Talent.com
This job offer is not available in your country.
Senior architect

Senior architect

Persistent SystemsPune, Maharashtra, India
1 day ago
Job description

About Position :

We are hiring for Senior Architect in IAM (Keycloak & Microsoft Entra ID) with hands on experience in IAM, 3+ in Keycloak, 3+ in Entra ID).

Role : Senior Architect

Location : All Persistent Locations

Experience : 12-16 Years

Job Type : Full Time Employment

What You'll Do :

Must to have : IAM Architecture (SAML, OIDC, OAuth2, SCIM, MFA, Conditional Access) Keycloak realm design, custom providers (SPI), themes, LDAP / AD, clustering, HA Microsoft Entra ID app registrations, External ID (B2 C), IEF / custom policies, Graph API Identity governance & lifecycle (joiner–mover–leaver), Just In Time & SCIM provisioning Cloud security patterns, Zero Trust, secrets, certificates, Terraform / Git Ops, Kubernetes

Nice-to-have : Azure, Kubernetes / containers, CI / CD, SOC2 / ISO 27001 / NIST experience, PAM Detailed Job Description Role : Senior Architect – Identity & Access Management (Keycloak & Microsoft Entra ID) About the Role We are seeking a seasoned IAM Architect to own the strategy, architecture, and delivery of our identity platform spanning Keycloak and Microsoft Entra ID. You'll define reference architectures, lead solution design for SSO / federation, govern access and lifecycle, and partner with product, security, and platform teams to deliver a secure, scalable, developerfriendly identity fabric.

Architecture & Strategy Define and evolve the enterprise identity reference architecture (workforce, B2 B, B2 C).

Establish standards for SSO, federation, token lifecycles, secrets, certificates, and Zero Trust enforcement.

Create roadmaps for modernization (onprem cloud / hybrid), legacy deprecation, and consolidation.

Keycloak Ownership Design realms, clients, roles, groups, and fine-grained authorization models. Implement custom Service Provider Interfaces (SPIs), authentication flows, and identity brokering.

Build themes / branding for B2 C; integrate LDAP / AD; configure JDBC storage, session policies, and crossrealm flows.

Productionize Keycloak : clustering, HA, backup / DR, observability (Prometheus / Grafana), performance tuning. Automate realm / client configuration via Terraform / Helm; manage Git Ops pipelines.

Microsoft Entra ID (Azure AD) Architect app registrations, enterprise apps, Conditional Access, MFA, Identity Protection. Lead External ID (formerly B2 C) designs using custom policies (IEF), user journeys, social logins, and OIDC / OAuth2 flows.

Implement SCIM and JIT provisioning; manage entitlement models with groups / roles and access packages (if using Entra ID Governance).

Integrate with workloads using MSAL, Graph API, and Managed Identities. Identity Governance & Lifecycle Design joiner–mover–leaver processes, RBAC / ABAC, So D controls, and periodic access reviews.

Define target operating model for identity operations, auditability, and evidence collection.

Security & Compliance Apply best practices aligned to NIST, ISO 27001, CIS, SOC2, and data protection obligations.

Drive threat modeling for identity flows (phishing-resistant MFA, replay protection, token hardening).

Delivery & Leadership Lead solutioning, estimations, and architecture governance; create HLD / LLD, sequence diagrams, and decision records.

Mentor engineers; collaborate with app teams to onboard apps to Keycloak / Entra ID using OIDC / SAML patterns. Manage vendor / partner engagements and cost optimization for identity platforms.

Expertise You'll Bring :

12+ years of overall experience, with 5+ years dedicated to IAM architecture / engineering.

3+ years hands-on with Keycloak in production (including recent Quarkus versions).

3+ years with Microsoft Entra ID (Azure AD), including Conditional Access / MFA and External ID (B2 C).

Expert in OIDC, OAuth2, SAML 2.0, SCIM, token handling (JWT, refresh token lifecycles), and PKCE.

Experience with hybrid identity (onprem AD, Azure AD Connect / Cloud Sync) and identity federation.

