Senior Architect
1 week ago
About Position:
We are hiring for Senior Architect in IAM (Keycloak & Microsoft Entra ID) with hands on experience in IAM, 3+ in Keycloak, 3+ in Entra ID)
- Role: Senior Architect IAM (Keycloak & Microsoft Entra ID)
- Location: All Persistent Locations
- Experience: 12 to 16 Years
- Job Type: Full Time Employment
What You'll Do:
- Must to have: IAM Architecture (SAML, OIDC, OAuth2, SCIM, MFA, Conditional Access) Keycloak realm design, custom providers (SPI), themes, LDAP/AD, clustering, HA Microsoft Entra ID app registrations, External ID (B2C), IEF/custom policies, Graph API Identity governance & lifecycle (joinermoverleaver), JustInTime & SCIM provisioning Cloud security patterns, Zero Trust, secrets, certificates, Terraform/GitOps, Kubernetes
- Nice-to-have: Azure, Kubernetes/containers, CI/CD, SOC2/ISO 27001/NIST experience, PAM Detailed Job Description Role: Senior Architect Identity & Access Management (Keycloak & Microsoft Entra ID) About the Role We are seeking a seasoned IAM Architect to own the strategy, architecture, and delivery of our identity platform spanning Keycloak and Microsoft Entra ID. You'll define reference architectures, lead solution design for SSO/federation, govern access and lifecycle, and partner with product, security, and platform teams to deliver a secure, scalable, developerfriendly identity fabric.
- Architecture & Strategy Define and evolve the enterprise identity reference architecture (workforce, B2B, B2C).
- Establish standards for SSO, federation, token lifecycles, secrets, certificates, and Zero Trust enforcement.
- Create roadmaps for modernization (onprem cloud/hybrid), legacy deprecation, and consolidation.
- Keycloak Ownership Design realms, clients, roles, groups, and fine-grained authorization models. Implement custom Service Provider Interfaces (SPIs), authentication flows, and identity brokering.
- Build themes/branding for B2C; integrate LDAP/AD; configure JDBC storage, session policies, and crossrealm flows.
- Productionize Keycloak: clustering, HA, backup/DR, observability (Prometheus/Grafana), performance tuning. Automate realm/client configuration via Terraform/Helm; manage GitOps pipelines.
- Microsoft Entra ID (Azure AD) Architect app registrations, enterprise apps, Conditional Access, MFA, Identity Protection. Lead External ID (formerly B2C) designs using custom policies (IEF), user journeys, social logins, and OIDC/OAuth2 flows.
- Implement SCIM and JIT provisioning; manage entitlement models with groups/roles and access packages (if using Entra ID Governance).
- Integrate with workloads using MSAL, Graph API, and Managed Identities. Identity Governance & Lifecycle Design joinermoverleaver processes, RBAC/ABAC, SoD controls, and periodic access reviews.
- Define target operating model for identity operations, auditability, and evidence collection.
- Security & Compliance Apply best practices aligned to NIST, ISO 27001, CIS, SOC2, and data protection obligations.
- Drive threat modeling for identity flows (phishing-resistant MFA, replay protection, token hardening).
- Delivery & Leadership Lead solutioning, estimations, and architecture governance; create HLD/LLD, sequence diagrams, and decision records.
- Mentor engineers; collaborate with app teams to onboard apps to Keycloak/Entra ID using OIDC/SAML patterns. Manage vendor/partner engagements and cost optimization for identity platforms.
Expertise You'll Bring:
- 12+ years of overall experience, with 5+ years dedicated to IAM architecture/engineering.
- 3+ years hands-on with Keycloak in production (including recent Quarkus versions).
- 3+ years with Microsoft Entra ID (Azure AD), including Conditional Access/MFA and External ID (B2C).
- Expert in OIDC, OAuth2, SAML 2.0, SCIM, token handling (JWT, refresh token lifecycles), and PKCE.
- Experience with hybrid identity (onprem AD, Azure AD Connect/Cloud Sync) and identity federation.
- Strong with Terraform, Kubernetes/Containers, CI/CD, GitOps, REST/Graph APIs.
- Proven track record producing HLD/LLD, architecture decision records (ADRs), and reference implementations.
- Preferred / Nice to Have Azure: Azure AD Domain Services, Key Vault, Azure Monitor, Application Gateway/WAF, API Management.
- PAM (e.g., CyberArk), secrets management, certificate automation (ACME, EST).
- Performance tuning of auth services; cache strategies (e.g., Infinispan), sticky sessions, session replication. Knowledge of WebAuthn/FIDO2, device trust, and phishing-resistant MFA.
- Regulatory experience: PCI DSS, SOX, HIPAA, GDPR (customize per industry).
- Tools & Technologies IAM: Keycloak (Quarkus), Microsoft Entra ID (Azure AD), Entra External ID, Entra ID Governance Standards: OIDC, OAuth2, SAML, SCIM, JWT/JWS/JWE, WebAuthn/FIDO2 Integration: MSAL, Microsoft Graph API, Keycloak Admin API Infra/DevOps: Terraform, Helm, Kubernetes, Docker, GitHub/GitLab, Azure DevOps, ArgoCD Observability: Prometheus, Grafana, ELK/EFK, Azure Monitor, App Insights
- Education & Certifications Bachelor's/Master's in Computer Science, Information Security, or equivalent experience.
