Data Protection Leader

Collective Insights Careers

Atlanta (GA)

On-site

USD 140,000 - 200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Collective Insights is seeking a Data Protection Leader to design and implement enterprise data protection across classification, encryption, DLP, insider risk, eDiscovery, and DSPM using Microsoft Purview as primary tool alongside Varonis and Proofpoint.

You will translate business and regulatory requirements into scalable architectures, lead architecture reviews, mentor teams, and ensure compliance with standards such as NIST, ISO 27001, HIPAA/HITRUST, GDPR/CCPA while driving measurable value

Qualifications

  • 5+ years in data protection with enterprise delivery.
  • Experience across information protection, DLP, or DSPM domains.
  • Bachelor's in CS or Info Security; master's preferred.
  • Strong knowledge of regulatory requirements and audits.

Responsibilities

  • Define target-state data protection architectures across labeling, encryption, DLP, insider risk models, eDiscovery workflows, records retention, and DSPM patterns.
  • Lead client assessments, architecture workshops, and advise executives on regulatory and risk implications.
  • Guide architecture to secure designs and implementation plans; collaborate on configuration, policies, and automation (Purview policies, Varonis remediation, Proofpoint rules).
  • Align solutions to frameworks (NIST, ISO 27001, HIPAA/HITRUST, PCI DSS, SOX, FedRAMP, GDPR/CCPA).
  • Lead design reviews, threat modeling, and establish non-functional requirements (availability, DR, performance).
  • Produce architecture diagrams, decision records, requirements, test/acceptance criteria, and runbooks. Provide status and outcome reporting.
  • Conduct post‑implementation reviews; tune DLP/IRM/eDiscovery policies; codify reusable modules and playbooks.
  • Support pursuits (SOW scoping, demos/POCs, pricing inputs) and represent the practice externally.

Skills

Strategic thinking
Stakeholder engagement
Regulatory knowledge
Executive communication

Education

Bachelor’s in Computer Science or Information Security
Master’s in related field preferred

Tools

Microsoft Purview
Varonis
Proofpoint
PowerShell
Python
APIs
Logic Apps
Graph API

Job description

Who We Are: Collective Insights is a group of experienced consultants who looked around and decided to create a different kind of partnership for the modern enterprise: one focused on increasing the business value of tailored transformation and technology solutions. We are rooted in three guiding principles:



  • Transform Clients

  • Nurture Careers

  • Uplift Communities


What Makes Us Unique: At CI our core values are not just a set of words on a wall; they are uniquely woven into the fabric of who we are as a company.



  • We Have Compassion: We respect each other and are free from bias of any kind in how we approach our work. We show esteem and honor for one another and the clients we serve.

  • We Have Integrity: We are truthful, honest, and open in our actions and relationships, and perform our work with a high ethical standard.

  • We Are Responsible: We are focused on growth the right way while fulfilling our obligations to each other and our clients.

  • We Are Trusting: We have confidence in one another to do what we have committed to do. We always assume positive intent.


Don’t just take our word for it, hear it directly from our people:


“I was drawn to CI by its amazing company culture and people. From the very beginning, I was inspired by the collaborative and supportive environment that CI fosters. CI’s commitment to innovation and continuous improvement resonated with my personal values and career aspirations. Additionally, surrounding myself with such talented and passionate individuals has pushed me to grow more than I ever thought possible during my last two years at CI!”


Ruth Fitzgerald, Consultant


Job Description: As a Data Protection Leader , you will design, implement, and optimize enterprise data protection solutions across Information Protection (classification, labeling, encryption), Data Loss Prevention (endpoint, email, web/SSE, cloud), Insider Risk Management, eDiscovery & RecordsManagement, and Data Security Posture Management (DSPM). You will translate business, compliance, and security needs into scalable architecturesleveragingMicrosoft Purview (primary)alongsideVaronisandProofpoint, integrating with client ecosystems to reduce risk, enable compliance, and drive measurable value realization.


What You Will Be Doing:



  • Solution Design: Define target-state data protection architectures across labeling/encryption, DLP policies, insider risk models, eDiscovery workflows, records retention, and DSPM patterns. Ensure solutions are scalable, repeatable, and aligned to regulatory and Zero Trust data principles.


  • Client Engagement: Facilitate assessments and architecture workshops; advise executives on regulatory and risk implications; recommend operating model changes for compliance and monitoring.


  • Implementation: Guide conversion of architecture into secure designs and implementation plans; collaborate with Technical Specialists on configuration, policies, and automation (e.g., Purview policies, Varonis remediation, Proofpoint rules).


  • Compliance & Risk Management: Align solutions to frameworks (NIST, ISO 27001, HIPAA/HITRUST, PCI DSS, SOX, FedRAMP, GDPR/CCPA). Define controls for data classification, retention, exfiltration, insider misuse, and auditability.


