Skip to main content
🇩🇪GDPR-compliant
Find experienced

Keycloak Experts in Munich

for secure identity services, matched with vetted freelancers in minutes

Hire experts who secure applications with OpenID Connect and OAuth 2.0, connect enterprise directories, and tailor single sign-on and user journeys. FRATCH matches you quickly and precisely with vetted, available freelancers.

Meet FRATCH Experts in Munich, who have recently used Keycloak

Verified expert

Tamás E.

View profile

Senior Software Developer / Tech Lead

Munich
Tamás E.

Last position:

Senior Software Developer / Tech Lead at NDA (defense / OSINT)

  • Designing the audit logging framework
  • Implementing APIs for developers to integrate in their codebase
  • Implementing ingestion pipeline, database query layer and UI for browsing the audit events
  • Improving stability and reliability of the backend system
Verified expert

Ronald M.

View profile

DevOps Consultant

Munich
Ronald M.

Last position:

DevOps Consultant at M.it services & systems GmbH

  • Adaptation, optimization, configuration, and administration of a multi-stage GitLab instance with over 250 users
  • Setup, adaptation, expansion, and optimization of infrastructure, configuration, and monitoring
  • Provisioning of services and handover to production
  • System environment: DependencyTrack, GitLab, Grafana, Hedgedoc, Kubernetes, Oauth2 Proxy, Openstack, Prometheus, Syseleven
Verified expert

Thomas H.

View profile

Senior MLOps, DevOps Engineer

Munich
Thomas H.

Last position:

Senior MLOps, DevOps Engineer at Trianel Energy

  • Build and operate an end-to-end MLOps platform on Azure ML and Kubernetes (Kubeflow) for the automated deployment, monitoring, and scaling of forecasting models (including Temporal Fusion Transformer, Informer, Autoformer).
  • Implement CI/CD pipelines in Azure DevOps for the full ML lifecycle – from resource provisioning (Terraform), data transformation (Hugging Face Datasets, Pandas, PyTorch, CUDA cluster) through training and evaluation to model registry and endpoint deployment.
  • Integrate MLflow for experiment tracking, model versioning, performance monitoring, and automated registration in the Azure Model Registry.
  • Develop and containerize PyTorch training jobs (Azure Notebook, Jupyter Notebooks) for price and time series forecasting (PFC models) with automatic rollout via Azure ML Endpoints and REST/gRPC interfaces, Docker containerization, secured with OAuth 2.0.
  • Set up monitoring and alerting mechanisms (Prometheus, MLflow Metrics), log centralization, and cost monitoring.
  • Automate infrastructure provisioning and model deployment using Terraform, Helm, and Azure CLI; connect to existing market data systems and event pipelines.
  • Migrate existing workloads and databases (IONOS → Azure, MongoDB) with integration into central MLOps workflows and internal networks.
  • Extend the platform with LLM-based tools (LangChain, LangServe) to integrate GPT-based analysis modules into existing Spring Boot services for market anomaly detection and automated reports.
  • Analyze and architect a software solution to process large volumes of data efficiently (>3000 messages/sec.) (market data store).
  • Spring Boot / Java 21 container development with RabbitMQ for distributing stock market data via MongoDB (Kubernetes) with fast storage of data in Redis RMaps, deduplication, forwarding messages to Read Model queues, and building Read Models for UI display in MongoDB.
  • Integration of RESTHeart to create a REST API for MongoDB.
  • Build an Angular frontend to simplify data queries and master data maintenance.
  • Agentic coding with remote and local LLMs (Claude Sonnet, Ollama Qwen) and MCP servers.
  • Develop Python scripts for transforming and cleaning incoming stock market data (Pandas, scikit-learn).
Verified expert

Srinivasu K.

View profile

Fullstack Developer

Munich
Srinivasu K.

