
Keycloak Experts in Stuttgart
to secure applications with vetted, available specialists matched in minutesHire experts who design identity flows, integrate OpenID Connect and SAML, and operate secure single sign-on environments with Keycloak. FRATCH matches you quickly and precisely with vetted, available freelancers for your project.
Meet FRATCH Experts in Stuttgart, who have recently used Keycloak
Sercan T.
Last position:
Co-Founder & Lead Software Architect at Pflege-Pfad
- Focus: system architecture, cloud-native platforms, microservices, API design
- Product: Pflege-Pfad is a digital matchmaking platform that connects relatives of people in need of care directly with verified care services and caregivers - without an agency and without ongoing fees.
- Business analysis & process design:
- Analysis of the German care market and identification of the key pain points of both target groups.
- Modeling of the core business processes: registration, verification, care request, application, placement, and rating.
- Definition of the business model as a freemium/premium model with optional contact unlocking.
- Creation of user stories and requirements documentation for relatives, care services, and administrators.
- Design of trust and quality assurance mechanisms with document upload, admin review process, and rating system.
- Coordination with stakeholders and validation of product decisions with potential users.
- Technical implementation:
- Design and implementation of the entire platform architecture as a solo developer.
- Design and implementation of a REST API with Spring Boot and Kotlin, including JWT-based authentication.
- Development of the frontend as a single-page application with Angular 17.
- Implementation of the AWS infrastructure with EC2, RDS PostgreSQL, S3, CloudFront, and IAM.
- Document upload with AWS S3 via presigned URLs for verification of care services.
- Email notifications via Resend API.
- AI-supported care service search via OpenAI API.
- Implementation of complete user flows such as registration, login, password reset, and placement process.
- Building an admin panel for user and care service management as well as analytics.
- CI/CD with GitHub Actions and containerized deployments with Docker.
- End-to-end tests with Playwright.
Technologies: Kotlin, Spring Boot 3, Spring Security, JWT, JPA/Hibernate, PostgreSQL, Angular 17, TypeScript, RxJS, AWS (EC2, ECS, S3, CloudFront CDN, RDS PostgreSQL, IAM), nginx, GitHub Actions, Playwright, Maven, Git, OpenAI API, Resend API, Docker, Scrum, i18n (DE/EN/TR), Kiro, feature-flag architecture.
Salim C.
Last position:
Cloud / Systems Architect
- Development and introduction of operations processes
- Preparation of complete documentation packages (including incident management and operations support) to meet compliance requirements
- Introduction of a workshop on IaC (Infrastructure as Code)
- Technical consulting for the project security concept (ISMS)
- Installation and operation of Kubernetes clusters on AWS, on-prem, and Azure
- Hybrid cloud architecture design (on-prem, Hetzner, AWS)
- Analysis and troubleshooting of incidents and system outages
- Network adjustments for firewall rules, gateways, OpenVPN settings, and IPsec tunnels (pfSense)
- Technical consulting on Bitbucket, Jenkins, and GitLab CI/CD pipelines
- Consulting on Ansible deployments and infrastructure automation
- Consulting on building a scalable system in the cloud (AWS / Azure)
- Technologies / Tools: Ansible, Terraform, AWS, Azure, VPN, pfSense, Jenkins, Bitbucket, Kubernetes, GitLab Runner, ISMS, Golang, Prometheus, Grafana, S3, Lambda, RDS, ECS, Cognito, OIDC, Harbor, MinIO, Postgres, Redis, Keycloak, Ceph, Proxmox, CloudFormation, PostgreSQL, Flux CD, Hetzner, IONOS, Sonatype Nexus Repository, Entra ID, Dex IdP, Pulumi
Will O.
Last position:
Solution Architect at Stuttgart Police Authority
Designing the migration strategy for WLS applications to the BKA cloud and Stack IT
Creating a hybrid cloud for internal testing and development with Kubernetes
Transforming the IT landscape from a legacy monolithic architecture to a cloud-based architecture
Integrating new CI/CD processes using Azure Pipelines
Quadrupled the throughput of personnel security checks
Migrated personnel security clearance applications to Docker-based applications
