Technology Consulting IC3
The EAG Security Consultant - Data Security helps enterprise customers discover, classify, protect, govern, and investigate sensitive data across Microsoft 365, Microsoft Purview, endpoints, cloud services, and AI-enabled workflows. The role combines hands-on Purview delivery, consulting judgment, regulatory awareness, and secure AI adoption patterns to reduce data exposure risk, strengthen DLP effectiveness, prepare customers for Copilot and agents, and create reusable EAG Security delivery IP.
Responsibilities
- Lead data security discovery workshops to understand sensitive data landscape, regulatory drivers, current Purview adoption, oversharing risks, and AI / Copilot readiness blockers.
- Design and implement Microsoft Purview Information Protection capabilities including sensitivity labels, label policies, encryption, auto-labeling patterns, and user adoption controls.
- Configure, tune, and operationalize Data Loss Prevention across Microsoft 365 workloads, endpoints, cloud apps, browsers, and AI-related workflows where applicable.
- Assess Insider Risk Management, eDiscovery, Audit, Data Lifecycle Management, and Compliance Manager usage to improve investigation readiness and governance maturity.
- Apply DSPM and data-security-for-AI patterns to identify overshared sensitive data, label coverage gaps, exposed credentials, and risky data interactions before AI rollout.
- Support Data Protection Agents and Purview agent scenarios such as sensitive data discovery, SIT recommendation, DLP triage, Purview posture assessment, and regulatory mapping.
- Create executive-ready deliverables including posture baselines, risk registers, remediation roadmaps, policy design packs, operating procedures, and adoption recommendations.
Required/Minimum Qualifications
- 5+ years of experience in cybersecurity, information protection, data loss prevention, compliance engineering, data governance, or related security consulting roles.
- Hands-on experience with Microsoft Purview data security capabilities, especially Information Protection and Data Loss Prevention in Microsoft 365 environments.
- Working knowledge of sensitive information types, classification strategies, sensitivity labels, DLP rules, alert triage, policy tuning, and exception handling.
- Ability to translate regulatory, privacy, and business requirements into implementable Microsoft Purview controls and customer-facing design documentation.
- Understanding of Microsoft 365 security and compliance workloads including Exchange, SharePoint, OneDrive, Teams, endpoints, Defender for Cloud Apps, audit and eDiscovery signals.
- Ability to analyze policy exports, telemetry, PowerShell outputs, and Purview reports to identify coverage gaps and remediation priorities.
- Strong communication skills for technical workshops, executive readouts, project governance, and cross-functional collaboration with security, compliance, legal, and data teams.
Preferred Qualification- - Experience delivering Purview deployments for regulated customers across DLP, MIP, IRM, retention, eDiscovery, audit, or Copilot readiness scenarios.
- Exposure to Data Protection Agents, Purview posture assessment, custom SIT discovery, DLP triage agents, DSPM, DSPM for AI, or Security Copilot in Microsoft Purview.
- Ability to design custom sensitive information types, regex-based detection logic, policy coverage assessments, and evidence-backed compliance mappings.
- Familiarity with data security beyond Microsoft 365, including Azure, Fabric, Snowflake, Dataverse, SAP, Salesforce, AWS, GCP, SaaS, or file-server governance patterns.
- Experience creating reusable consulting IP such as discovery questionnaires, policy design templates, lab guides, dashboards, scripts, reports, and executive summaries.
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.