architecture
Florian W.
Last position:
Software Engineer at micimo GmbH
- Developing a professional scheduler for organizations with specific detailed requirements
- Evaluating different existing software solutions
- Creating a list of technical requirements
- Implementing these requirements
- Selected technologies: WebDAV, CalDAV, Rust, Baikal, OAuth, Keycloak
Felix O.
Last position:
Cloud Architect at uni-assist e.V.
- Project lead ‘Cloud Migration’ for moving the on-premise production environment to Scaleway.
- Transformed a Docker-Swarm legacy setup to a modern Kubernetes-based cloud environment.
- Architected a GDPR-compliant cloud landscape and deployment setup – 100% European sovereign cloud.
- Hands-on bootstrapped the cloud environment with Terraform, ArgoCD, and GitLab Pipelines CI/CD.
- Replaced the legacy VPN with modern mTLS PKI and deep AD integration.
- Managed an 11-headed agile team using Kanban, moderating team meetings and plannings.
- Successfully finished the migration, moving infrastructure, services, and data, from planning to execution.
Andreas S.
Last position:
Solution Architect, Business Analyst, Consultant, Full-Stack Lead-Developer at 50Hertz Transmission GmbH
- Solution for micro-service and frontend solution for the electric grid
- Leading of development teams
- Technologies: React-Native, TypeScript, Kotlin, AWS, Infrastructure As Code, Serverless Architecture, React, NoSQL, GraphQL, Angular, Playwright, Python, ML(Ops), Kubernetes, Docker
Oliver L.
Last position:
Developer, Architect at libri GmbH
- Role: Developer, Architect
- Technologies: java, typescript, golang, spring (boot, web, security, data), Angular, AWS (OpenSearch, Aurora, SNS/SQS, CloudWatch, EC2, IAM), Kubernetes, Terraform, Helm, OAuth, Keycloak, CI/CD, gradlew, Liquibase, Test Driven Development, shell scripting
Marcel S.
Last position:
Lead Developer / Software Architect at Rezeptprüfstelle Duderstadt GmbH
Responsible for the new development of billing and auditing software for prescriptions (prescriptions) to fully check and evaluate e-prescriptions for correctness (content, billing)
The system consists of several contexts that run as services (Docker containers):
Checking and processing data deliveries via FTP and email
Managing invoices, clearings, advance payments and deductions
Managing and running audit rules and audit folders
Evaluations based on Metabase
Developer Stack: Kotlin, Vue 3 / Vuetify 3, ANTLR, Spring Boot 3, REST API, Gradle, Docker, GitLab, PostgreSQL, Kafka, Keycloak, Scrum, Grafana, Loki, Testcontainers, Prometheus
Mark P.
Last position:
Full-Stack Software Developer, Product Data Import at Otto (GmbH & Co KG)
- Manage and operate the product data import services for the Otto merchant
- Enhance and maintain the backend systems
- Optimize and maintain AWS infrastructure
- Build a new product data import API
- Design and plan stories and features
- Conduct code reviews to ensure code quality and best practices
- Analyze and fix bugs
- Technologies: Java, Spring Boot, Kafka, AWS, Fargate, Terraform, MongoDB, Mongo Atlas, OpenAPI, GitHub, GitHub Actions, GitHub Copilot, Akhq, Debezium, JUnit, Test Containers, Hexagonal Architecture
Johannes E.
Last position:
Libri GmbH
- Operation and further development of the inventory system for booksellers (Quimus). It is an in-house development by Libri that is sold to customers as Software as a Service. The software is developed in an agile way by two developer teams (about 5 developers each). The software consists of around 25 Java microservices that mainly communicate via messaging and share a common Angular frontend. The application runs on Kubernetes in AWS.
- Technologies used: Java 17 & 21, Spring Boot 2 & 3, Hibernate, MySQL, Spring Cloud AWS, Lombok, AWS SQS, AWS SNS, AWS RDS, AWS S3, DynamoDB, Kubernetes, Docker, OpenSearch, Hibernate Search, Liquibase, Gradle, Terraform, Helm, GitLab CI, Keycloak OAuth2, TypeScript, Angular
- My focus until December 2023: Connecting additional POS systems to the inventory system. Connecting the data warehouse for report display. Extending existing features (goods receipts, invoicing, item management, ...). Operations and DevOps tasks.
- Focus from January 2024: Extracting the product search from the inventory system into a global service to use in other applications. Integrating the product search into the booksellers' online shops (also run by Libri). Importing and providing digital items in the product search.
Discover over 15,000 top freelancers
Statistics of experts using Keycloak
Aggregated from the professional profiles of matched freelancers.
Experience
18 years

Position duration
2 years (Germany: 1.7 years)

Positions per freelancer
10 (Germany: 14)

Top business areas
Information Technology, Product Development, Operations

Top industries
Information Technology, Retail, Professional Services

Certification focus areas
Information Technology, Human Resources, Product Development
Bachelor's degree or higher
78% (Germany: 87%)
Master's degree or higher
33% (Germany: 54%)
Doctorate
11% (Germany: 10%)

Certifications per freelancer
1 (Germany: 2)

