The EAG Security Consultant - Data Security helps enterprise customers discover, classify, protect, govern, and investigate sensitive data across Microsoft 365, Microsoft Purview, endpoints, cloud services, and AI-enabled workflows. The role combines hands-on Purview delivery, consulting judgment, regulatory awareness, and secure AI adoption patterns to reduce data exposure risk, strengthen DLP effectiveness, prepare customers for Copilot and agents, and create reusable EAG Security delivery IP.
Responsibilities
- Lead data security discovery workshops to understand sensitive data landscape, regulatory drivers, current Purview adoption, oversharing risks, and AI / Copilot readiness blockers.
- Design and implement Microsoft Purview Information Protection capabilities including sensitivity labels, label policies, encryption, auto-labeling patterns, and user adoption controls.
- Configure, tune, and operationalize Data Loss Prevention across Microsoft 365 workloads, endpoints, cloud apps, browsers, and AI-related workflows where applicable.
- Assess Insider Risk Management, eDiscovery, Audit, Data Lifecycle Management, and Compliance Manager usage to improve investigation readiness and governance maturity.
- Apply DSPM and data-security-for-AI patterns to identify overshared sensitive data, label coverage gaps, exposed credentials, and risky data interactions before AI rollout.
- Support Data Protection Agents and Purview agent scenarios such as sensitive data discovery, SIT recommendation, DLP triage, Purview posture assessment, and regulatory mapping.
- Create executive-ready deliverables including posture baselines, risk registers, remediation roadmaps, policy design packs, operating procedures, and adoption recommendations.
Qualifications
Required/Minimum Qualifications
- 5+ years of experience in cybersecurity, information protection, data loss prevention, compliance engineering, data governance, or related security consulting roles.
- Hands-on experience with Microsoft Purview data security capabilities, especially Information Protection and Data Loss Prevention in Microsoft 365 environments.
- Working knowledge of sensitive information types, classification strategies, sensitivity labels, DLP rules, alert triage, policy tuning, and exception handling.
- Ability to translate regulatory, privacy, and business requirements into implementable Microsoft Purview controls and customer-facing design documentation.
- Understanding of Microsoft 365 security and compliance workloads including Exchange, SharePoint, OneDrive, Teams, endpoints, Defender for Cloud Apps, audit and eDiscovery signals.
- Ability to analyze policy exports, telemetry, PowerShell outputs, and Purview reports to identify coverage gaps and remediation priorities.
- Strong communication skills for technical workshops, executive readouts, project governance, and cross-functional collaboration with security, compliance, legal, and data teams.
Preferred Qualification- - Experience delivering Purview deployments for regulated customers across DLP, MIP, IRM, retention, eDiscovery, audit, or Copilot readiness scenarios.
- Exposure to Data Protection Agents, Purview posture assessment, custom SIT discovery, DLP triage agents, DSPM, DSPM for AI, or Security Copilot in Microsoft Purview.
- Ability to design custom sensitive information types, regex-based detection logic, policy coverage assessments, and evidence-backed compliance mappings.
- Familiarity with data security beyond Microsoft 365, including Azure, Fabric, Snowflake, Dataverse, SAP, Salesforce, AWS, GCP, SaaS, or file-server governance patterns.
- Experience creating reusable consulting IP such as discovery questionnaires, policy design templates, lab guides, dashboards, scripts, reports, and executive summaries.
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
Skills Required
- 5+ years in cybersecurity, information protection, DLP, compliance engineering, data governance, or related security consulting
- Hands-on experience with Microsoft Purview data security capabilities, especially Information Protection and DLP in Microsoft 365
- Working knowledge of sensitive information types, classification strategies, sensitivity labels, DLP rules, alert triage, policy tuning, and exception handling
- Ability to translate regulatory, privacy, and business requirements into implementable Microsoft Purview controls and customer-facing design documentation
- Understanding of Microsoft 365 security and compliance workloads (Exchange, SharePoint, OneDrive, Teams, endpoints, Defender for Cloud Apps, audit, eDiscovery)
- Ability to analyze policy exports, telemetry, PowerShell outputs, and Purview reports to identify coverage gaps and remediation priorities
- Strong communication skills for technical workshops, executive readouts, project governance, and cross-functional collaboration
- Experience delivering Purview deployments across DLP, MIP, IRM, retention, eDiscovery, audit, or Copilot readiness scenarios
- Exposure to Data Protection Agents, Purview posture assessment, custom SIT discovery, DLP triage agents, DSPM, or Security Copilot
- Ability to design custom sensitive information types, regex-based detection logic, policy coverage assessments, and compliance mappings
- Familiarity with data security beyond Microsoft 365 (Azure, Fabric, Snowflake, Dataverse, SAP, Salesforce, AWS, GCP, SaaS, file-server governance)
- Experience creating reusable consulting IP such as questionnaires, policy templates, lab guides, dashboards, scripts, reports, and executive summaries
Microsoft Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Microsoft and has not been reviewed or approved by Microsoft.
-
Fair & Transparent Compensation — Pay is presented as broadly competitive overall, with clear role/level/location variation and an emphasis on using posted ranges and band information for apples-to-apples comparisons.
-
Retirement Support — Retirement benefits are described as a standout, highlighted by a strong 401(k) match structure and immediate vesting, plus additional plan features for tax-advantaged saving.
-
Parental & Family Support — Family-oriented benefits are portrayed as a meaningful strength, with substantial paid parental leave and added supports like back-up care and adoption/surrogacy assistance.
Microsoft Insights
What We Do
At Microsoft, our mission is to empower every person and every organization on the planet to achieve more. Our mission is grounded in both the world in which we live and the future we strive to create. Today, we live in a mobile-first, cloud-first world, and the transformation we are driving across our businesses is designed to enable Microsoft and our customers to thrive in this world.
.jpeg)





