Job Description:
- Experienced in Microsoft Purview advisory support, configuration guidance, and client-facing security and compliance engagement.
- Focus on L3 SME guidance, design-aligned troubleshooting, stakeholder coordination, go-live support, Hypercare advisory, and warranty issue resolution across Microsoft Purview workloads.
- Provide L3 SME support for Microsoft Purview activities aligned to Information Protection, Data Loss Prevention, Insider Risk Management, and Data Lifecycle Management.
- Support go-live by advising on label publishing, DLP simulation or enforcement, IRM policy activation, retention policy deployment, and configuration evidence review.
- Provide Hypercare guidance for Purview issues, including DLP false positive or negative tuning, label policy behavior, IRM alert triage, retention behavior, and Sentinel or Splunk alert routing.
- Review screenshots, policy status, validation outputs, logs, and configuration evidence shared by client teams.
- Advise on warranty issues attributable to signed-off Purview design or build/configuration guidance.
- Coordinate with compliance, SOC, IT security, and operations stakeholders to validate issues, clarify remediation guidance, and track closure.
- Maintain issue logs, advisory notes, RAID updates, resolution summaries, and phase closure inputs.
Required technical skills:
- Strong experience supporting Microsoft Purview in enterprise security or compliance environments.
- Hands-on knowledge of Purview Information Protection labels, DLP policies, Insider Risk Management scenarios, and Data Lifecycle Management retention policies.
- Ability to advise on signed-off Purview design and build guidance across Exchange Online, SharePoint Online, OneDrive, and Microsoft Teams locations.
- Familiarity with Microsoft built-in Sensitive Information Types, SOC integration touchpoints, Sentinel or Splunk routing, and Purview issue tracking.
- Strong understanding of go-live, Hypercare, warranty support, stakeholder evidence review, and L3 escalation handling.
Requirements:
- Able to lead technical conversations with compliance, SOC, IT security, and operations stakeholders.
- Strong ownership, clear advisory communication, structured issue management, and practical judgment when guiding configuration evidence review, remediation options, and support closure activities.
Qualifications:
- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field is preferred.
- Desirable Microsoft certifications include: SC-401, SC-200, SC-100, SC-300, AZ-500.
Preferred experience:
- Experience supporting Microsoft Purview in large enterprise or regulated enterprise environments.
- Exposure to Purview go-live, Hypercare, warranty support, and post-implementation stabilization activities.
- Experience advising on Information Protection, DLP, IRM, DLM, and SOC integration requirements using Sentinel or Splunk.
- Experience working with client-facing delivery teams and coordinating with compliance, SOC, IT security, and operations teams is beneficial.