  • Technical Leadership: Act as design authority; lead design reviews, threat modeling, and establish non-functional requirements (availability, DR, performance).


  • Documentation & Reporting: Produce architecture diagrams, decision records, requirements, test/acceptance criteria, and runbooks. Provide status and outcome reporting.


  • Continuous Improvement: Conduct post‑implementation reviews; tune DLP/IRM/eDiscovery policies; codify reusable modules and playbooks.


  • Practice Development: Support pursuits (SOW scoping, demos/POCs, pricing inputs) and represent the practice externally.



What You Bring:



  • Experience: 5–8+ years in data protection across at least two domains (Information Protection, DLP, Insider Risk, eDiscovery/Records, DSPM) with enterprise delivery experience.


  • Education: Bachelor’s in Computer Science, Information Security, or related field (or equivalent experience). Master’s/MBA preferred.


  • Technical Expertise: Deep knowledge of Microsoft Purview, Varonis or Proofpoint. Strong knowledge of regulatory requirements and auditor expectations in sectors such as financial services, healthcare, and public sector. Familiarity with scripting/automation (PowerShell, Python, APIs, Logic Apps, Graph API).


  • Solution Design & Implementation: Proven ability to craft secure, scalable architectures and trade‑off analyses. Hands‑on guidance of build teams implementing Purview labels/DLP, Varonis permissions cleanup, Proofpoint DLP/ITM, and DSPM integrations.


  • Problem‑Solving & Communication: Structured thinking and clear written/verbal communication from technical to executive levels; workshop facilitation and executive‑ready materials.


  • Certifications (preferred): Microsoft SC‑400, SC‑200, SC‑100; CISSP, CCSP, CIPP; vendor certifications for Varonis or Proofpoint.



Additional Requirements:



  • Availability for periodic client travel and professional engagements.

  • Commitment to ongoing education and staying current on data protection trends (e.g., AI governance, DSPM, Zero Trust data).


Applicants must be currently authorized to work in the United States without the need for visa sponsorship now or in the future.


Join us:
Joining our team means shaping the future of secure, data‑driven business, building innovative solutions, and influencing industry standards. Together, we’ll deliver trusted outcomes and accelerate transformation with confidence.


Our Company is committed to the principles of equal employment. We are committed to complying with all federal, state, and local laws providing equal employment opportunities, and all other employment laws and regulations. It is our intent to maintain a work environment which is free of harassment, discrimination, or retaliation because of sex, gender, race, religion, color, national origin, physical or mental disability, genetic information, marital status, age, sexual orientation, gender identity, military service, veteran status, or any other status protected by federal, state, or local laws. The Company is dedicated to the fulfillment of this policy in regard to all aspects of employment, including but not limited to recruiting, hiring, placement, transfer, training, promotion, rates of pay, and other compensation, termination, and all other terms, conditions, and privileges of employment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Protection Consultant
Data Protection Consultant

Collective Insights Careers • Atlanta (GA)

On-site
USD 110,000 - 150,000
Compliance Consultant - Data Security
Compliance Consultant - Data Security

Proofpoint • Arizona

On-site
USD 52,000 - 78,000
Competitive compensation
Comprehensive benefits
Flexible work environment
Microsoft Purview and Data Protection Engineer
Microsoft Purview and Data Protection Engineer

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC • Washington

Hybrid
USD 160,000 - 180,000
Sr Data Protection & Governance Analyst
Sr Data Protection & Governance Analyst

Starkey Hearing Technologies • Eden Prairie (MN)

On-site
USD 86,000 - 117,000
Bonus eligible
Comprehensive benefits
Paid time off
Data Security Analyst
Data Security Analyst

Clarivate • Philadelphia

Hybrid
USD 90,000 - 120,000
Data Protection Engineer
Data Protection Engineer

VistalTech Inc • United States

On-site
USD 95,000 - 140,000
Senior Information Security Engineer - Data Protection & Insider Risk
Senior Information Security Engineer - Data Protection & Insider Risk

Cravath, Swaine & Moore LLP • New York (NY)

Hybrid
USD 160,000 - 200,000
Medical, dental, vision insurance
401(k) plan with company match
Paid time off and health club benefits
+1
Senior Staff Cyber Security Engineer - Data Security
Senior Staff Cyber Security Engineer - Data Security

Synopsys Inc • Morrisville (NC)

On-site
USD 120,000 - 180,000
Sr Data Protection & Governance Analyst
Sr Data Protection & Governance Analyst

Starkey Laboratories • Eden Prairie (MN)

On-site
USD 86,000 - 117,000
Medical Insurance
Dental & Vision Insurance
401(k) Matching
+4
Security Operations Engineer
Security Operations Engineer

Cetera Financial Group • Dallas (TX)

Hybrid
USD 100,000 - 130,000
Health, dental, vision, and life insurance
20+ days of paid time off
401(k) Savings plan
+2