Demo

Sr. Identity Access Management (IAM) & AI Governance Security Engineer

On-Demand Group
Duluth, MN Full Time
POSTED ON 4/24/2026
AVAILABLE BEFORE 5/23/2026

Job Summary

This role is responsible for the development and operation of a hybrid identity infrastructure (Microsoft Entra ID and Active Directory) and the security governance of enterprise AI tools. You will configure authentication, access policies, and data protection standards to ensure AI applications (such as Microsoft Copilot and custom LLMs) are accessed securely and interact only with authorized data.


Key Responsibilities

Identity Infrastructure & Access Control

  • Manage and maintain Microsoft Entra ID (Azure AD) and on-premise Active Directory, including connect health, schema extensions, and trust relationships
  • Develop auditing and reporting capabilities for business partners and stakeholders
  • Design and enforce Conditional Access policies targeting high-risk sign-ins and restricting access based on device compliance and user location
  • Configure Single Sign-On (SSO), Enterprise Applications, and SAML/OIDC integrations with strict authentication standards for third-party AI tools and SaaS platforms

AI Security Governance & Data Protection

  • Implement entitlement management and access reviews to control user and group access to generative AI tools (e.g., Microsoft Copilot, ChatGPT Enterprise)
  • Secure and govern non-human identities, including Service Principals, Managed Identities, and API tokens
  • Configure Microsoft Purview sensitivity labels and Data Loss Prevention (DLP) policies to prevent exposure of confidential or restricted data

Privileged Access & Monitoring

  • Enforce Privileged Identity Management (PIM) with Just-In-Time (JIT) access for administrative roles
  • Monitor sign-in logs and audit trails for anomalous behavior involving AI applications
  • Ensure compliance with internal security frameworks and policies
  • Automate provisioning and de-provisioning processes to ensure timely access management

Training & Best Practices

  • Provide guidance and coaching on identity and access management best practices
  • Promote a culture of security awareness and compliance across teams


Qualifications

Required

  • Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent experience)
  • 4 years of experience with Microsoft Entra ID, Active Directory Domain Services (AD DS), and Group Policy
  • Hands-on experience with Microsoft Purview (Information Protection, Data Lifecycle Management) and Data Loss Prevention (DLP)
  • Understanding of securing non-human identities and governing access to Large Language Models (LLMs) in an enterprise environment
  • Proficiency in PowerShell scripting and Microsoft Graph API
  • Solid understanding of networking concepts such as DNS, DHCP, and VPN as they relate to authentication flows

Preferred

  • Certifications such as SC-300 (Identity and Access Administrator) or SC-400 (Information Protection Administrator)
  • Experience with Entra Verified ID or decentralized identity solutions
  • Experience implementing security guardrails for Microsoft 365 Copilot


Core Competencies

  • Manages Complexity: Effectively analyzes situations, identifies root causes, and evaluates solutions
  • Situational Adaptability: Adjusts approach based on changing circumstances
  • Optimizes Work Processes: Designs efficient workflows and continuously improves processes
  • Collaboration: Builds strong partnerships and works effectively across teams
  • Organizational Savvy: Navigates complex organizational structures and dynamics


Additional Information

  • This role may require work beyond standard business hours as needed
  • Responsibilities may evolve based on business needs


The projected salary range for this position is $115,000 to $120,000.

ODG is an equal opportunity employer that does not discriminate on the basis of race, color, religion, gender, sexual orientation, age, national origin, disability, or any other characteristic protected by law.

Salary : $110,000 - $120,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Sr. Identity Access Management (IAM) & AI Governance Security Engineer?

Sign up to receive alerts about other jobs on the Sr. Identity Access Management (IAM) & AI Governance Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$74,206 - $95,716
Income Estimation: 
$94,625 - $127,578
Income Estimation: 
$94,625 - $127,578
Income Estimation: 
$132,795 - $178,786
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at On-Demand Group

  • On-Demand Group Minneapolis, MN
  • Principal Engineer to provide technical leadership across 4–5 product teams, including a growing GraphQL-focused initiative . This role is key to driving e... more
  • 1 Day Ago

  • On-Demand Group Chicago, IL
  • Job Title: Business Analyst Duration: 6 months contract – potential to extend Location: Remote (Chicago, Illinois) Overview: Support VRO team with function... more
  • 1 Day Ago

  • On-Demand Group Alpharetta, GA
  • Job Title: Senior BI Developer Duration: 6 months contract – possibility to convert to full-time Location: (Onsite, open to hybrid after) Alpharetta, Georg... more
  • 2 Days Ago

  • On-Demand Group Minneapolis, MN
  • We’re looking for a Senior Software Engineer with strong C#/.NET and Azure experience to design and build scalable backend services and APIs. This role foc... more
  • 4 Days Ago


Not the job you're looking for? Here are some other Sr. Identity Access Management (IAM) & AI Governance Security Engineer jobs in the Duluth, MN area that may be a better fit.

  • Cirrus Duluth, MN
  • Job Summary This position is responsible for the development and operation of our hybrid identity infrastructure (Microsoft Entra ID and Active Directory) ... more
  • 1 Month Ago

  • TriCom Technical Services Duluth, MN
  • Our client is seeking an AI Identity Governance Engineer to lead IAM security architecture for our enterprise AI initiatives. This is a pioneering role tha... more
  • 1 Day Ago

AI Assistant is available now!

Feel free to start your new journey!