Single Sign-On Experts in Munich
in minutes from over 15,000 CVs with the power of AI.Hire experts who set up SSO flows, connect identity providers, and harden access across web apps and internal tools. They work with SAML, OpenID Connect, and common identity stacks to deliver fast, precise matching with vetted, available freelancers.
Meet FRATCH Experts in Munich, who have recently used Single Sign-On
Thies Schneider
Last position:
Spatial UX Lead at govar
- Concept, interaction and UX for XR experiences for the automotive industry
- Optimizing XR experiences
- Building experiences with AI
Thomas Hoefkens
Last position:
Senior MLOps, DevOps Engineer at Trianel Energy
- Build and operate an end-to-end MLOps platform on Azure ML and Kubernetes (Kubeflow) for the automated deployment, monitoring, and scaling of forecasting models (including Temporal Fusion Transformer, Informer, Autoformer).
- Implement CI/CD pipelines in Azure DevOps for the full ML lifecycle – from resource provisioning (Terraform), data transformation (Hugging Face Datasets, Pandas, PyTorch, CUDA cluster) through training and evaluation to model registry and endpoint deployment.
- Integrate MLflow for experiment tracking, model versioning, performance monitoring, and automated registration in the Azure Model Registry.
- Develop and containerize PyTorch training jobs (Azure Notebook, Jupyter Notebooks) for price and time series forecasting (PFC models) with automatic rollout via Azure ML Endpoints and REST/gRPC interfaces, Docker containerization, secured with OAuth 2.0.
- Set up monitoring and alerting mechanisms (Prometheus, MLflow Metrics), log centralization, and cost monitoring.
- Automate infrastructure provisioning and model deployment using Terraform, Helm, and Azure CLI; connect to existing market data systems and event pipelines.
- Migrate existing workloads and databases (IONOS → Azure, MongoDB) with integration into central MLOps workflows and internal networks.
- Extend the platform with LLM-based tools (LangChain, LangServe) to integrate GPT-based analysis modules into existing Spring Boot services for market anomaly detection and automated reports.
- Analyze and architect a software solution to process large volumes of data efficiently (>3000 messages/sec.) (market data store).
- Spring Boot / Java 21 container development with RabbitMQ for distributing stock market data via MongoDB (Kubernetes) with fast storage of data in Redis RMaps, deduplication, forwarding messages to Read Model queues, and building Read Models for UI display in MongoDB.
- Integration of RESTHeart to create a REST API for MongoDB.
- Build an Angular frontend to simplify data queries and master data maintenance.
- Agentic coding with remote and local LLMs (Claude Sonnet, Ollama Qwen) and MCP servers.
- Develop Python scripts for transforming and cleaning incoming stock market data (Pandas, scikit-learn).
Omar Ashour
Last position:
Senior Fullstack AI Engineer (Team Lead – B2C Platform) at mama health
- Partner directly with C-level leadership (CEO, CAIO, CTO) on architecture, OKR strategy, and cross-team roadmap prioritization, translating strategic goals into structured engineering requirements.
- Surfaced and mapped technical debt across the entire organization with C-level leadership and co-defined a prioritized remediation strategy, balancing debt paydown against feature delivery.
- Led code reviews and technical standards across the team, fostering a mentor-first environment with two-way feedback dialogue — pairing on complex pipeline work and unblocking junior engineers on async architecture patterns.
- Re-architected the AI companion's core processing pipeline from synchronous to asynchronous with a queue-based worker architecture, enabling horizontal scalability and cutting upload processing time ~4x (from ~22s to 5–10s) while improving response accuracy.
- Designed an AI-driven document intelligence workflow with automatic multi-document classification, per-document summarization, and relevance guardrails for the patient care journey.
- Built a unified patient memory system (short- and long-term context) bridging the document vault and chatbot into a single bidirectional, context-aware platform.
Serge Kalinin
Last position:
MLOps (machine learning operations) at REWE Digital GmbH
- It is like a startup within REWE, where we have to build a new forecasting system on Google Cloud Platform from the scratch. Although, officially my role is called MLOps, my actual tasks also include development of data processing pipelines (data engineering) and data scientists tasks such as feature engineering and model trainings.