Built CI/deploy pipelines with Azure DevOps
Environment: Java Spring Boot, Kubernetes, Oracle WebLogic, OpenID, Camunda, JUnit, TOGAF
Albert F.
Last position:
Lead Product Owner at CMBlu Energy AG
- Lead Product Owner for 4 development teams
- Leading and coordinating a greenfield project with parallel implementation of core components by independent teams; managing dependencies and resources
- Establishing a data lakehouse approach, including analysis of data volumes and future requirements as part of a cloud migration (best-of-breed approach)
- Responsible for requirements analysis, selection, and piloting of a LIMS/ELN system, supported by advising decision-makers and managing external vendors
- Introducing and managing an OpenWeb UI and Azure OpenAI-based RAG system to support knowledge extraction and data-driven analyses
- Setting up, configuring, and managing Jira projects, as well as developing project-specific workflows and automations
- Implementing classic Scrum processes with all ceremonies and taking on the Scrum Master role for all involved teams
- Assisting in hiring through interviews and assessments from a product owner's perspective
- Making key architectural decisions, including selecting the platform for the data lakehouse (Databricks) and the strategic integration of LIMS and analytics platforms
Benjamin S.
Last position:
Design and implementation of a new cloud service at Porsche AG
- Design of a new cloud service
- Requirements Engineering
- API Design (REST API, Kafka)
- Consulting on architecture, feasibility and effort estimation
- Implementation of a microservice architecture
- Implementation of a Spring Boot web service
- Development of REST APIs including business and persistence logic
- Kafka consumers and producers
- Various Excel upload/download scenarios
- Change Data Capture
- Cloud provisioning with IaC/Terraform
- Go-live with 30,000 users
- Operation, support and bug fixing for other services
Environment/tools: GitLab, JIRA, Confluence, IntelliJ, Spring Boot, Java, Docker, Terraform, AWS ECS, Postgres, Apache Kafka, SAP Datasphere, JUnit, Debezium, Apache POI, Hibernate, JPA, Testcontainers
Marcel S.
Last position:
Technical Lead / Lead Developer at REWE digital
- Due to an organizational restructuring towards product-based teams, the implementation of a Data Mesh in the area of Digital Supplier Management (DSM) was decided.
- A highly available real-time Data Mesh for providing large volumes of data via Kafka and REST to other products.
- New development of a core supplier management software in a (micro-)service-based architecture with a modern tech stack.
- Technologies/Tools:
- Java 21
- Spring Boot
- Angular
- TypeScript
- Go
- MapR
- Kafka
- Docker
- Google Cloud Platform (GCP)
- Kubernetes
- Helm
- GitLab CI
- Maven
- JUnit
- Mockito
- WireMock
- Cypress
- Keycloak
- OAuth 2.0 & OpenID Connect
- Humio
- Nexus
- Artifactory
- SonarQube
- Renovate
- Git
- Postman
- IntelliJ
Ahmed F.
Last position:
Senior Lead Engineer (Freelance) at Atruvia AG
- Development of a wealth management application for investing in foreign currencies
- Full-stack development with Angular, Spring Boot, OpenShift, Oracle DB, Kafka
- Design and implementation of a microservice architecture
- Integration into Atruvia's BWS system and connection of multiple interfaces between Atruvia and DZ Privatbank
- Greenfield development of the application from the ground up
- Technical responsibility for architecture and interface design
- Close collaboration with business units and external stakeholders
Felix J.
Last position:
Senior Software Engineer at PCA GmbH
- Developed three applications with Flutter (Dart), Swift (iOS), and Kotlin (Android)
- Responsible for the apps' UI/UX design
- Developed a fingerprint plugin for HidGlobal in Swift and Kotlin
- Used Riverpod and Flutter Bloc for efficient state management
- Used Hive and Isar for local data management
- Used Firebase for backend services (Firebase Cloud Messaging, Analytics, and Firestore)
- Managed code with GitLab, developed using Visual Studio Code and Xcode
Discover over 15,000 top freelancers
Statistics of experts using Keycloak
Aggregated from the professional profiles of matched freelancers.
Experience
16 years (Germany: 18 years)