Last position:

Atruvia

Project: Tax Exemption Order Application

The client has an existing application for creating and maintaining tax exemption orders for end customers; design and implementation of a comparable application for internal employees.

  • Design and implementation of microservices and the UI for the business area "tax exemption orders" using Domain Driven Design as well as Spring Boot and Angular.
  • Implementation of reactive, non-reactive, and asynchronous APIs (Spring REST, WebFlux, GraphQL).
  • Development of the Angular application, including state management using Signals, RxJS Observables, and subscriptions.
  • Securing the API and the application using OAuth2, JWT, and OpenID Connect.
  • Configuration and setup of CI/CD pipelines with Jenkins.
  • Collaboration with cross-functional teams and conducting code reviews.

Environment: Java, Spring Boot, Angular 18 & 19 (standalone, signals), RxJs, Bootstrap CSS, Vitesting, OpenShift, Istio, microservices, Kafka, Dynatrace, Jenkins, GitLab, Graylog, Sonar, Oauth2, OracleDB

Verified expert

Birgit S.

View profile

Business Analyst, Requirements Engineer

München
Birgit S.

Last position:

Business Analysis, Requirements Engineer at BMW

Refinement of epics and user stories to achieve a higher degree of automation in CRM usage. Testing of new Discountsystem

Verified expert

Frank E.

View profile

DevOps

Ismaning
Frank E.

Last position:

DevOps at Lauck-IT

  • Operations and extensions of Azure DevOps pipelines

  • Operations and extensions of AWS services

  • Citrix (Windows 10, Bitwarden)

  • AWS: ECR, EKS, CloudFront CDN, Route 53, VPC peering and CNI upgrade, Atlas MongoDB, S3 buckets, static website hosting

  • Azure: build and deploy with DevOps pipelines

Verified expert

Christian T.

View profile

JEE Software Engineer, DevOps Engineer

Marl
Christian T.

Last position:

HDI DevOps & Fullstack Engineer at HDI

  • Spring Boot Software Engineer
  • DevOps Engineer (Kubernetes, Azure DevOps)

Toolstack: Java, Spring Boot, Kubernetes, Helm, GitOps, ArgoCD, Docker, Azure DevOps, CI/CD Pipelines, Git, Postgres

Verified expert

Harald L.

View profile

Project Management

Grünwald
Harald L.

Last position:

Project Management at Loocid LLC

  • Conducted a comprehensive due diligence review for a potential acquisition of a Swiss manufacturing company as part of a pre-merger analysis
  • Assessed production capacities and technical infrastructure
  • Evaluated integration possibilities into existing business processes
  • Performed risk assessment and developed recommendations for action
  • Documented the findings and presented them to management
Verified expert

Enis S.

View profile

Software Developer

Munich
Enis S.

Last position:

Software Developer at 50Hertz Transmission GmbH

  • Participated in the gradual modernization of components into cloud-native 12-factor applications.
  • Worked closely with the business operations team to eliminate manual processes and resolve several performance bottlenecks.
  • Designed and implemented a CI/CD pipeline to increase developer productivity, enforce quality and security checks, and automate product delivery.
  • Migrated several components into the OpenShift Kubernetes cluster.
  • Built a monitoring stack from scratch with Prometheus and Grafana to monitor services running in OpenShift.
  • Developed dashboards in both Grafana and Splunk for operational transparency.
  • Implemented an OIDC/OAuth2-based single sign-on (SSO) solution with Keycloak to secure multiple applications.
  • Technologies: Java, Spring, Quarkus, Kafka, MySQL, Cassandra, Redis, Spring Data, Hibernate, Docker, Kubernetes, OpenShift, Keycloak, OIDC, OAuth2, Helm, Prometheus, Grafana, Splunk, Spark.
Verified expert

Matthias L.

View profile

Typescript Fullstack Engineer

München
Matthias L.