- GCP: Terraform (tofu), Vertex AI (Kubeflow), Cloud Run, IAM, Google Cloud Storage, BigQuery, Artifact Registry
- Data engineering: Snowflake as the main data warehouse, Terraform, DBT for data model implementations
- CI/CD: GitLab. We have built a CI/CD pipeline that automates deployments of new releases up to production environment
Enis Spahi
Last position:
Software Developer at 50Hertz Transmission GmbH
- Participated in the gradual modernization of components into cloud-native 12-factor applications.
- Worked closely with the business operations team to eliminate manual processes and resolve several performance bottlenecks.
- Designed and implemented a CI/CD pipeline to increase developer productivity, enforce quality and security checks, and automate product delivery.
- Migrated several components into the OpenShift Kubernetes cluster.
- Built a monitoring stack from scratch with Prometheus and Grafana to monitor services running in OpenShift.
- Developed dashboards in both Grafana and Splunk for operational transparency.
- Implemented an OIDC/OAuth2-based single sign-on (SSO) solution with Keycloak to secure multiple applications.
- Technologies: Java, Spring, Quarkus, Kafka, MySQL, Cassandra, Redis, Spring Data, Hibernate, Docker, Kubernetes, OpenShift, Keycloak, OIDC, OAuth2, Helm, Prometheus, Grafana, Splunk, Spark.
György Kelemen
Last position:
Senior Fullstack Developer at Rockstardevelopers GmbH
- Development of a test system
- Establishment of the architecture using Scala/Java for the backend and Swing for the frontend
- Setup of CI/CD pipelines with Jenkins for continuous integration, including automated builds
- Participation in the Scrum team, including daily stand-ups, sprint planning, and retrospectives
- Technology environment: Scala, Swing, EJB, JPA, Scrum, PostgreSQL, Mercurial
Patrick Upmann
Last position:
Interim Management | Consulting & Implementation | Data Deletion in SAP at BSR (Berliner Stadtreinigung)
- Topics: Business Analysis, Data Privacy, Data Management, Stakeholder Management, Conceptualization
- This project focuses on developing and implementing a strategic approach for data deletion in SAP systems. The goal is to identify the relevant data and structures during system migration to ensure both data privacy and IT system efficiency. At the same time, downtime should be minimized and regulatory requirements met.
- Development of a comprehensive approach for data deletion in SAP systems, considering data privacy and business requirements.
- Ensuring efficient and structured data transfer to the new system.
- Optimizing system efficiency and reducing downtimes during migration.
- Creating functional and technical concepts to ensure compliant and sustainable data management.
- Topic preparation: Detailed study of the "data deletion" area to lay the foundation for a structured data migration.
- Definition of project structure: Setting roles, interfaces and the project's organizational structure.
- Regulatory requirements: Analysis of data privacy regulations and business requirements to define deletion criteria.
- Approach: Developing possible scenarios and methods for data cleansing and deletion.
- Deletion concepts: Creating functional and technical deletion concepts that structure the implementation and provide clear guidelines.
- Setting deletion criteria: Defining which data and structures to delete or transfer.
- Responsibilities: Clarifying responsibilities within the project team and among stakeholders.
- Analysis of ongoing activities: Identifying and collecting existing activities in the "data deletion" area.
- Effort, cost and timeline planning: Creating estimates for resources, effort and budget.
- Implementation initiatives: Developing and executing concrete measures to apply the defined deletion strategies.
- IT system efficiency: Analyzing the existing IT infrastructure to identify optimization potential for data deletion and transfer.
- Technology trends: Evaluating new technologies and tools that can support the data cleansing process.
- Cost-benefit analysis: Assessing the financial impact of data cleansing and the introduction of new solution approaches.
- Risk management: Identifying potential risks during implementation and developing appropriate mitigation measures.
