Job Description
Role Overview
We are seeking a Senior Data Security Lead to define, own, and mature the organization's enterprise data security and governance capabilities. This role is responsible for architecture, engineering, and operational leadership across data protection, Data Loss Prevention (DLP), insider risk management, investigations, and AI governance.
The role operates primarily within the Microsoft security ecosystem and requires strong technical ownership, architectural thinking, and hands-on execution. You will work closely with IT, Security, Legal, Compliance, and business stakeholders to ensure organizational data is protected, compliant, and securely leveraged.
Key Responsibilities
Data Security Strategy & Governance
Define and maintain enterprise data security standards, policies, and lifecycle governance
Establish and manage the organization-wide data classification and labeling framework
Security Architecture & Engineering
Design secure data architectures across Microsoft 365, Azure, Fabric, and integrated platforms
Define secure access models, encryption standards, and data flow architectures
Review solution designs to embed data protection controls from inception
Microsoft Purview & Defender
Architect, implement, and operate Microsoft Purview capabilities including Information Protection, DLP, Insider Risk, and eDiscovery
Engineer Microsoft Defender configurations across Endpoint, Identity, Office 365, and Cloud Apps
Develop monitoring, alerting, and reporting frameworks
Data Loss Prevention (DLP)
Build and optimize enterprise DLP policies across endpoints, cloud platforms, email, collaboration tools, and SaaS systems
Implement advanced detection logic using sensitive information types, auto-labeling, and trainable classifiers
Insider Risk & Investigations
Establish insider risk monitoring frameworks and operational playbooks
Lead investigations and incident response in coordination with Legal, HR, and Compliance
AI Governance & Data Protection
Define governance and security controls for AI-enabled workloads
Ensure responsible use of data in AI models and analytics platforms
Qualifications
Bachelor's degree in IT, Computer Science, Engineering, or related field
7+ years of experience in enterprise security, data security, cloud security, or IT risk management
Strong Hands-on Experience With
Microsoft Purview (Information Protection, DLP, Insider Risk, eDiscovery)
Microsoft Defender ecosystem
Microsoft 365 and Azure security architecture
Data governance, classification, and labeling frameworks
Preferred Technical Experience
Azure security architecture and Zero Trust models
SIEM/SOAR tools such as Microsoft Sentinel
Security automation (PowerShell, Logic Apps)
Compliance frameworks (ISO 27001, GDPR, SOC 2)
Preferred Certifications (Not Required)
SC-100, SC-400, SC-200, SC-300, AZ-305, CISSP, CISSP-ISSAP, CISM, IAPP AIGP, Microsoft Responsible AI (Applied Skills), GIAC GSE, GIAC GOSI
Core Competencies
Strong stakeholder engagement and communication skills
Ability to translate technical risks into business impact
High level of ownership and accountability
Sound judgment, prioritization, and decision-making
Calm and structured approach under pressure