Last position:

Typescript Fullstack Engineer at Card Complete / Bank Austria

  • Designed and developed the "Credit Risk Engine" using Camunda, Node.js and Typescript
  • Greenfield project for credit card credit assessment for existing and new customers, including EBA KPIs, SCHUFA and CRIF scorings
  • Built and modeled workflows (BPMN) and decision logic (DMN) with Camunda Modeler in close collaboration with stakeholders
  • Implemented service tasks, user tasks and jobs with Nest.js, Node.js and Typescript, including exception handling
  • Backend-for-Frontend (BFF), frontend with React, Tailwind and Ant Design UI library
  • CI/CD with GitLab, Kubernetes/Rancher
Verified expert

Anton K.

View profile

Head of Overall Technical Integration NSC / Hadoop Cloud Development

Munich
Anton K.

Last position:

Head of Overall Technical Integration NSC / Hadoop Cloud Development at IABG

  • Head of overall technical integration NSC (National Secure Cloud, project with approx. 60 employees).

  • Technical integration of all subprojects into one product, definition of interfaces and basic components of a cloud including hardware, technical architecture of the IABG platform.

  • Development of a Cloud Management Platform (CMP) capable of creating private/mixed clouds of any complexity based on a textual description with one click or interactively.

  • CMP also includes the complete hardware management lifecycle.

  • Kubernetes, OpenStack and Hadoop are used as the foundation.

  • The management layer includes Harbor, Gitea, Longhorn, Keycloak, Rancher and Jenkins, which are configured automatically.

  • Private cloud can run any customer workloads, including a full Hadoop layer with HDFS, Spark, MapReduce, Mesos, HBase and around 20 additional ML/DL technologies.

  • Hadoop worker clusters can also be installed automatically without Kubernetes on bare metal or commodity hardware.

  • OpenStack with Nova, Neutron, Ironic, Swift, Cinder, Ceph.

  • Development of a Java application Rudi: SOAP, REST, containers, DB.

  • Technologies: Kubernetes (K3s, Rke2, Minikube, Harbor, Gitea, Jenkins, Longhorn, Keycloak, Rancher), OpenStack (Nova, Neutron, Keystone, Swift, Ceph, Cinder, Sahara, Magnum, Kayobe, Kolla, Bigrost, Ironic), Hadoop (HDFS, Ambari, Solr, Livy, Ranger, YARN, Tez, HBase, Kafka, Hive, Zookeeper, MapReduce, Spark, Oozie, Flink), virtualization (Kubernetes (K3S), VMware, Oracle), scripting (Ansible, Puppet, Juju, Shell, Groovy, Gradle, Maven).

Verified expert

Sebastian K.

View profile

Senior Lead Developer, System Architecture

München
Sebastian K.

Last position:

Senior Lead Developer, System Architecture at AVL DITEST

  • Redesign of a legacy Windows app for vehicle diagnostics as an AWS cloud application
  • Creating build pipelines and conducting code reviews using Kotlin, Spring Boot, Micronaut, Jenkins, and GitHub
Verified expert

Patrick U.

View profile

Interim Manager & Consultant for Data, AI & Regulatory Governance

Grasbrunn
Patrick U.

Last position:

Interim Management | Consulting & Implementation | Data Deletion in SAP at BSR (Berliner Stadtreinigung)