- This project lays the foundation for a sustainable and compliant data transfer to a new SAP system. With a clear approach to data deletion, it meets data privacy requirements, reduces downtimes and increases the efficiency of the new system. The results and recommendations will help companies develop a future-proof data strategy that meets legal and business needs.
Bhanu Avula
Last position:
Freelance Salesforce CRM and Marketing Cloud Expert at Arkplus
- Engage with stakeholders across departments to identify and document business needs, goals, and objectives.
- Conduct interviews, workshops, and surveys to gather comprehensive requirements for Salesforce solutions.
- Configure Salesforce products such as Sales Cloud, Service Cloud, Marketing Cloud, Health Cloud, and Data Cloud to align with the company's requirements.
- Analyze existing business processes and identify opportunities for improvement and automation within the Salesforce platform.
- Build campaigns, automation and journeys, data management, API and integrations, scripting and customization, analytics and reporting, introduction of generative AI capabilities.
- Develop custom applications using Apex, Visualforce, and Lightning Components; create and customize Salesforce objects, workflows, validation rules, and triggers; implement custom user interfaces using Lightning Web Components (LWC).
- Develop training materials and conduct training sessions to ensure effective user adoption of Salesforce solutions.
- Provide ongoing support to end-users, addressing issues and ensuring they are proficient in using Salesforce tools.
- Create and execute test plans, including unit testing, integration testing, and user acceptance testing (UAT).
- Identify and resolve issues, ensuring that Salesforce solutions meet business requirements and quality standards.
- Design and implement customized reports and dashboards to provide actionable insights and support data-driven decision-making and product delivery.
Keith Howe
Last position:
Senior Technical Business Analyst / Requirements Engineer / Product Owner at Deutsche Post E-Post Solutions
- SBAM (Sendungsbasiert Auftragsmanagement System) is the core component responsible for splitting customer deliveries into individual letters based on contractual agreements (OLA/SLA).
- Transformation from proprietary host-based AS/400 applications to a modern stack using Java, PostgreSQL, Apache Kafka, MinIO S3, Red Hat OpenShift, Keycloak SSO, Salesforce and Angular Material GUI.
- Application design, solution architecture, use case specification and OLA/SLA concept for end customers.
- Conduct solution architecture/design and requirements engineering (elicitation, documentation, validation, negotiation and ongoing management) in Confluence, including UML/BPMN process models.
- Development and analysis according to Scrum using Jira and Confluence.
- Design user journeys and UI experience; wireframing with Balsamiq and Figma.
- Document requirements as user stories and epics in Jira; create stakeholder and technical design documents.
- Participate in end-to-end solution design, architecture and event-driven messaging design.
- Perform process modelling (UML/BPMN with Draw.io), application internal architecture design and ERM/SERM data modelling.
- Lead sprint planning, story refinement, estimation, retrospective and review meetings; deliver C-level management presentations on OLA/SLA and order management.
Dmitry Varlamov
Last position:
Fullstack Software Developer at Mercedes-Benz Tech Innovation
- Backend development of the cloud-based microservice
- Frontend development of the microfrontend
- Migration of the cloud backend environment
- Rollout of the distributed high-availability Privacy Data Service
- Technologies: Java, Kotlin, Spring Boot, REST Services, Kubernetes, Microsoft Azure, Cloud Security, OpenAPI, Postman, JavaScript, Vue.js, AngularJS, TypeScript, Micro Frontend, Redis, Kibana, Grafana, CI/CD, GitHub Actions, Jenkins, Helm Charts, Sec-Hub, Black Duck, Docker, Maven, Git, Scrum
Sisco Schultis
Last position:
Director Data Strategy at ProSiebenSat.1 Digital Data GmbH
- Strategic and operational responsibility for group-wide data management in the area of Customer Identity & Access Management (CIAM).
- Business owner of the group-wide CIAM solution 7Pass and the netID SSO standard.
- Established and managed data governance structures and data processes.
- Defined and implemented policies for data quality, data security, and data usage.
- Planned, executed, and led a comprehensive organizational and process restructuring, including due diligence, tenders, and migration to the group's platforms (streaming, e-commerce, publishing).
