21.07.2025 aktualisiert


Premiumkunde
nicht verfügbarSoftware-Architekt, Entwickler für Identitäts- und Zugriffsmanagement (IAM)
Frankfurt am Main, Deutschland
Deutschland +2
Master in Software-EngineeringSkills
Single Sign-On (SSO)FederationIdentity and Access Management (IAM)Identity Governance and Administration (IGA)Privileged Access Management (PAM)zero trustUnified IdentityRole-Based Access Control (RBAC)Software-ArchitektIdentity and Access Governance (IAG)
PROGRAMMIER-/SCRIPTSPRACHEN
Java, C#, C, C++, Shell bash, JavaScript, Groovy, PowerShell
METHODEN/MODELLIERUNG
Scrum, OOA, OOD, OOP, UML, BPMN, Domain Driven Design (DDD), Secure Software Development Lifecycle (SSDL), Secure Test Driven Development (STDD), Test Driven Development (TDD), (Enterprise) Design Patterns
TOOLS
Eclipse, IntelliJ, Xcode, Confluence, JIRA, Visual Studio, Visual Studio Code, MS Office, MS Visio
DEVOPS/DEVSECOPS
Git, Maven, Gradle, Artifactory, CI/CD, Jenkins, Docker, Kubernetes, Google Kubernetes Engine (GKE), GKE multi-cluster Services (MCS), Multi Cluster Ingress, HashiCorp (Terraform, Vault), Red Hat OpenShift, GitHub, Azure DevOps
CLOUD
Google Cloud Platform (GCP), Amazon Web Services (AWS), Microsoft Azure
PLATTFORMEN/SERVER
Microsoft Entra ID, Azure AD B2C, ForgeRock Identity Platform, Red Hat Single Sign-On (Keycloak), IdentityServer, Apache DS, IIS, Apache (mit ModSecurity), F5 BIG-IP, AD Federation Server (ADFS), MS-Certificate Authority, MS-Remote Desktop, Citrix XenDesktop und XenApp, VMware vSphere
DATENBANKEN
Oracle Database, MariaDB, SQL Server, Virtuoso, GraphDB
FRAMEWORKS
Jakarta EE (JEE), Red Hat JBoss Enterprise Application Platform (JBoss EAP), Quarkus, WildFly, Spring, .NET Core (cross-platform), ASP.NET Core, ASP.NET Core Middleware, ASP.NET Core MVC, Entity Framework (EF) Core, Angular, .NET Framework and ASP.NET, STL, MFC, ATL, Windows Platform SDK, Windows Driver Kit (WDK), Windows Identity Foundation (WIF), Windows Communication Foundation (WCF), Windows Presentation Foundation (WPF), VMware vSphere Management SDK, VMware Remote Console (VMRC) SDK, NHibernate, Autofac, ASP.NET Zero, ASP.NET Boilerplate, dotNetRDF, Identity Experience Framework (IEF)
TECHNOLOGIEN
Identity and Access Management (IAM), Identity and Access Governance (IAG), Privileged Access Management (PAM), Unified Identity, Identity Governance and Administration (IGA), System for Cross-domain Identity Management (SCIM 2), Role-Based Access Control (RBAC), Principle of Least Privilege (POLP), Zero Trust, Application and API Security, (Web) Single-Sign-On (SSO), Identity Federation (Brokering), Single- / Multi-factor authentication, Transaction Signing, Security Assertion Markup Language (SAML 2.0), OpenID Connect, OAuth 2.0, WS-Security (WS-Trust, WS-Federation), WebAuthn, Fast Identity Online (FIDO) 2.0, Windows Hello for Business, Authentication mechanisms (Password, HOTP, TOTP, Push, Certificates, Smartcards, Passkeys…), Kerberos, Kerberos Protocol Transition, Kerberos Constrained Delegation, RADIUS, Claims-based Identity, Electronic Identity (eID), Virtualization, Containerization, Serverless Application Development, Microservices, Service mash, Service Oriented Architecture (SOA), Client/Server Architecture, Single Page Application (SPA), Web Services (SOAP and REST), Penetration Test, Win32 Services, COM, Credential Providers und Filters, Apache Modules, Local Security Authority (LSA), Security Support Provider Interface (SSPI), Crypto Service Providers (CSP), (Contactless) Smartcards, MS-Certificate Authority Extensions, x509 Certificates, Cryptography (AES, RSA, …), RDP, RemoteFX, ICA, HDX, RDP and ICA virtual channels, Remote Desktop Services, Terminal Services, Virtual Machines, Virtual Desktop Infrastructure, VMware Remote Console (VMRC) Protocol, DMZ, SSL, (SSL-)VPN, Reverse Proxies, Web Application Firewall, Cloud Computing, LDAP, Active Directory, Azure AD, Public Key Infrastructures (PKI), Windows Deployment Services (WDS) Server API, Windows Filtering Platform (WFP), Messaging Application Programming Interface (MAPI), Keycloak Service Provider Interfaces (SPI), Resource Description Framework (RDF), SPARQL, TripleStore (Graph DB), Directed-Acyclic-Word-Graph (DAWG), Protocol Buffers
BETRIEBSYSTEME
Linux (RedHat, CentOS), Unix, Windows (Desktop, Server, Embedded)
Java, C#, C, C++, Shell bash, JavaScript, Groovy, PowerShell
METHODEN/MODELLIERUNG
Scrum, OOA, OOD, OOP, UML, BPMN, Domain Driven Design (DDD), Secure Software Development Lifecycle (SSDL), Secure Test Driven Development (STDD), Test Driven Development (TDD), (Enterprise) Design Patterns