Strong with Terraform, Kubernetes / Containers, CI / CD, Git Ops, REST / Graph APIs.

Proven track record producing HLD / LLD, architecture decision records (ADRs), and reference implementations.

Preferred / Nice to Have Azure : Azure AD Domain Services, Key Vault, Azure Monitor, Application Gateway / WAF, API Management.

PAM (e.g., Cyber Ark), secrets management, certificate automation (ACME, EST).

Performance tuning of auth services; cache strategies (e.g., Infinispan), sticky sessions, session replication. Knowledge of Web Authn / FIDO2, device trust, and phishing-resistant MFA.

Regulatory experience : PCI DSS, SOX, HIPAA, GDPR (customize per industry).

Tools & Technologies IAM : Keycloak (Quarkus), Microsoft Entra ID (Azure AD), Entra External ID, Entra ID Governance Standards : OIDC, OAuth2, SAML, SCIM, JWT / JWS / JWE, Web Authn / FIDO2 Integration : MSAL, Microsoft Graph API, Keycloak Admin API Infra / Dev Ops : Terraform, Helm, Kubernetes, Docker, Git Hub / Git Lab, Azure Dev Ops, Argo CD Observability : Prometheus, Grafana, ELK / EFK, Azure Monitor, App Insights

Education & Certifications Bachelor's / Master's in Computer Science, Information Security, or equivalent experience.

Nice to have : Microsoft Identity & Access Administrator (SC-300), Azure Solutions Architect (AZ305), CISSP / CCSP, Okta / Forgerock (for comparative architecture).

Benefits :

Competitive salary and benefits package

Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications

Opportunity to work with cutting-edge technologies

Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards

Annual health check-ups

Insurance coverage : group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents

Values-Driven, People-Centric & Inclusive Work Environment :

Persistent Ltd. is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds.

We support hybrid work and flexible hours to fit diverse lifestyles.

Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities.

If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment

Let’s unleash your full potential at Persistent - persistent.com / careers

“Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind.”

Create a job alert for this search

Senior Architect • Pune, Maharashtra, India

Related jobs
  • Promoted
Maximo Architect

Maximo Architect

Talentiserpune, maharashtra, in
We are seeking a highly skilled IBM Maximo Architect to lead the integration of IBM Maximo with our iMaintenance SaaS platform. The role involves architecting, designing, and implementing secure and...Show moreLast updated: 3 days ago
  • Promoted
GenAI Architect

GenAI Architect

Trantorpune, maharashtra, in
Minimum Qualifications / Skills : .Bachelor’s or Master’s degree in computer science, AI, Machine Learning, Data Science, or a. AI / ML, particularly with generative AI models.Strong expertise in develo...Show moreLast updated: 17 days ago
  • Promoted
Senior solution architect

Senior solution architect

ConfidentialPune
Technical Architecture & Strategy.Architect and govern enterprise-grade mobile device management (MDM) solutions using Intune and Workspace ONE for Android, iOS, and macOS platforms.Lead lifecycle ...Show moreLast updated: 19 days ago
  • Promoted
Senior Architect

Senior Architect

Design LyricPune, Maharashtra, India
Design Lyric is a leading Architecture and Design firm specializing in innovative and sustainable solutions for residential, commercial, and landscape projects. Founded in 2005, we are a Redmond-bas...Show moreLast updated: 16 days ago
  • Promoted
Architect

Architect

HCLSoftwarepune, maharashtra, in
HCL Discover (formerly IBM Tealeaf) Implementation Architect.As an IBM Tealeaf or HCL Discover Implementation Architect and Specialist, you'll be the bridge between a client's business needs and th...Show moreLast updated: 3 days ago
  • Promoted
Senior Landscape Architect / Lead Landscape Architect

Senior Landscape Architect / Lead Landscape Architect

DarPune, Maharashtra, India
Dar Landscape is dedicated to providing the opportunity to create sustainable, resilient landscapes that tackle climate change's issues, rebuilding ecosystems, and promote sustainable living.Being ...Show moreLast updated: 30+ days ago
  • Promoted
Architect