- Successfully achieved ISO-27001 certification for the entire division.
- Led an interdisciplinary team and managed multiple external service providers.
- Responsible for B2B account management, contract negotiations, and partner management.
Philipp Schmidt
Last position:
MS365 Consultant/Solution Architect at Self-employed
- Setup and configuration of an M365 tenant on a hybrid basis
- SSO integration of the existing app infrastructure like Metamost, Huhu, etc.
- License consulting, Entra ID initial configuration, MFA, Conditional Access, Privileged Identity Management
- Intune: initial configuration, Windows 11 Autopilot, iPhone AES
- Takeover of the tenant and preparation of a security audit
- Rollout of iPhones with AES (formerly DEP) as COPE (Corporate Owned, Business Enabled)
- Connecting external customers with enhanced security through Conditional Access
- Consulting on cloud-first strategy and migration to a cloud-only business
- Connecting various apps via SSO/SCIM (e.g. Atlassian, Personio, Adobe)
- On-premises AD: security audit and project management for replacing the local AD (migration of file servers, Navision2016, user clients joined to Entra ID)
- Copilot rollout with connection to external data sources and configuration via Intune
- Support for TISAX and ISO27001 preparation
- Setup and hardening of Entra ID, switching MFA to phishing resistant via Conditional Access
- Intune management for Windows and Apple clients, web enrollment switch to AES, introduction of Autopilot, app management, integration of Microsoft Defender
- Building a device baseline for Windows (COBO) and iOS/Android (BYOD)
- Teams/SharePoint Online: access concepts and integration into Teams
- Maintenance and backup of Entra ID and Intune tenants (drift management)
- M365 backup with Veeam
- Extending Conditional Access policies, introduction of Privileged Identity Management with hardware tokens and an on-premises admin tier concept
- Revision of existing GPOs regarding structure, security, and compliance
- Security audit and hardening of on-premises Active Directory and cloud tenant, SAML VPN, PIM introduction
- Support for the HR department in introducing a booking portal and general system engineering administration & security
- Introduction of Conditional Access and passwordless MFA, platform SSO, Defender for macOS/iOS, macOS compliance with Intune, Code2 signature configuration
Konstantinos Metaxas
Last position:
IT System Engineer at Client belongs to critical infrastructure
- IT infrastructure services
- IT services, networks, Exchange, Office 365 & 2016
- IT documentation
- Collaboration with external partner & managed provider
- Stakeholder management
Discover over 15,000 top freelancers
Statistics of experts using Single Sign-On
Aggregated from the professional profiles of matched freelancers.
Experience
18 years (Germany: 19 years)
Position duration
2.1 years (Germany: 2.3 years)
Positions per freelancer
9 (Germany: 13)
Top business areas
Information Technology, Product Development, Project Management
Top industries
Information Technology, Automotive, Manufacturing
Certification focus areas
Information Technology, Product Development, Project Management
Bachelor's degree or higher
90% (Germany: 85%)
Master's degree or higher
60% (Germany: 40%)
Doctorate
30% (Germany: 10%)
Certifications per freelancer
3
Most common languages
German, English, Russian
Speak two or more languages
92% (Germany: 95%)
Based on our profile pool as of 30 Aug 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Munich are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Munich using Single Sign-On
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 30 Aug 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
About the technology
What it covers
Single Sign-On lets users access several systems with one authenticated login. It is common in SaaS, internal portals, and partner access flows where identity needs to stay consistent across tools. Strong specialists make login simpler without weakening access control.
Typical stacks
- SAML 2.0 for enterprise login flows
- OpenID Connect and OAuth 2.0 for modern web apps
- Azure AD, Okta, Keycloak, and other identity providers
- MFA, conditional access, session handling, and token lifecycles
When companies need help
Teams bring in freelance expertise when they roll out a new identity provider, replace a legacy login setup, or unify access across several products. In Munich, that often comes up in software, mobility, industrial, and finance environments where users move between many systems. It is also useful when security teams and product teams need one shared access model.
