C
Cybersecurity DLP BYOD Team Lead
C
Cybersecurity DLP BYOD Team Lead
Confidential8-10 Years
- Posted 55 minutes ago
- Be among the first 10 applicants
Job Description
Cybersecurity (DLP) Team Lead
Key Responsibilities
- Own the high-level and low-level design for information protection, DLP and BYOD.
- Design the sensitivity label taxonomy, including protection, marking, publishing and assignment policies.
- Design the DLP policy model and the graduated enforcement approach — audit, then warn, then block.
- Design auto-labelling rules, run them in simulation mode, and tune precision before production enablement.
- Review and refine the existing pilot configuration before scaling it organisation-wide.
- Regression-test new labels and policies against existing labels, DLP rules and live business processes.
- Provide design authority and technical quality assurance over the engineering team.
- Deliver technical knowledge transfer and author runbooks so the client can operate the estate independently.
Must-Have Skills
- 8+ years hands-on designing and implementing Microsoft Purview Information Protection and DLP.
- Deep experience with sensitivity labels — taxonomy design, protection settings, label policies and publishing.
- Unified DLP across Exchange Online, SharePoint Online, OneDrive and Microsoft Teams.
- Sensitive Information Types, Exact Data Match (EDM), trainable classifiers and OCR-based detection.
- Auto-labelling design, simulation-mode execution and precision / recall tuning.
- Microsoft Information Protection (MIP) client packaging, compatibility validation and phased deployment.
- Working design-level knowledge of Microsoft Entra Conditional Access and Intune App Protection policies.
- Microsoft 365 licensing literacy — able to distinguish E3 plus IP&G capability from E5-tier features.
- Strong documentation skills: HLD, LLD, test cases and knowledge-transfer material.
Good-to-Have Skills
- Delivery experience with an International Financial Institution or regulated bank (highly preferred by the client).
- Microsoft Sentinel or Defender XDR integration experience.
- Exposure to Copilot readiness, oversharing assessment or data-security posture management.
- Experience leading a small engineering pod of 3–5 people.
Certifications
Mandatory
- Microsoft SC-400 — Information Protection and Compliance Administrator Associate
Preferred
- Microsoft SC-300 — Identity and Access Administrator Associate
- Microsoft SC-100 — Cybersecurity Architect Expert
More Info
Key Skills
Microsoft 365 licensing literacy
simulation-mode execution
Unified DLP
Intune App Protection policies
Microsoft Purview Information Protection
protection settings
auto-labelling design
OneDrive
Microsoft Information Protection MIP client
trainable classifiers
Exact Data Match
phased deployment
packaging compatibility validation
taxonomy design
label policies
sensitivity labels
Microsoft Entra Conditional Access
Sensitive Information Types
precision recall tuning
OCR-based detection