- Nice to have: Microsoft Identity & Access Administrator (SC-300), Azure Solutions Architect (AZ305), CISSP/CCSP, Okta/Forgerock (for comparative architecture).
Benefits:
- Competitive salary and benefits package
- Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications
- Opportunity to work with cutting-edge technologies
- Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards
- Annual health check-ups
- Insurance coverage: group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents
Values-Driven, People-Centric & Inclusive Work Environment:
Persistent Ltd. is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds.
- We support hybrid work and flexible hours to fit diverse lifestyles.
- Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities.
- If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment
Let's unleash your full potential at Persistent -
"Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind."
-
Senior Architect
1 week ago
Pune, Maharashtra, India R3 Consultant Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description: Senior Architect Position: Senior Architect Location: Camp, Pune Experience: Min. 6 Years Department: Architecture & Design Reports To: Head of DesignPosition Overview:We are seeking a highly skilled and experienced Senior Architect to join our dynamic team. The ideal candidate will have minimum 6 years of professional experience in...
-
Senior Data Architect
1 week ago
Pune, Maharashtra, India Crazy Solutions Full time ₹ 12,00,000 - ₹ 24,00,000 per yearSenior Data Architect / EngineerRole :Senior Data Engineer/Architect Location: Chennai / Pune Company: Sunware Technologies Private Limited Position Overview: We are hiring an experienced Senior Data Engineer/Architect with 7-10 years of expertise in data modeling, big data tools, database management, and cryptography. The role involves designing scalable...
-
Senior Architect
2 weeks ago
Pune, Maharashtra, India Barrage Consulting Full time ₹ 12,00,000 - ₹ 36,00,000 per yearHello,We have an urgent opening for Senior Architect (Product Management)Experience - 12+ YearsLocation - PuneKey ResponsibilitiesWork for a modern and business driven enterprise architecture across Scania and the brands within Traton group - Develop enterprise architecture strategies and targets that align with business objectives - Collaborate with...
-
Senior Solution Architect
2 days ago
Pune, Maharashtra, India Thermax Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description : Senior Solution Architect Data.Role OverviewExperienced Senior Solution Architect Data to lead the design and governance of enterprise-wide data platforms and analytics solutions.Lead design and optimization of the data ecosystem for a large engineering enterprise with a diverse application landscape that includes multiple ERPs (Baan,...
-
Senior Architect
1 week ago
Pune, Maharashtra, India Asmadiya Technologies Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description – Senior ArchitectLocation:Pune/LucknowExperience:8+ yearsRole Type:Full-timeAbout the RoleWe are seeking a highly skilled Senior Architectto lead the design and development of enterprise-scale solutions. This role requires deep expertise insystem architecture, database design, AWS Cloud infrastructure, and AI/ML integration. You will...
-
Senior Solutions Architect
6 days ago
Pune, Maharashtra, India Thermax Limited Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description: Senior Solution Architect – DataRole OverviewExperiencedSenior Solution Architect – Datato lead the design and governance of enterprise-wide data platforms and analytics solutions. Lead design and optimization of the data ecosystem for a large engineering enterprise with a diverse application landscape that includes multiple ERPs (Baan,...
-
Senior Process Architect
6 days ago
Pune, Maharashtra, India Barclays Full time ₹ 20,00,000 - ₹ 25,00,000 per yearStep into the role of Senior Process Architect - Technology Standards Governance. At Barclays, we are more than a Bank, we are force of progress. As a Senior Process Architect - Technology Standards Governance you will collaborate with technology teams to optimise and improve the IT service management processes involved in the delivery and support of...
-
Senior Solution Architect
1 week ago
Pune, Maharashtra, India Cortex Consultants Full time ₹ 15,00,000 - ₹ 30,00,000 per yearSolution Architect Exp-15+ Location-Multiple Immediate to 15days Skill-data gov,colibra,architect Overview: The Senior Solution Architect - Data Governance Experience-Collibra plays a critical role in shaping our organization's data governance framework. This position requires an individual who has extensive experience with Collibra and a strong...
-
Senior Technical Architect
2 weeks ago
Pune, Maharashtra, India Synechron Full time ₹ 19,20,00,000 - ₹ 38,40,00,000 per yearJob Title: Senior Technical Architect AWS Service Cloud Voice (SVC)Rate: USD 38/hourDuration: 480 hours (Contract)Experience Required: 10+ yearsLocation: Remote / FlexibleJob Summary:We are looking for a highly experienced Senior Technical Architect with deep hands-on expertise in Amazon Connect, Amazon Lex, and AWS Lambda, to design and implement scalable...
-
Senior Cloud Architect
2 weeks ago
Pune, Maharashtra, India Persistent Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout Position:We are seeking an experienced Senior Cloud Architect to lead our Cloud Centre of Excellence (COE) team. The ideal candidate will be a hands-on multi-cloud expert (AWS, GCP, Azure) with proven experience in architecting enterprise-grade solutions, driving cloud security practices, enabling DevOps, AIOps, and MLOps, and guiding cost optimization...