Exquitech Group

Senior Data Security & Compliance Specialist

Exquitech Group

Riyadh, Riyadh Province, Saudi Arabia · Full Time

Be the first to apply

Experience
4+ yrs
Salary
Openings
1
Posted
2 weeks ago
Work mode
In office
Education
Bachelor's degree
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About the Role

We are looking for an experienced Data Security & Compliance Specialist to spearhead the deployment of data security, classification, retention, and governance strategies leveraging Microsoft Purview for clients across the MEA region. The position demands extensive expertise, including over four years in data security with at least two years of practical involvement with Microsoft Purview features like Data Loss Prevention, Data Classification, Cloud Access Security Broker (CASB), and governance tools such as retention policies and Insider Risk Management.

Key Responsibilities

  • Design, deploy, and refine data security frameworks utilizing Microsoft Purview and other top-tier data governance and DLP tools.
  • Create and uphold policies for DLP, Insider Risk Management, DSPM for AI, and CASB to prevent data breaches and comply with regulations.
  • Implement strategies for data classification and labeling to strengthen protections.
  • Set and manage data retention policies compliant with business and regulatory requirements.
  • Operate on-premises scanners using Azure Information Protection (AIP) for data classification and protection.
  • Integrate CASB with on-premises firewalls to augment security measures across cloud and local systems.
  • Lead the configuration and rollout of Microsoft Priva and Microsoft Purview Data Map.
  • Ensure adherence to regulatory frameworks including GDPR, NCA, and ISO 27001.
  • Support Data Security Posture Management initiatives by evaluating risks, monitoring data flows, and optimizing related security protocols.
  • Develop templates and automation processes to ensure uniform and efficient implementation of data security and governance solutions.
  • Automate deployment of policies and security setups via PowerShell, APIs, and Microsoft Security & Compliance tools.
  • Manage Mobile Device Management (MDM), Mobile Application Management (MAM), and Conditional Access policies to improve security controls.
  • Oversee security-focused projects from scoping through post-deployment maintenance, ensuring adherence to timelines and budgets.
  • Create high-level and low-level design documentation, assess client environments, and develop RFIs and IRLs as required.
  • Monitor and respond promptly to data security incidents, perform risk analyses, and apply best practices to mitigate vulnerabilities.
  • Manage a team of at least two members, fostering collaboration across departments to align security policies with business strategies.
  • Conduct training sessions for end-users and administrators on data security, classification, governance, and compliance.
  • Support project documentation efforts including drafting Scope of Work documents, project roadmaps, user manuals, and system administration guides.
  • Maintain and enhance a technical test environment for internal experimentation and new technology evaluation.

Qualifications

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related discipline.
  • Minimum four years of experience in data security and governance solutions, focusing on Microsoft Purview.
  • At least two years of supervisory experience in delivering data protection and compliance projects.
  • Demonstrated hands-on expertise in Microsoft Purview Information Protection, including DLP, data classification, retention, and compliance policies.
  • Experience applying frameworks such as GDPR, NCA, and ISO 27001 in data governance and risk management.
  • Advanced knowledge of Microsoft Purview Compliance Portal, Insider Risk Management, eDiscovery, and Audit features.
  • Skillful with Microsoft Purview DLP across Microsoft 365 services like Teams, SharePoint, OneDrive, and Exchange Online.
  • Strong understanding of Microsoft Information Protection technologies for labeling, encryption, and rights management.
  • Familiarity with Microsoft Defender for Cloud Apps for security monitoring and threat identification.
  • Knowledgeable in Microsoft Intune for MDM & MAM and its integration with Conditional Access policies.
  • Excellent communication skills to explain data protection and compliance to varied stakeholders.

Certifications

  • Required: GIAC Certified Data Protection or an equivalent certification.
  • Vendor certifications in DLP, Data Classification, Litigation Holds, or governance tools are necessary.
  • Preferred: Microsoft Certified Information Protection Administrator Associate (SC-400) and Cybersecurity Architect Expert (SC-100).

Skills & Competencies

  • Leadership and management of data security teams.
  • Project management expertise.
  • Designing and architecting secure solutions.
  • Proficient with Data Loss Prevention, Data Classification, and CASB tools.
  • Strong analytical skills with meticulous attention to detail and resilience under pressure.
  • Effective communicator skilled in customer engagement.
  • Experience with quality assurance standards and implementation.
  • Active commitment to updating knowledge on emerging data security trends and technologies.

Level

Senior

Minimum education

Bachelor's Degree

How they work

Communication Problem Solving Leadership
🤖
Online · instant AI help
Broxer