Most common languages
German, English, French

Speak two or more languages
100% (Germany: 97%)
Based on our profile pool as of 19 Sep 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Hamburg are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Hamburg using Keycloak
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 19 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
Keycloak experts industry focus
See which industries our matched freelancers work in most often — every figure is calculated live from the freelancers on FRATCH.
- Information Technology (100%)
- Retail (60%)
- Professional Services (50%)
- Energy (40%)
- Transportation (40%)
- Manufacturing (40%)
- Automotive (30%)
- Banking and Finance (30%)
Please note that freelancers can work across multiple industries, so percentages overlap.
About the technology
Identity at the core
Keycloak is an open-source identity and access management system from Red Hat. It gives applications a central place for sign-in, user administration, roles, groups and permissions. Companies use it to add single sign-on without building authentication flows from scratch.
Applications and access
Keycloak supports web applications, mobile clients, APIs and internal tools. Experts configure realms, clients, scopes, roles and consent screens for different user groups. They also design authentication journeys for customers, employees, partners and service accounts.
- Single sign-on across connected applications
- OpenID Connect and OAuth 2.0 integrations
- SAML federation for enterprise systems
- Multi-factor authentication and account policies
Federation and tooling
A strong Keycloak setup connects to LDAP or Active Directory, external identity providers and existing databases. Professionals work with the Admin Console, REST Admin API, command-line tools and custom themes. They commonly pair Keycloak with Java, Spring Security, Kubernetes, Docker, reverse proxies and CI/CD pipelines.
When expertise matters
Companies bring in freelance specialists when authentication must be introduced across an existing application landscape or moved away from a custom identity service. Hamburg-based teams may value on-site workshops for security and architecture decisions, while remote collaboration works well for configuration, integration and documentation.
- Replace bespoke login and session logic
- Connect customer or workforce identity providers
- Prepare Keycloak for containerized production environments
- Review security settings, token flows and permissions
Delivery and operations
Projects often include realm design, migration planning, user and group imports, custom login themes, automated client provisioning and test environments. Experts also set up backups, upgrades, monitoring, logging and recovery procedures. Clear runbooks help internal teams operate the service after handover.
What strong experts bring
The best professionals understand both identity standards and application behavior. They can explain token claims, refresh flows, redirect rules and browser security in practical terms. They test failure paths, limit privileges, protect administrative access and document every integration so the result remains maintainable.
Frequently asked questions
Need clarity? These are the questions we hear most often about Keycloak.
Keycloak provides centralized identity and access management for applications, APIs and internal services. Companies use it for single sign-on, user federation, role-based access, multi-factor authentication and identity provider integration.
Keycloak is self-hosted and highly configurable, while Auth0 and Okta are primarily managed identity services. The right choice depends on control, hosting responsibilities, compliance needs, customization and the team's ability to operate identity infrastructure.
A strong Keycloak freelancer should understand OpenID Connect, OAuth 2.0, SAML, LDAP and secure token handling. Experience with Java, Spring Security, REST APIs, Kubernetes, Docker and CI/CD is useful when identity services must run inside a wider application platform.
The required depth depends on the scope. A simple client integration may need focused configuration skills, while federation, migration, custom extensions and production operations call for a professional who has handled identity architecture and security failure cases.
Keycloak can support workforce and customer identity in separate realms or carefully designed shared structures. A specialist should define tenant boundaries, account ownership, consent, roles and lifecycle processes before connecting applications.
Keycloak projects are often well suited to remote work because configuration, testing and documentation can be handled through shared repositories and environments. Hamburg companies may still prefer on-site sessions for workshops involving security owners, application teams or identity policy decisions.
Ask the freelancer to explain realm and client design, token validation, identity federation and administrative protection in clear terms. Good work includes automated tests, least-privilege permissions, migration and rollback plans, monitoring, upgrade guidance and usable documentation.
A typical Keycloak engagement can deliver a configured identity service, connected applications, imported users, custom login flows and operational runbooks. The scope may also include custom themes, REST automation, infrastructure deployment and handover to the internal team.
The average hourly rate of freelancers in Hamburg, Germany who have used Keycloak in their recent projects is 118 €, which corresponds to a daily rate of about 941 € based on an 8-hour working day.
Of the freelancers in Hamburg, Germany who have used Keycloak in their recent projects, 78% hold at least a Bachelor's degree, 33% hold at least a Master's degree, and 11% hold a doctorate.
On average, freelancers in Hamburg, Germany who have used Keycloak in their recent projects have 18 years of professional experience, with a single engagement typically lasting around 2 years.
The most common languages among freelancers in Hamburg, Germany who have used Keycloak in their recent projects are German (100%), English (100%), and French (20%).
The most common industries among freelancers in Hamburg, Germany who have used Keycloak in their recent projects are Information Technology (100%), Retail (60%), and Professional Services (50%).
The most common business areas among freelancers in Hamburg, Germany who have used Keycloak in their recent projects are Information Technology (100%), Product Development (100%), and Operations (60%).
Main locations of FRATCH Experts, who have recently used Keycloak
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Munich
Cologne
Frankfurt
Stuttgart
Dusseldorf