Position duration
1.9 years (Germany: 1.7 years)

Positions per freelancer
13 (Germany: 14)

Top business areas
Information Technology, Product Development, Operations

Top industries
Automotive, Information Technology, Banking and Finance

Certification focus areas
Information Technology, Operations, Product Development
Bachelor's degree or higher
100% (Germany: 87%)
Master's degree or higher
33% (Germany: 54%)

Certifications per freelancer
2

Most common languages
German, English, Spanish

Speak two or more languages
100% (Germany: 97%)
Based on our profile pool as of 19 Sep 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Stuttgart are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Stuttgart using Keycloak
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 19 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
Keycloak experts industry focus
See which industries our matched freelancers work in most often — every figure is calculated live from the freelancers on FRATCH.
- Automotive (88%)
- Information Technology (88%)
- Banking and Finance (63%)
- Transportation (50%)
- Manufacturing (50%)
- Government and Administration (50%)
- Agriculture (38%)
- Food and Beverage (25%)
Please note that freelancers can work across multiple industries, so percentages overlap.
About the technology
Identity platform
Keycloak is an open-source identity and access management platform for securing web applications, APIs, mobile services and internal tools. It provides single sign-on, user federation, role-based access and central account management without requiring every application to implement authentication separately.
Authentication flows
Keycloak supports standard protocols such as OpenID Connect, OAuth 2.0 and SAML. Strong specialists configure realms, clients, scopes, roles, groups and identity providers, then shape login, logout, consent, password recovery and multi-factor authentication flows around business requirements.
Ecosystem and tooling
Keycloak runs across containerized and cloud environments and connects with common enterprise directories and identity providers. Relevant expertise often includes:
- OpenID Connect, OAuth 2.0 and SAML integration
- LDAP and Active Directory federation
- Custom themes, user storage providers and authentication extensions
- Kubernetes deployment, ingress, secrets and observability
- Token validation and API gateway integration
Delivery situations
Companies bring in freelance Keycloak expertise when authentication must be added to a new product, consolidated across applications or migrated from a legacy identity service. Specialists also help with realm design, tenant separation, directory integration, custom login experiences and production hardening. In Stuttgart, this can support industrial, mobility, software and public-sector teams working across local and remote delivery setups.
Project signals
A company may need focused expertise when access rules differ across applications, teams cannot agree on token claims, or a rollout exposes gaps in account lifecycle management. Other signs include unreliable federation, duplicated login logic, unclear ownership of realms or a planned move to containerized infrastructure.
- Existing authentication is spread across several services
- External identity providers must be connected safely
- Teams need repeatable environments and deployment processes
- Audits require clearer access control and user provisioning
Strong specialists
The best professionals combine Keycloak configuration with software integration, security analysis and operational discipline. They can explain protocol choices, document realm and client settings, test token behavior, protect administrative access and make upgrades predictable. They also distinguish a quick proof of concept from an identity service ready for sustained production use.
Frequently asked questions
Questions about Keycloak? Start with the answers below.
Keycloak centralizes authentication and authorization for applications, APIs and services. Companies use it for single sign-on, identity federation, role and group management, social login, multi-factor authentication and account administration.
Keycloak gives teams control over deployment, configuration and data, while Auth0, Okta and Microsoft Entra ID are primarily managed services. The right choice depends on hosting requirements, directory integration, operational capacity, compliance needs and the desired balance between control and administration.
A strong Keycloak specialist usually understands OpenID Connect, OAuth 2.0, SAML, LDAP, Active Directory and API security. Experience with Java, custom providers, reverse proxies, Kubernetes, CI/CD and observability is also valuable when the identity service must run reliably in production.
Keycloak work is rarely limited to installing the server. A small integration may need protocol and client configuration, while a migration or multi-tenant rollout calls for experience with realm design, directory federation, token claims, upgrades and operational recovery.
Keycloak projects often work well remotely because configuration, testing and documentation can be handled through shared repositories and environments. On-site collaboration in Stuttgart can still help during architecture workshops, security reviews or coordination with infrastructure and product teams; agree on language and meeting needs early.
Ask a Keycloak specialist to describe a comparable identity flow and the decisions behind its realm, client, role and token design. Review their approach to secrets, federation, logging, backup, testing, upgrades and failure scenarios rather than judging expertise from a basic installation alone.
Keycloak is a strong fit when several applications need consistent login, shared policies or connections to existing identity sources. Centralization reduces duplicated authentication logic, but teams still need to plan service availability, governance and careful separation between applications and tenants.
A Keycloak freelancer can deliver an identity architecture, realm and client configuration, federation setup, custom themes or providers, deployment manifests, integration code and security documentation. They may also provide migration plans, automated tests, runbooks and knowledge transfer for the internal team.
The average hourly rate of freelancers in Stuttgart, Germany who have used Keycloak in their recent projects is 99 €, which corresponds to a daily rate of about 795 € based on an 8-hour working day.
Of the freelancers in Stuttgart, Germany who have used Keycloak in their recent projects, 100% hold at least a Bachelor's degree and 33% hold at least a Master's degree.
On average, freelancers in Stuttgart, Germany who have used Keycloak in their recent projects have 16 years of professional experience, with a single engagement typically lasting around 1.9 years.
The most common languages among freelancers in Stuttgart, Germany who have used Keycloak in their recent projects are German (100%), English (100%), and Spanish (38%).
The most common industries among freelancers in Stuttgart, Germany who have used Keycloak in their recent projects are Automotive (88%), Information Technology (88%), and Banking and Finance (63%).
The most common business areas among freelancers in Stuttgart, Germany who have used Keycloak in their recent projects are Information Technology (100%), Product Development (100%), and Operations (63%).
Main locations of FRATCH Experts, who have recently used Keycloak
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Hamburg
Munich
Cologne
Frankfurt
Dusseldorf