Senior Architect
2 days ago
About Position:
We are hiring for Senior Architect in IAM (Keycloak & Microsoft Entra ID) with hands on experience in IAM, 3+ in Keycloak, 3+ in Entra ID).
- Role: Senior Architect
- Location: All Persistent Locations
- Experience: 12-16 Years
- Job Type: Full Time Employment
What You'll Do:
- Must to have: IAM Architecture (SAML, OIDC, OAuth2, SCIM, MFA, Conditional Access) Keycloak realm design, custom providers (SPI), themes, LDAP/AD, clustering, HA Microsoft Entra ID app registrations, External ID (B2C), IEF/custom policies, Graph API Identity governance & lifecycle (joiner–mover–leaver), JustInTime & SCIM provisioning Cloud security patterns, Zero Trust, secrets, certificates, Terraform/GitOps, Kubernetes
- Nice-to-have: Azure, Kubernetes/containers, CI/CD, SOC2/ISO 27001/NIST experience, PAM Detailed Job Description Role: Senior Architect – Identity & Access Management (Keycloak & Microsoft Entra ID) About the Role We are seeking a seasoned IAM Architect to own the strategy, architecture, and delivery of our identity platform spanning Keycloak and Microsoft Entra ID. You'll define reference architectures, lead solution design for SSO/federation, govern access and lifecycle, and partner with product, security, and platform teams to deliver a secure, scalable, developerfriendly identity fabric.
- Architecture & Strategy Define and evolve the enterprise identity reference architecture (workforce, B2B, B2C).
- Establish standards for SSO, federation, token lifecycles, secrets, certificates, and Zero Trust enforcement.
- Create roadmaps for modernization (onprem cloud/hybrid), legacy deprecation, and consolidation.
- Keycloak Ownership Design realms, clients, roles, groups, and fine-grained authorization models. Implement custom Service Provider Interfaces (SPIs), authentication flows, and identity brokering.
- Build themes/branding for B2C; integrate LDAP/AD; configure JDBC storage, session policies, and crossrealm flows.
- Productionize Keycloak: clustering, HA, backup/DR, observability (Prometheus/Grafana), performance tuning. Automate realm/client configuration via Terraform/Helm; manage GitOps pipelines.
- Microsoft Entra ID (Azure AD) Architect app registrations, enterprise apps, Conditional Access, MFA, Identity Protection. Lead External ID (formerly B2C) designs using custom policies (IEF), user journeys, social logins, and OIDC/OAuth2 flows.
- Implement SCIM and JIT provisioning; manage entitlement models with groups/roles and access packages (if using Entra ID Governance).
- Integrate with workloads using MSAL, Graph API, and Managed Identities. Identity Governance & Lifecycle Design joiner–mover–leaver processes, RBAC/ABAC, SoD controls, and periodic access reviews.
- Define target operating model for identity operations, auditability, and evidence collection.
- Security & Compliance Apply best practices aligned to NIST, ISO 27001, CIS, SOC2, and data protection obligations.
- Drive threat modeling for identity flows (phishing-resistant MFA, replay protection, token hardening).
- Delivery & Leadership Lead solutioning, estimations, and architecture governance; create HLD/LLD, sequence diagrams, and decision records.
- Mentor engineers; collaborate with app teams to onboard apps to Keycloak/Entra ID using OIDC/SAML patterns. Manage vendor/partner engagements and cost optimization for identity platforms.
Expertise You'll Bring:
- 12+ years of overall experience, with 5+ years dedicated to IAM architecture/engineering.
- 3+ years hands-on with Keycloak in production (including recent Quarkus versions).
- 3+ years with Microsoft Entra ID (Azure AD), including Conditional Access/MFA and External ID (B2C).
- Expert in OIDC, OAuth2, SAML 2.0, SCIM, token handling (JWT, refresh token lifecycles), and PKCE.
- Experience with hybrid identity (onprem AD, Azure AD Connect/Cloud Sync) and identity federation.
- Strong with Terraform, Kubernetes/Containers, CI/CD, GitOps, REST/Graph APIs.
- Proven track record producing HLD/LLD, architecture decision records (ADRs), and reference implementations.
- Preferred / Nice to Have Azure: Azure AD Domain Services, Key Vault, Azure Monitor, Application Gateway/WAF, API Management.
- PAM (e.g., CyberArk), secrets management, certificate automation (ACME, EST).
- Performance tuning of auth services; cache strategies (e.g., Infinispan), sticky sessions, session replication. Knowledge of WebAuthn/FIDO2, device trust, and phishing-resistant MFA.
- Regulatory experience: PCI DSS, SOX, HIPAA, GDPR (customize per industry).
- Tools & Technologies IAM: Keycloak (Quarkus), Microsoft Entra ID (Azure AD), Entra External ID, Entra ID Governance Standards: OIDC, OAuth2, SAML, SCIM, JWT/JWS/JWE, WebAuthn/FIDO2 Integration: MSAL, Microsoft Graph API, Keycloak Admin API Infra/DevOps: Terraform, Helm, Kubernetes, Docker, GitHub/GitLab, Azure DevOps, ArgoCD Observability: Prometheus, Grafana, ELK/EFK, Azure Monitor, App Insights
- Education & Certifications Bachelor's/Master's in Computer Science, Information Security, or equivalent experience.