TOOLS
Eclipse, IntelliJ, Xcode, Confluence, JIRA, Visual Studio, Visual Studio Code, MS Office, MS Visio
DEVOPS/DEVSECOPS
Git, Maven, Gradle, Artifactory, CI/CD, Jenkins, Docker, Kubernetes, Google Kubernetes Engine (GKE), GKE multi-cluster Services (MCS), Multi Cluster Ingress, HashiCorp (Terraform, Vault), Red Hat OpenShift, GitHub, Azure DevOps
CLOUD
Google Cloud Platform (GCP), Amazon Web Services (AWS), Microsoft Azure
PLATTFORMEN/SERVER
Microsoft Entra ID, Azure AD B2C, ForgeRock Identity Platform, Red Hat Single Sign-On (Keycloak), IdentityServer, Apache DS, IIS, Apache (mit ModSecurity), F5 BIG-IP, AD Federation Server (ADFS), MS-Certificate Authority, MS-Remote Desktop, Citrix XenDesktop und XenApp, VMware vSphere
DATENBANKEN
Oracle Database, MariaDB, SQL Server, Virtuoso, GraphDB
FRAMEWORKS
Jakarta EE (JEE), Red Hat JBoss Enterprise Application Platform (JBoss EAP), Quarkus, WildFly, Spring, .NET Core (cross-platform), ASP.NET Core, ASP.NET Core Middleware, ASP.NET Core MVC, Entity Framework (EF) Core, Angular, .NET Framework and ASP.NET, STL, MFC, ATL, Windows Platform SDK, Windows Driver Kit (WDK), Windows Identity Foundation (WIF), Windows Communication Foundation (WCF), Windows Presentation Foundation (WPF), VMware vSphere Management SDK, VMware Remote Console (VMRC) SDK, NHibernate, Autofac, ASP.NET Zero, ASP.NET Boilerplate, dotNetRDF, Identity Experience Framework (IEF)
TECHNOLOGIEN
Identity and Access Management (IAM), Identity and Access Governance (IAG), Privileged Access Management (PAM), Unified Identity, Identity Governance and Administration (IGA), System for Cross-domain Identity Management (SCIM 2), Role-Based Access Control (RBAC), Principle of Least Privilege (POLP), Zero Trust, Application and API Security, (Web) Single-Sign-On (SSO), Identity Federation (Brokering), Single- / Multi-factor authentication, Transaction Signing, Security Assertion Markup Language (SAML 2.0), OpenID Connect, OAuth 2.0, WS-Security (WS-Trust, WS-Federation), WebAuthn, Fast Identity Online (FIDO) 2.0, Windows Hello for Business, Authentication mechanisms (Password, HOTP, TOTP, Push, Certificates, Smartcards, Passkeys…), Kerberos, Kerberos Protocol Transition, Kerberos Constrained Delegation, RADIUS, Claims-based Identity, Electronic Identity (eID), Virtualization, Containerization, Serverless Application Development, Microservices, Service mash, Service Oriented Architecture (SOA), Client/Server Architecture, Single Page Application (SPA), Web Services (SOAP and REST), Penetration Test, Win32 Services, COM, Credential Providers und Filters, Apache Modules, Local Security Authority (LSA), Security Support Provider Interface (SSPI), Crypto Service Providers (CSP), (Contactless) Smartcards, MS-Certificate Authority Extensions, x509 Certificates, Cryptography (AES, RSA, …), RDP, RemoteFX, ICA, HDX, RDP and ICA virtual channels, Remote Desktop Services, Terminal Services, Virtual Machines, Virtual Desktop Infrastructure, VMware Remote Console (VMRC) Protocol, DMZ, SSL, (SSL-)VPN, Reverse Proxies, Web Application Firewall, Cloud Computing, LDAP, Active Directory, Azure AD, Public Key Infrastructures (PKI), Windows Deployment Services (WDS) Server API, Windows Filtering Platform (WFP), Messaging Application Programming Interface (MAPI), Keycloak Service Provider Interfaces (SPI), Resource Description Framework (RDF), SPARQL, TripleStore (Graph DB), Directed-Acyclic-Word-Graph (DAWG), Protocol Buffers
BETRIEBSYSTEME
Linux (RedHat, CentOS), Unix, Windows (Desktop, Server, Embedded)
Sprachen
DeutschverhandlungssicherEnglischgut
Projekthistorie
Design and implementation of Keycloak based access management solutions.
Maintenance, design and implementation of Red Hat SSO (Keycloak) extensions (via Service Provider
Interfaces (SPI)).
Interfaces (SPI)).
Design und Implementierung des neuen Customer Identity and Access Management (CIAM) Dienstes für labors.at (basiert auf Keycloak). Design und Implementierung des gesamten Authentifizierungsablaufes mit 2-Faktor-Authentifizierung mit verschiedenen Authentifizierungsmechanismen (TOPT, SMS, WebAuthn (FIDO2), ID Austria (eIDAS), …).
Bewertungen

exali Berufshaftpflicht-Siegel
Das original exali Berufshaftpflicht-Siegel bestätigt dem Auftraggeber, dass die betreffende Person oder Firma eine aktuell gültige branchenspezifische Berufs- bzw. Betriebshaftpflichtversicherung abgeschlossen hat.
Versichert bis: 01.04.2026