Overview
In this role you will help protect data and endpoints across client environments, shaping security maturity through governance, protection policies, and threat hunting. You’ll collaborate with cross-functional teams to implement Microsoft Purview data governance, DLP policies, and Defender for endpoint capabilities, driving proactive risk mitigation. You will contribute to transformation projects by aligning security controls with industry frameworks like NCSC CAF. This is a hands-on delivery role with meaningful impact on data protection and threat resilience.
Pay / Benefits
- flexible work options
- learning and development opportunities
- tailored benefits
- wellbeing support
Responsibilities
- Implement and configure Microsoft Purview for data governance and compliance
- Design and deploy Information Protection policies (AIP/MIP), including sensitivity labels, DLP and Insider Risk Management policy configurations
- Advise on strategies to prevent unauthorized data sharing and mitigate data leakage risks
- Leverage Microsoft Defender for endpoint monitoring, threat hunting, and incident response
- Perform advanced threat investigations using KQL and Defender portals
- Act as liaison for external services such as Microsoft Defender Experts for proactive threat hunting
- Support vulnerability management initiatives using tools like Qualys, prioritizing remediation and CIS Benchmarks
- Provide operational support for Zscaler and Proofpoint to ensure secure web access and email security
- Contribute to projects aimed at improving security maturity against frameworks such as NCSC CAF
Key requirements
- 2-3 Years experience managing Microsoft Security products
- Microsoft Certified such as SC-100, SC-200, SC-400
- Design, implement, and manage DLP policies and sensitivity labels
- Develop and implement data governance policies using Microsoft Purview
- Configure and monitor policies to detect, investigate, and act on malicious or unintentional activities
- Experience with Microsoft Defender for endpoint security and threat hunting
- Familiarity with KQL for advanced threat investigations
- Experience in managing and monitoring Zscaler and Proofpoint
- Strong knowledge of vulnerability management tools such as Qualys or similar
- Understanding of CIS Benchmarks and security hardening practices
- Understanding of web protocols (TCP/IP, HTTP, SSL/TLS)
- Extensive multi-year project experience in complex environments
- Microsoft Purview
- AIP/MIP
- Data Loss Prevention (DLP)
- Sensitivity labels
- Insider Risk Management
- Microsoft Defender for Endpoint
…
