Responsibilities
- Architect and manage data loss prevention strategies across email, endpoints, and cloud platforms including Microsoft Purview, M365, and Azure.
- Deploy and refine systems for classifying, labeling, and encrypting data in accordance with organizational standards and legal mandates.
- Oversee information rights management, tokenization, and cryptographic key lifecycle solutions.
- Establish safeguards to prevent data leaks involving generative AI tools such as Microsoft 365 Copilot and ChatGPT Enterprise, including monitoring prompts and responses, enforcing sensitivity labels, and blocking unauthorized AI applications.
- Lead investigations into data security breaches, determine root causes, and direct response efforts.
- Monitor alerts from SIEM, CASB, and DLP systems, triage incidents, and escalate according to established protocols.
- Collaborate with security operations and digital forensics teams during insider threat and data exfiltration cases.
- Identify and respond to data exposure events tied to AI, such as submissions to public large language models, prompt injection attacks, and unapproved AI tool usage.
- Support adherence to privacy and security regulations including GDPR, CCPA, NYDFS Part 500, SOC 2, and client-specific requirements.
- Evaluate data risks associated with new software, third-party vendors, and emerging AI and LLM deployments.
- Preserve documentation and evidence required for internal and external audits.
- Assist in shaping AI governance initiatives using recognized standards like NIST AI RMF and ISO/IEC 42001.
- Create automated scripts in PowerShell, Python, or KQL to enhance operational efficiency in data protection.
- Embed data security measures into software development pipelines, SaaS integration processes, and identity management systems.
- Keep current and accurate records, operational procedures, and control mappings.
Requirements
- Proven background in configuring and managing DLP policies across email, endpoints, and cloud environments such as Microsoft Purview, M365, and Azure.
- Hands-on experience deploying and optimizing data classification, labeling, and encryption systems.
- Experience administering IRM/MIP, tokenization, and key management technologies.
- Demonstrated ability to build and enforce data leakage controls for AI platforms including Microsoft 365 Copilot and ChatGPT Enterprise.
- Track record investigating data incidents, analyzing root causes, and managing containment and recovery.
- Familiarity with monitoring SIEM, CASB, and DLP alerts and executing event triage under an incident response framework.
- Ability to work closely with SOC and forensic analysts on insider threat and data theft investigations.
- Capability to identify and react to AI-driven data exposures, including misuse of public LLMs and shadow AI.
- Understanding of compliance standards such as GDPR, CCPA, NYDFS Part 500, and SOC 2.
- Experience assessing data risks for new applications, vendors, and AI/LLM integrations.
- Background maintaining audit-ready documentation and evidence collections.
- Knowledge of AI governance frameworks including NIST AI RMF and ISO/IEC 42001.
- Proficient in writing automation scripts using PowerShell, Python, or KQL.
- Experience integrating data security into CI/CD pipelines, SaaS provisioning, and identity workflows.
- Strong written communication skills with experience maintaining technical documentation, runbooks, and control matrices.