Role Overview
We are seeking a Senior Data Security Lead to define, own, and mature the organization’s enterprise data security and governance capabilities. This role is responsible for architecture, engineering, and operational leadership across data protection, Data Loss Prevention (DLP), insider risk management, investigations, and AI governance.
The role operates primarily within the Microsoft security ecosystem and requires strong technical ownership, architectural thinking, and hands-on execution. You will work closely with IT, Security, Legal, Compliance, and business stakeholders to ensure organizational data is protected, compliant, and securely leveraged.
Key Responsibilities
- Data Security Strategy & Governance: Define and maintain enterprise data security standards, policies, and lifecycle governance
- Data Security Strategy & Governance: Establish and manage the organization-wide data classification and labeling framework
- Security Architecture & Engineering: Design secure data architectures across Microsoft 365, Azure, Fabric, and integrated platforms
- Security Architecture & Engineering: Define secure access models, encryption standards, and data flow architectures
- Security Architecture & Engineering: Review solution designs to embed data protection controls from inception
- Microsoft Purview & Defender: Architect, implement, and operate Microsoft Purview capabilities including Information Protection, DLP, Insider Risk, and eDiscovery
- Microsoft Purview & Defender: Engineer Microsoft Defender configurations across Endpoint, Identity, Office 365, and Cloud Apps
- Microsoft Purview & Defender: Develop monitoring, alerting, and reporting frameworks
- Data Loss Prevention (DLP): Build and optimize enterprise DLP policies across endpoints, cloud platforms, email, collaboration tools, and SaaS systems
- Data Loss Prevention (DLP): Implement advanced detection logic using sensitive information types, auto-labeling, and trainable classifiers
- Insider Risk & Investigations: Establish insider risk monitoring frameworks and operational playbooks
- Insider Risk & Investigations: Lead investigations and incident response in coordination with Legal, HR, and Compliance
- AI Governance & Data Protection: Define governance and security controls for AI-enabled workloads
- AI Governance & Data Protection: Ensure responsible use of data in AI models and analytics platforms
Qualifications
Bachelor’s degree in IT, Computer Science, Engineering, or related field
7+ years of experience in enterprise security, data security, cloud security, or IT risk management
Strong Hands-on Experience With
- Microsoft Purview (Information Protection, DLP, Insider Risk, eDiscovery)
- Microsoft Defender ecosystem
- Microsoft 365 and Azure security architecture
- Data governance, classification, and labeling frameworks
Preferred Technical Experience
- Azure security architecture and Zero Trust models
- SIEM/SOAR tools such as Microsoft Sentinel
- Security automation (PowerShell, Logic Apps)
- Compliance frameworks (ISO 27001, GDPR, SOC 2)
Preferred Certifications (Not Required)
- SC-100, SC-400, SC-200, SC-300, AZ-305, CISSP, CISSP-ISSAP, CISM, IAPP AIGP, Microsoft Responsible AI (Applied Skills), GIAC GSE, GIAC GOSI
Core Competencies
- Strong stakeholder engagement and communication skills
- Ability to translate technical risks into business impact
- High level of ownership and accountability
- Sound judgment, prioritization, and decision-making
- Calm and structured approach under pressure