  • Topics: Business Analysis, Data Privacy, Data Management, Stakeholder Management, Conceptualization
  • This project focuses on developing and implementing a strategic approach for data deletion in SAP systems. The goal is to identify the relevant data and structures during system migration to ensure both data privacy and IT system efficiency. At the same time, downtime should be minimized and regulatory requirements met.
  • Development of a comprehensive approach for data deletion in SAP systems, considering data privacy and business requirements.
  • Ensuring efficient and structured data transfer to the new system.
  • Optimizing system efficiency and reducing downtimes during migration.
  • Creating functional and technical concepts to ensure compliant and sustainable data management.
  • Topic preparation: Detailed study of the "data deletion" area to lay the foundation for a structured data migration.
  • Definition of project structure: Setting roles, interfaces and the project's organizational structure.
  • Regulatory requirements: Analysis of data privacy regulations and business requirements to define deletion criteria.
  • Approach: Developing possible scenarios and methods for data cleansing and deletion.
  • Deletion concepts: Creating functional and technical deletion concepts that structure the implementation and provide clear guidelines.
  • Setting deletion criteria: Defining which data and structures to delete or transfer.
  • Responsibilities: Clarifying responsibilities within the project team and among stakeholders.
  • Analysis of ongoing activities: Identifying and collecting existing activities in the "data deletion" area.
  • Effort, cost and timeline planning: Creating estimates for resources, effort and budget.
  • Implementation initiatives: Developing and executing concrete measures to apply the defined deletion strategies.
  • IT system efficiency: Analyzing the existing IT infrastructure to identify optimization potential for data deletion and transfer.
  • Technology trends: Evaluating new technologies and tools that can support the data cleansing process.
  • Cost-benefit analysis: Assessing the financial impact of data cleansing and the introduction of new solution approaches.
  • Risk management: Identifying potential risks during implementation and developing appropriate mitigation measures.
  • This project lays the foundation for a sustainable and compliant data transfer to a new SAP system. With a clear approach to data deletion, it meets data privacy requirements, reduces downtimes and increases the efficiency of the new system. The results and recommendations will help companies develop a future-proof data strategy that meets legal and business needs.
Verified expert

Alexander S.

View profile

Team Lead & Product Owner

München
Alexander S.

Last position:

Founder and Full-Stack Developer at TrumpPostAlert.com

  • Feasibility study for quick implementation of requirements with AI-based development (vibe coding)
  • Development of a single-page web app in Angular 20
  • Development of a backend server application in Kotlin
  • Integration with Google Cloud Platform (Firebase): authentication, Firestore NoSQL database, storage, Cloud Functions, hosting and Cloud Run
  • Integration with a NEON PostgreSQL database
  • Automated AI-based analysis of Donald Trump's posts on Truth Social and analysis of relevance for stock markets and geopolitical topics
  • CI/CD via GitHub Actions using Docker and Google Cloud Run
  • Technical environment: Angular 20 (Angular Material, RxJS), Kotlin 2.2.20, TypeScript 5.9.3, Spring Boot 3.5.6, Google Cloud Platform (Firebase, Cloud Run, Gemini, Vertex AI), ChatGPT Codex, Git, GitHub, SourceTree, IntelliJ WebStorm, IntelliJ IDEA

Discover over 15,000 top freelancers

Statistics of experts using Keycloak

Aggregated from the professional profiles of matched freelancers.

Experience

22 years (Germany: 18 years)

Keycloak experts in Munich have 22 years of professional experience on average. It is 4 years more than in Germany, where the average stands at 18 years.

Position duration

1.7 years

Keycloak experts in Munich stay in a single position for 1.7 years on average.

Positions per freelancer

14

Keycloak experts in Munich have completed 14 positions on average over the course of their careers.

Top business areas

Information Technology, Product Development, Project Management

Keycloak experts in Munich have gathered most of their hands-on project experience in Information Technology, Product Development, and Project Management.

Top industries

Information Technology, Banking and Finance, Insurance

Keycloak experts in Munich are most in demand in Information Technology, Banking and Finance, and Insurance.

Certification focus areas

Information Technology, Product Development, Project Management

Keycloak experts in Munich earn their certifications most often in Information Technology, Product Development, and Project Management.

Bachelor's degree or higher

82% (Germany: 87%)

82% of Keycloak experts in Munich hold at least a Bachelor's degree. It is 5% lower than in Germany, where the rate stands at 87%.

Master's degree or higher

71% (Germany: 54%)

71% of Keycloak experts in Munich hold at least a Master's degree. It is 17% higher than in Germany, where the rate stands at 54%.