What strong specialists do
Good professionals think beyond login screens. They map user roles, permissions, and failure cases, then align them with business rules and security needs. They also document the flow clearly so support teams can handle access issues without guesswork.
Signs you need expertise
- Users manage multiple passwords for related systems
- SSO works for one app but fails in others
- Identity providers, claims, or attributes are mapped inconsistently
- Security reviews flag weak session or access handling
- Migration from a legacy login setup is blocked by edge cases
Delivery and collaboration
Single Sign-On work often touches security, backend, and product teams at the same time. Freelance specialists can join remotely for design, configuration, testing, and rollout support, or work on-site in Munich when workshops and stakeholder alignment are needed. Clear logs, test accounts, and realistic user journeys help them move quickly.
Frequently asked questions
The facts hiring teams ask for most often when it comes to Single Sign-On.
Single Sign-On lets a user authenticate once and access multiple applications without repeated logins. Companies use it to simplify access, reduce password fatigue, and centralize control over identity and session policies. It is especially useful when several internal tools or customer portals must share the same login.
Single Sign-On is the access experience, while SAML and OpenID Connect are common standards used to implement it. SAML is still common in enterprise environments, especially with older or heavily governed systems, while OpenID Connect is widely used for modern web apps and APIs. A good specialist knows when to use each and how they connect to your identity provider.
A strong Single Sign-On specialist usually understands identity providers, token handling, session management, and access policies. Experience with Azure AD, Okta, Keycloak, LDAP, and directory sync is often valuable. They should also be comfortable reading logs, tracing authentication failures, and working with security teams.
A Single Sign-On project can be simple or highly sensitive depending on the number of apps, user groups, and security rules involved. Small integrations may need focused support, while migrations, federation setups, or multi-app access models benefit from a specialist who has handled edge cases before. The more systems and stakeholders involved, the more valuable deep experience becomes.
Bring in Single Sign-On help when login is becoming a support burden, when security reviews ask for stronger controls, or when a migration is blocking delivery. Freelance experts are also useful for short, focused work such as design reviews, implementation support, testing, or recovery after a failed rollout. That is often faster than training an internal team from scratch.
Yes, most Single Sign-On work can be done remotely because it centers on configuration, integration, and testing. On-site time in Munich helps when access policies affect many departments, when there are workshops with security and product leads, or when legacy systems need hands-on coordination. Many teams use a mix of both.
Look for clear examples of Single Sign-On implementations across more than one identity setup, not just one login screen. Strong professionals explain tradeoffs, document claims and role mapping, and can describe how they tested failure paths such as expired sessions, bad attributes, or broken federation. They should also be able to talk about security implications in plain language.
The biggest risks in Single Sign-On are broken access paths, incorrect attribute mapping, and overcomplicated session rules. If those are not tested carefully, users may lose access or gain the wrong permissions. A careful specialist plans for rollback, logs key events, and validates the full user journey before release.
The average hourly rate of freelancers in Munich, Germany who have used Single Sign-On in their recent projects is 104 €, which corresponds to a daily rate of about 832 € based on an 8-hour working day.
Of the freelancers in Munich, Germany who have used Single Sign-On in their recent projects, 90% hold at least a Bachelor's degree, 60% hold at least a Master's degree, and 30% hold a doctorate.
On average, freelancers in Munich, Germany who have used Single Sign-On in their recent projects have 18 years of professional experience, with a single engagement typically lasting around 2.1 years.
The most common languages among freelancers in Munich, Germany who have used Single Sign-On in their recent projects are German (92%), English (92%), and Russian (23%).
The most common industries among freelancers in Munich, Germany who have used Single Sign-On in their recent projects are Information Technology (100%), Automotive (38%), and Manufacturing (38%).
The most common business areas among freelancers in Munich, Germany who have used Single Sign-On in their recent projects are Information Technology (100%), Product Development (77%), and Project Management (77%).
Main locations of FRATCH Experts, who have recently used Single Sign-On
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Hamburg
Cologne
Frankfurt