Hi Alano, thanks for responding.
We currently have a hybrid web app (Ionic) which allows our customers to login via email (Dex IDP) to the iOS App and Web App. These customers have their own "tenants" by means of AuthZ via Keto. We take advantage of Oathkeeper for API requests to determine permission via Keto.
In addition, we also have internal services at different subdomains where we login via Microsoft Active Directory (Dex IDP).
Our customers currently reside in the US, but there is potential to expand internationally in the coming years.
While we still run kubernetes it would be interesting to prevent having to manage more within kubernetes. We have slimmed down our team and of course that reduces the level of knowledge the team has in certain areas.