Doctorate

24% (Germany: 10%)

24% of Keycloak experts in Munich have a doctorate (PhD). It is 14% higher than in Germany, where the rate stands at 10%.

Certifications per freelancer

2

Keycloak experts in Munich hold 2 professional certifications on average.

Most common languages

German, English, Spanish

Keycloak experts in Munich most often speak German, English, and Spanish.

Speak two or more languages

95% (Germany: 97%)

95% of Keycloak experts in Munich speak two or more languages. It is 2% lower than in Germany, where the rate stands at 97%.

Based on our profile pool as of 19 Sep 2026.

Daily rate distribution

0 2 4 6 8
3 of the Keycloak experts in Munich charge less than €640 per day.
3 of the Keycloak experts in Munich charge between €640 and €720 per day.
7 of the Keycloak experts in Munich charge between €720 and €800 per day.
6 of the Keycloak experts in Munich charge between €800 and €880 per day.
3 of the Keycloak experts in Munich charge €960 or more per day.
<€640 €640-​720 €720-​800 €800-​880 €960+

The chart shows how the daily rates of freelancers in this technology in Munich are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.

Average rates of experts in Munich using Keycloak

Rates are based on recent contracts and do not include FRATCH margin.

800
600
400
200
Rate comparison chart
Daily rate avg. 750 €
Germany avg. 771 €

The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.

800
600
400
200
Rate comparison chart
Median rate 760 €
Germany median 768 €

The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.

Calculated based on our freelancers’ daily rates as of 19 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.

Keycloak experts industry focus

See which industries our matched freelancers work in most often — every figure is calculated live from the freelancers on FRATCH.

  • Information Technology (95%)
  • Banking and Finance (73%)
  • Insurance (59%)
  • Automotive (50%)
  • Retail (50%)
  • Telecommunication (50%)
  • Manufacturing (41%)
  • Government and Administration (41%)

Please note that freelancers can work across multiple industries, so percentages overlap.

About the technology

Identity foundation

Keycloak is an open-source identity and access management solution from Red Hat. Companies use it to add single sign-on, user registration, authentication and authorization to web applications, APIs and services without building these capabilities from scratch. It supports centralized identity policies across distributed systems.

Protocols and realms

Keycloak implements OpenID Connect, OAuth 2.0 and SAML, making it suitable for modern applications as well as established enterprise environments. Realms separate users, clients, roles and identity providers. Specialists configure client scopes, claims, service accounts, groups, roles and fine-grained access rules to match the target architecture.

Ecosystem and integration

Keycloak connects with LDAP and Active Directory, external social identity providers and custom user stores. Its administration console, REST APIs, command-line tools and provider extensions support operational workflows and tailored integrations. Strong professionals also work comfortably with Kubernetes, containers, ingress, certificates, databases and CI/CD pipelines when Keycloak runs as a shared platform service.

Typical delivery work

  • Configure single sign-on across internal and customer-facing applications
  • Integrate OpenID Connect clients, APIs and service-to-service authentication
  • Federate identities from LDAP, Active Directory or external providers
  • Design realms, roles, groups, claims and consent flows
  • Extend login screens, user storage and authentication providers

Projects often involve migration from a home-grown login service, consolidation of several identity systems or preparation for a new microservice landscape. Experts can also define token lifetimes, logout behavior, account recovery and secure rollout plans.

When expertise matters

Companies bring in freelance Keycloak specialists when authentication affects many teams or when a delivery cannot pause for identity redesign. Warning signs include duplicated user accounts, inconsistent permissions, unclear token ownership, failed directory synchronization or a realm model that no longer reflects the business. In Munich, on-site workshops can support regulated or complex organizations, while remote collaboration works well for configuration, reviews and implementation when documentation is strong.

