Skip to main content
M

ModMed

IAM Engineer (Keycloak)

Hyderabad, India6-12 yrsPosted 5 days ago

Skills

KubernetesAzureMicroservicesCI/CDDevOpsDockerJavaSpringREST APICommunicationB2B SaaS

Job description

Join the Team Modernizing Medicine

At ModMed , we’re not just building software—we’re reimagining the healthcare experience. Founded in 2010 by a practicing physician and a successful tech entrepreneur, we took a radically different approach: we hired doctors and taught them how to code. This "for doctors, by doctors" philosophy has allowed us to create an AI-enabled, specialty-specific cloud platform that places patients at the center of care.

A Culture of Excellence

When you join ModMed, you’re joining an award-winning team recognized for innovation and employee satisfaction. From our global headquarters in Boca Raton Florida, and extensive employee base in Hyderabad India, we are a team of 4,500+ passionate problem-solvers on a mission to increase medical practice success and improve patient outcomes:

Consistently ranked as a Top Place to Work

2025 Globee Business Awards: Gold Globee for “Technology Team of the Year”

2025 Black Book Awards: Ranked #1 EHR in 11 Specialties

Florida Venture Forum: Venture-Backed Company of the Year

We are growing fast, thinking big, and we are just getting started.

Ready to modernize medicine with us?

Job Description Summary:

Job Summary

We are looking for an experienced Identity and Access Management (IAM) Engineer with strong expertise in Red Hat SSO / Keycloak to design, implement, and support secure authentication and authorization solutions in enterprise environments.The ideal candidate will have hands-on experience implementing Keycloak in production environments, integrating with enterprise identity providers, and deploying IAM solutions within containerized platforms such as OpenShift/Kubernetes.This role involves building secure authentication architecture aligned with modern OAuth2 / OpenID Connect standards, supporting single sign-on (SSO) across applications, and ensuring compliance with enterprise security standards in banking-grade environments.

Job Responsibilities

AM Architecture & Implementation

Design and implement IAM solutions using Red Hat SSO / Keycloak in enterprise environments.

Build secure authentication architectures supporting enterprise applications.

Implement Single Sign-On (SSO) across multiple internal and external applications.

Configure realms, clients, roles, policies, and identity providers in Keycloak.

Identity Federation & Integrations

Implement Identity Federation with enterprise identity providers such as:

Microsoft Azure Active Directory

LDAP / Active Directory

SAML-based identity providers

Integrate Keycloak with enterprise systems including:

API Gateways

Microservices platforms

External SaaS applications

Authentication Protocols

Implement authentication and authorization using:

OAuth2

OpenID Connect (OIDC)

SAML 2.0

Develop secure token-based authentication flows for microservices and APIs.

Container & Platform Integration

Deploy and manage Keycloak/Red Hat SSO in containerized environments such as:

Red Hat OpenShift

Kubernetes

Manage high availability, scaling, and performance tuning of IAM components.

Security & Compliance

Ensure IAM solutions meet enterprise security standards , especially within banking or regulated environments .

Implement secure authentication flows including:

MFA

Conditional access

Role-based access control (RBAC)

Support security audits and compliance initiatives.

Development & Automation

Develop custom Keycloak extensions, providers, and themes when required.

Automate IAM deployments using CI/CD pipelines.

Support infrastructure-as-code and DevOps practices.

Job Qualifications

Core IAM Skills

6-12 years of relevant experience

Strong hands-on experience with Keycloak or Red Hat Single Sign-On

Experience implementing IAM solutions in production environments

Deep understanding of:

OAuth2

OpenID Connect (OIDC)

SAML 2.0

Integration Experience

Identity Federation with:

Azure Active Directory

LDAP / Active Directory

Experience integrating IAM with API gateways and microservices platforms

Container & Cloud Platforms

Hands-on experience with:

Red Hat OpenShift

Docker

Kubernetes

Development Skills

Java or Spring Boot development (for Keycloak extensions)

REST API integration

Experience with CI/CD pipelines

Preferred Qualifications

Knowledge of Zero Trust architecture

Experience implementing Multi-Factor Authentication (MFA)

Familiarity with API security frameworks

Experience with monitoring tools (Prometheus, Grafana)

Red Hat certification related to OpenShift or security

Certified IAM / security certifications (CISSP, CISM, etc.)

Kubernetes certifications

ModMed Benefits Highlight: At ModMed, we believe it’s important to offer a competitive benefits package designed to meet the diverse needs of our growing workforce. Eligible Modernizers can enroll in a wide range of benefits:

Meals & Snacks: Enjoy complimentary office lunches & dinners on select days and healthy snacks delivered to your desk,

Insurance Coverage: Comprehensive health, accidental, and life insurance plans, including coverage for family members, all at no cost to employees,

Allowances: Annual wellness allowance to support your well-being and productivity,

Earned, casual, and sick leaves to maintain a healthy work-life balance,

Bereavement leave for difficult times and extended medical leave options,

Paid parental leaves, including maternity, paternity, adoption, surrogacy, and abortion leave,

Celebration leave to make your special day even more memorable, and company-paid holidays to recharge and unwind.

PHISHING SCAM WARNING: ModMed is among several companies recently made aware of a phishing scam involving imposters posing as hiring managers recruiting via email, text and social media. The imposters are creating misleading email accounts, conducting remote "interviews," and making fake job offers in order to collect personal and financial information from unsuspecting individuals. Please be aware that no job offers will be made from ModMed without a formal interview process, and valid communications from our hiring team will come from our employees with a ModMed email address (first.lastname@modmed.com). Please check senders’ email addresses carefully. Additionally, ModMed will not ask you to purchase equipment or supplies as part of your onboarding process. If you are receiving communications as described above, please report them to the FTC website .

ModMed Technologies India Private Limited follows a strict, merit-based and transparent recruitment process conducted only through official and authorized channels.

We do not:

Charge any fees, processing charges, or amount by any nomenclature, whether as a fee or deposit at any stage of the recruitment process;

Authorise any individual, employee, or third party to collect any such payments (regardless of nomenclature) to offer or facilitate or recruitment opportunities; or

Conduct hiring via informal messaging apps or personal email IDs.

All official communication is made only through verified channels, our website, and recognised recruitment platforms.

We strongly advise candidates not to share personal/financial information or make any payments in response to suspicious communications. Any such instances may be reported to us at hrcompliance@modmed.com .

ModMed Technologies India Private Limited will not be responsible for any loss arising from fraudulent or unauthorised communications.

Apply on ModMed