Architect

DarPune, Maharashtra, India
Dar, the founding member of the Sidara group, is an international multidisciplinary consulting organization specializing in engineering, architecture, planning, environment, project management, fac...Show moreLast updated: 30+ days ago
  • Promoted
Presales Solutions Architect

Presales Solutions Architect

Tata Consultancy ServicesPune, Maharashtra, India
TCS is hiring for SIAM Architect, please find the below JD.Experience range – 10 to 15 years.Skills Required - Presales, Service Management / SIAM, RFP, RFI, RFQ, Service Management Solution.Servic...Show moreLast updated: 8 days ago
  • Promoted
Senior / Lead / Principal Architect

Senior / Lead / Principal Architect

ConfidentialPune
Senior / Lead / Technical / Principal Architect .This role requires someone who can balance .The ideal candidate brings extra experience with . ASPICE, ISO 26262, and tools such as Polyspace, QAC, LDRA, o...Show moreLast updated: 19 days ago
  • Promoted
Senior Enterprise architect with Generative AI / Sr Solution Architect / Application Architect -Part Time Trainer Role

Senior Enterprise architect with Generative AI / Sr Solution Architect / Application Architect -Part Time Trainer Role

Patch the SkillPune, IN
We are looking for a Senior Solution Architect to deliver technical training on Enterprise Architecture, Cloud (AWS & Azure), DevOps, Containerization, and Cloud Migration.Experience in designing t...Show moreLast updated: 5 days ago
  • Promoted
Naval Architect

Naval Architect

TEKsystemsPune, Maharashtra, India
Business Analyst or Product Specialist.Design Firm or experience in plan review.Design, Engineering, Classification Society exposure. Graduate degree in Naval Architecture, Marine Engineering, or a ...Show moreLast updated: 1 day ago
  • Promoted
Senior Architect

Senior Architect

ConfidentialPune
Hands-on experience as Data Migration Architect with PLM Enterprise Systems, mainly Windchill and Thingworx.Has strong experience as a Solution Architect as well for Windchill and Thingworx applica...Show moreLast updated: 30+ days ago
  • Promoted
Lead Solutions Architect

Lead Solutions Architect

Searce IncPune, Maharashtra, India
Lead Solution Architect - Modern Product Engineering.We designed the Job Description for this role like we design our solutions : Smart, Visual & Outcome-focused : . Click here for Searce happier JD.We...Show moreLast updated: 9 days ago
  • Promoted
JP Morgan Chase - Senior Lead - Architect

JP Morgan Chase - Senior Lead - Architect

JP Morgan ChasePune, India
If you are excited about shaping the future of technology and driving significant business impact in financial services, we are looking for people just like you. Join our team and help us develop ga...Show moreLast updated: 1 day ago
  • Promoted
Architect

Architect

Milestone Technologies, Inc.pune, maharashtra, in
AI solutions spanning multi-agent orchestration, knowledge-graph reasoning, retrieval-augmented generation (RAG), and evaluation at scale. You will define model strategy, reasoning patterns, data in...Show moreLast updated: 3 days ago
  • Promoted
Senior Solution Architect

Senior Solution Architect

ConfidentialPune, India
Senior Solution Architect – Data.Lead design andoptimisation of the data ecosystem for a large engineering enterprise with adiverse application landscape that includes multiple ERPs (Baan, Oracle, ...Show moreLast updated: 19 days ago
  • Promoted
Senior Enterprise Solution Architect

Senior Enterprise Solution Architect

ConfidentialPune
About Us (Ensono) : Ensono is an expert technology adviser and managed service provider.As a relentless ally, we accelerate clients digital transformation to achieve business outcomes that stand to ...Show moreLast updated: 16 days ago
  • Promoted
Senior Architect

Senior Architect

Persistent SystemsPune, Maharashtra, India
We are hiring for Senior Architect in IAM (Keycloak & Microsoft Entra ID) with hands on experience in IAM, 3+ in Keycloak, 3+ in Entra ID). Location : All Persistent Locations.Job Type : Full Time Emp...Show moreLast updated: 13 days ago