What quality looks like

Good work goes beyond making a login screen appear. Experienced professionals model trust boundaries, document flows, protect administrative access, test token claims and plan upgrades without breaking client applications. They understand the difference between authentication and authorization, limit privileges, monitor failures and explain operational ownership clearly. They should also be able to communicate with product, security and infrastructure teams in the language required by the project.

Published on:
FRATCH GPT

FRATCH GPT delivers freelancer proposals with clear reasoning and transparent pricing in minutes, helping your hiring department quickly and compliantly find the best talent.

Give it a try:

Try FRATCH GPT

Frequently asked questions

Not sure where to start with Keycloak? These answers cover the essentials.

Companies use Keycloak to centralize authentication and authorization for applications, APIs and services. It provides single sign-on, identity federation, user management, roles, groups and token-based access through protocols such as OpenID Connect, OAuth 2.0 and SAML.

Keycloak gives companies an open-source option that can be self-hosted and deeply customized. Auth0, Okta and Microsoft Entra ID are managed services with different operating models, integrations and commercial terms, so the right choice depends on control, compliance, identity sources and internal platform skills.

A strong Keycloak specialist should understand OpenID Connect, OAuth 2.0, SAML, JWT claims and secure session handling. Useful adjacent skills include LDAP or Active Directory, Kubernetes, Docker, reverse proxies, Java-based extensions, REST APIs, databases and CI/CD automation.

The required depth depends on the scope. A simple client integration may need protocol and configuration expertise, while realm federation, custom providers, high availability, migration or complex authorization requires a professional who has handled those specific concerns in production.

Yes. Keycloak configuration, integration, testing and documentation are often well suited to remote collaboration. On-site work in Munich can add value for architecture workshops, security reviews or coordination with teams handling sensitive infrastructure, while clear access controls and written decisions support distributed delivery.

Ask the specialist to explain a real identity flow from login through token validation and logout. Look for precise reasoning about trust boundaries, claims, roles, client secrets, directory synchronization, administrative security, testing and upgrade planning rather than familiarity with the administration console alone.

Yes, Keycloak can replace or consolidate custom authentication services when its protocols and extension model fit the requirements. A careful migration maps users, groups, roles, clients, sessions and password handling, then introduces applications in stages with rollback and communication plans.

Freelancers extending Keycloak should know its provider and SPI model, lifecycle behavior and compatibility considerations. Custom authenticators, user storage providers, themes and protocol mappers should remain small, documented and tested so upgrades do not turn a standard identity service into an unmaintainable fork.

The average hourly rate of freelancers in Munich, Germany who have used Keycloak in their recent projects is 94 €, which corresponds to a daily rate of about 750 € based on an 8-hour working day.

Of the freelancers in Munich, Germany who have used Keycloak in their recent projects, 82% hold at least a Bachelor's degree, 71% hold at least a Master's degree, and 24% hold a doctorate.

On average, freelancers in Munich, Germany who have used Keycloak in their recent projects have 22 years of professional experience, with a single engagement typically lasting around 1.7 years.

The most common languages among freelancers in Munich, Germany who have used Keycloak in their recent projects are German (100%), English (86%), and Spanish (18%).

The most common industries among freelancers in Munich, Germany who have used Keycloak in their recent projects are Information Technology (95%), Banking and Finance (73%), and Insurance (59%).

The most common business areas among freelancers in Munich, Germany who have used Keycloak in their recent projects are Information Technology (100%), Product Development (91%), and Project Management (73%).

Main locations of FRATCH Experts, who have recently used Keycloak

Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.

Berlin Hamburg Munich Cologne Frankfurt Stuttgart Dusseldorf Leipzig Dortmund Essen Bremen Dresden Hanover Nuremberg

Request a free demo

Get in touch with the FRATCH team and we will get back to you within 4 hours.

Contact form

Would you rather directly get in touch?
We always have the time for a call or email!

FRATCH CEO avatar

Philipp Thomaschewski

FRATCH CEO

LinkedInFRATCH