Senior IAM Engineer
Location: Minneapolis, Minnesota
Country: United States
Category: Infrastructure & Helpdesk
Workplace Location: Remote
Employment Type: Contract
Posted Date: September 11, 2026
Job ID: 651907
Job Description
Senior IAM Engineer
Remote
Contract Position (6 months, initially)
Pay rate: $65-$70/hour (depending on experience)
The Planet Group has partnered with Midwest based company to locate an experienced Identity & Access Management Engineer to support and enhance a large-scale Microsoft identity environment spanning both traditional on-premises infrastructure and Azure cloud services.
This position will have hands-on responsibility for the technologies that control how users authenticate and access enterprise systems, with particular emphasis on Active Directory, Microsoft Entra ID, Conditional Access, and PowerShell automation.
The ideal candidate has strong experience in both sides of a hybrid Microsoft environment: someone who understands the underlying mechanics of Active Directory while also being comfortable implementing modern cloud identity and security capabilities within Entra ID.
What You'll Be Doing
- Engineer, administer, and support Microsoft identity services across on-premises and cloud environments.
- Maintain Active Directory infrastructure, including domain controllers, DNS, replication, Sites and Services, and related directory components.
- Create and manage Group Policy to support security, configuration, and operational requirements.
- Administer Microsoft Entra ID and support identity lifecycle, access, governance, and security functions.
- Design and maintain Conditional Access policies that balance security requirements with business and application needs.
- Develop PowerShell scripts and automation to streamline identity administration, reporting, compliance, and repetitive operational tasks.
- Support synchronization and integration between on-premises Active Directory and Microsoft Entra ID.
- Implement and maintain modern authentication capabilities, including Single Sign-On and Multi-Factor Authentication.
- Diagnose complex authentication, authorization, synchronization, and directory-related issues.
- Monitor the health, availability, and security of enterprise identity services.
- Partner with cybersecurity and infrastructure teams on identity security initiatives and access controls.
- Participate in incident investigation, root-cause analysis, remediation, and ongoing platform improvements.
- Maintain technical documentation covering configurations, processes, standards, and operational procedures.
- Strong hands-on experience administering enterprise Active Directory environments.
- Experience supporting domain controllers, DNS integration, AD Sites and Services, and replication.
- Strong knowledge of Group Policy administration and troubleshooting.
- Significant hands-on experience with Microsoft Entra ID.
- Demonstrated experience creating and administering Conditional Access policies.
- Advanced PowerShell scripting and automation skills.
- Experience supporting hybrid Microsoft identity environments.
- Experience working within Microsoft Azure and Microsoft 365 environments.
- Strong understanding of authentication, authorization, identity security, and access-management principles.
- Ability to troubleshoot complex identity and directory issues across interconnected on-premises and cloud systems.
- Microsoft Entra Connect or Cloud Sync
- Privileged Identity Management (PIM)
- Microsoft Intune
- Multi-Factor Authentication implementations
- Single Sign-On integrations
- SAML, OAuth 2.0, and OpenID Connect
- Identity governance and privileged-access controls
- Enterprise security or Zero Trust initiatives
#LI-SC1
#REMOTE
#TECH
EEO Statement
The staffing industry has seen an increase in people falsely representing themselves as recruiters to gather personal information from job seekers. For your safety, do not provide sensitive data to anyone you have not spoken with thoroughly, never provide banking information during the application process, and always double check the email address of the Recruiter to ensure it’s from an official Planet domain (@theplanetgroup.com or @launchcg.com) - and not a domain with an alternative extension like .net, .org, or .jobs.
The Planet Group and our companies are equal opportunity employers. It is our practice not to discriminate against any employee or applicant based on any criteria, condition or basis protected by laws or regulations in the locations where we do business. All qualified applicants are encouraged to apply. We celebrate diversity and are committed to providing an environment of mutual respect. We believe that diversity, equity, and inclusion enable us to better meet our mission and values while serving our clients across the globe. If you have a disability or handicap and would like us to accommodate you in any reasonable way, please inform your recruiter, or contact us, so that we can discuss the appropriate alternatives available.
Apply Now
Apply Via
Stay Up To Date With The Latest Jobs.
Similar Jobs
About The Planet Group
The Planet Group is a global professional services firm delivering strategic staffing and advisory solutions. We operate at the intersection of talent and transformation – connecting the right people with the right opportunities in the areas of technology, engineering, accounting & finance, digital marketing, and manufacturing.
As one of the largest staffing companies in the US, we operate with a global reach and a performance-first mindset. We partner with clients to move fast, stay agile, and drive measurable results – building high-impact teams that fuel transformation and growth.