Role: MS Purview IRM Architect
Job Type: Permanent
Location: London, UK
Mode of Working: Hybrid (2 days per week in the office)
Are you looking to utilise your expertise in Microsoft Purview, Information Rights Management, and enterprise data protection?
We have an exciting opportunity for you - MS Purview IRM Architect!
Careers at TCS: It Means More
TCS is a purpose-led transformation company, built on belief. We do not just help businesses transform through technology. We support them in making a meaningful difference to the people and communities they serve. Our clients include some of the biggest brands in the UK and worldwide. At TCS, it means more to make an impact that matters through challenging projects which demand ambitious innovation and thought leadership.
- Lead the design and implementation of enterprise-scale information protection solutions within a highly regulated banking environment.
- Work with security, compliance, architecture, and business stakeholders to strengthen information governance and data protection capabilities.
- Shape the future of information security through Microsoft Purview, Microsoft 365 security technologies, and modern data governance practices.
The Role
As anMS Purview IRM Architect, you will play a key role in the implementation of Microsoft Purview Information Rights Management capabilities for a large European banking programme. You will support the design, configuration, rollout, and adoption of Purview-based data protection controls, helping strengthen information governance, regulatory compliance, and sensitive data protection across the organisation. Working closely with security, compliance, architecture, infrastructure, and business stakeholders, you will ensure that solutions are scalable, secure, and aligned with banking-grade risk and control requirements.
Key Responsibilities
- Lead the architecture, design, and implementation of Microsoft Purview Information Rights Management capabilities.
- Define and configure sensitivity labels, encryption policies, data classification rules, and access control models.
- Assess current information protection controls and recommend target-state architectures, implementation roadmaps, and migration approaches.
- Provide subject matter expertise on IRM policy design, label taxonomy, auto-labelling, DLP integration, and data lifecycle governance.
- Support testing, pilot deployments, user adoption, troubleshooting, and operational handover activities.
- Produce architecture documentation, configuration guides, implementation runbooks, and control evidence for audit and governance reviews.
- Ensure alignment with banking security standards, data privacy requirements, and enterprise control frameworks.
- Collaborate with security, compliance, legal, data governance, infrastructure, and operational teams.
- Provide technical leadership and mentoring to implementation teams.
- Assure solution quality across design, build, testing, and deployment phases.
Your Profile
Essential skills/ knowledge/experience
- Strong hands-on experience with Microsoft Purview Information Protection and Information Rights Management, including sensitivity labels, encryption, label policies, rights management controls, and secure sharing models.
- Deep understanding of Microsoft 365 security and compliance technologies, including Exchange Online, SharePoint Online, OneDrive, Teams, Endpoint DLP, and Purview Compliance Portal administration.
- Experience designing enterprise label taxonomies, classification frameworks, auto-labelling policies, protection templates, and data handling controls within regulated environments.
- Strong knowledge of Data Loss Prevention (DLP), data discovery, sensitive information types, trainable classifiers, data lifecycle management, and integration of Purview controls with wider security processes.
- Ability to translate regulatory, privacy, audit, and banking control requirements into technical solutions and measurable control outcomes.
- Good understanding of identity and access management concepts, including Microsoft Entra ID, Conditional Access, role-based access control, privileged access management, and secure collaboration controls.
- Experience producing high-level and low-level design documentation, implementation runbooks, test plans, migration strategies, and operational handover artefacts.
- Strong stakeholder engagement and communication skills, with experience working across security, compliance, legal, governance, infrastructure, operations, and business teams.
- Hands-on experience supporting pilots, phased rollouts, user adoption activities, troubleshooting, policy optimisation, and production support.
- Ability to provide technical leadership, mentor engineering teams, and drive successful implementation outcomes.
- Experience delivering Microsoft Purview, information protection, or data governance programmes within banking, financial services, or other highly regulated industries.
- Working knowledge of GDPR, data residency requirements, data retention policies, auditability, and information handling regulations.
- Experience integrating Microsoft Purview with security operations platforms, SIEM/SOAR technologies, eDiscovery, Insider Risk Management, Records Management, or third-party data protection solutions.
- Familiarity with Microsoft Defender, Microsoft Sentinel, Azure security services, and Zero Trust security principles.
- Experience supporting enterprise change management, communications, training, and adoption activities for large-scale Microsoft 365 security programmes.
TCS is consistently voted a Top Employer in the UK and globally. Our competitive salary packages feature pension, health care, life assurance, laptop, phone, access to extensive training resources and discounts within the larger Tata network.
We offer health & wellness initiatives and sports events; we are the proud sponsor of the London Marathon.
Diversity, Inclusion and Wellbeing
Tata Consultancy Services UK&I is committed to meeting the accessibility needs of all individuals in accordance with the UK Equality Act 2010 and the UK Human Rights Act 1998.
We welcome and embrace diversity in race, nationality, ethnicity, disability, neurodiversity, gender identity, age, physical ability, gender reassignment, sexual orientation. We are a disability inclusive employer and encourage disabled people to apply for this role.
As a Disability Confident Employer, we offer an interview to applicants with disabilities or long-term conditions who meet the minimum criteria for the role.