Experienced in Microsoft Purview advisory support, configuration guidance, and client-facing security and compliance engagement.
Focus on L3 SME guidance, design-aligned troubleshooting, stakeholder coordination, go-live support, Hypercare advisory, and warranty issue resolution across Microsoft Purview workloads.
Provide L3 SME support for Microsoft Purview activities aligned to Information Protection, Data Loss Prevention, Insider Risk Management, and Data Lifecycle Management.
Support go-live by advising on label publishing, DLP simulation or enforcement, IRM policy activation, retention policy deployment, and configuration evidence review.
Provide Hypercare guidance for Purview issues, including DLP false positive or negative tuning, label policy behavior, IRM alert triage, retention behavior, and Sentinel or Splunk alert routing.
Review screenshots, policy status, validation outputs, logs, and configuration evidence shared by client teams.
Advise on warranty issues attributable to signed-off Purview design or build/configuration guidance.
Coordinate with compliance, SOC, IT security, and operations stakeholders to validate issues, clarify remediation guidance, and track closure.
Strong experience supporting Microsoft Purview in enterprise security or compliance environments.
Hands-on knowledge of Purview Information Protection labels, DLP policies, Insider Risk Management scenarios, and Data Lifecycle Management retention policies.
Ability to advise on signed-off Purview design and build guidance across Exchange Online, SharePoint Online, OneDrive, and Microsoft Teams locations.
Familiarity with Microsoft built-in Sensitive Information Types, SOC integration touchpoints, Sentinel or Splunk routing, and Purview issue tracking.
Strong understanding of go-live, Hypercare, warranty support, stakeholder evidence review, and L3 escalation handling.
Requirements:
Able to lead technical conversations with compliance, SOC, IT security, and operations stakeholders.
Strong ownership, clear advisory communication, structured issue management, and practical judgment when guiding configuration evidence review, remediation options, and support closure activities.
Qualifications:
Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field is preferred.
Desirable Microsoft certifications include: SC-401, SC-200, SC-100, SC-300, AZ-500.
Preferred experience:
Experience supporting Microsoft Purview in large enterprise or regulated enterprise environments.
Exposure to Purview go-live, Hypercare, warranty support, and post-implementation stabilization activities.
Experience advising on Information Protection, DLP, IRM, DLM, and SOC integration requirements using Sentinel or Splunk.
Experience working with client-facing delivery teams and coordinating with compliance, SOC, IT security, and operations teams is beneficial.