- Nice to have: Microsoft Identity & Access Administrator (SC-300), Azure Solutions Architect (AZ305), CISSP/CCSP, Okta/Forgerock (for comparative architecture).
Benefits:
- Competitive salary and benefits package
- Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications
- Opportunity to work with cutting-edge technologies
- Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards
- Annual health check-ups
- Insurance coverage: group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents
Values-Driven, People-Centric & Inclusive Work Environment:
Persistent Ltd. is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds.
- We support hybrid work and flexible hours to fit diverse lifestyles.
- Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities.
- If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment
Let’s unleash your full potential at Persistent - persistent.com/careers
“Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind.”
-
Senior Network Architect
2 weeks ago
Gandhinagar, Gujarat, India beBeeNetwork Full time ₹ 2,00,00,000 - ₹ 2,50,00,000Job Title: Senior Network ArchitectWe are seeking a senior network architect to spearhead the development of high-speed communication protocols. This role involves designing and implementing cutting-edge solutions for clients.Key Responsibilities:Developing IP blocks for Ethernet, PON, OTN technologiesCoding RTL designs and streamlining industry-standard...
-
Junior Architect
3 hours ago
Gandhinagar, Gujarat, India Prodigy Placement LLP Full time ₹ 2,16,000 - ₹ 2,64,000 per yearPosition: Junior Architect / Interior DesignerExperience: 6 months- 1 yearIndustry: Interior DesignerLocation: Kudasan, GandhinagarJob Summary:We are seeking a passionate and detail-oriented Junior Architect or Interior Designer to join our team in Kudasan, Gandhinagar. The ideal candidate should have 6 months to 1 year of hands-on experience in the interior...
-
Senior WordPress Solutions Architect
2 weeks ago
Gandhinagar, Gujarat, India beBeeDeveloper Full time ₹ 10,00,000 - ₹ 20,00,000Job Title: Senior WordPress Solutions ArchitectWe are seeking a seasoned professional to lead the design, development, and delivery of high-performance WordPress solutions.About This Role:Lead and manage end-to-end WordPress development projects, ensuring scalable and secure solutions.Architect and implement custom themes, plugins, and integrations tailored...
-
Senior Financial Systems Architect
2 weeks ago
Gandhinagar, Gujarat, India beBeeCloud Full time ₹ 1,50,00,000 - ₹ 2,00,00,000The Position OverviewWe are seeking an experienced Senior Financial Systems Architect to design and develop Oracle Financial Consolidation and Close Cloud (FCCS) solutions.This is a key role in our organization that will work closely with technical experts to implement technologies within our Enterprise Performance Management (EPM) system. As a Senior...
-
Senior Data Solutions Architect
2 weeks ago
Gandhinagar, Gujarat, India beBeeMachineLearning Full time US$ 1,50,000 - US$ 2,00,000Unlock Your Career Potential as a Senior Data ScientistJob OverviewThis is an exceptional opportunity to join our organization as a Senior Data Scientist, working closely with enterprise customers and leading the development of innovative machine learning solutions.Key Responsibilities:Client Engagement: Foster strong relationships with customers through...
-
Senior Building Designer
2 weeks ago
Gandhinagar, Gujarat, India beBeeArchitecture Full time ₹ 4,00,000 - ₹ 16,00,000Job Role: Senior Building DesignerWe are seeking a highly skilled and innovative architect to join our team of international design experts.This opportunity will offer the chance to work on large-scale, integrated building projects across various sectors while collaborating with global teams and specialist consultants.The ideal candidate will be a...
-
Transformative Data Architect
2 weeks ago
Gandhinagar, Gujarat, India beBeeData Full time ₹ 15,00,000 - ₹ 25,00,000Senior Data EngineerCraft robust data pipelines to inform business decisions, utilizing skills in ETL tools, SQL, data modeling, and cloud platforms. Work collaboratively with architects, analysts, and stakeholders to deliver impactful solutions.Develop and refine intricate ETL pipelines for processing high data volumes.Evaluate data precision, coherence,...
-
Senior Cleanroom Design Architect
2 weeks ago
Gandhinagar, Gujarat, India beBeeManufacturing Full time ₹ 2,00,00,000 - ₹ 2,50,00,000Job Title: Manufacturing Facilities ArchitectOverview: As a manufacturing facilities architect, you will lead the design of various cleanroom facilities for the semiconductor, pharma, life sciences, and automotive industries. Your focus will be on developing architectural designs from concept to detail.You must have a minimum of 15 years of professional...
-
Expert SAP Solutions Architect Lead
2 weeks ago
Gandhinagar, Gujarat, India beBeeSolutions Full time ₹ 1,50,00,000 - ₹ 2,00,00,000SAP Solutions Architect LeadAt this senior leadership position, you will oversee SAP implementations from start to finish. This includes leading project teams and ensuring timely delivery of results that meet client expectations.Key Responsibilities:Design and implement comprehensive SAP S/4HANA solutions for clients across various industries.Facilitate...
-
Cloud Native Solution Architect with GenAI
4 days ago
Gandhinagar, India Patch the Skill Full timeJob DescriptionThis is a part-time opportunity We are looking for a Senior Solution Architect to deliver technical training on Enterprise Architecture, Cloud (AWS & Azure), DevOps, Containerization, and Cloud Migration. Experience in designing training content and leading virtual sessions is essential. Should have exposure to Generative AI (GenAI) and its...