Lead Data Security Architect

Job not on LinkedIn

🔥 2 hours ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of VAILEXA

VAILEXA

51 - 200 employees

Founded 2020

🎯 Recruiter

👥 HR Tech

Recruitment • HR Tech

VAILEXA is a talent solutions and recruitment firm that provides customized staffing and end-to-end hiring services for businesses. VAILEXA offers Recruitment Process Outsourcing (RPO), executive search and headhunting, global recruitment solutions, and professional HR consulting (policy management, employee engagement, leadership training). The company emphasizes data-driven workforce planning and predictive analytics, with real-time dashboards, scenario planning, and skills gap analysis to help clients scale. VAILEXA serves multiple industries (technology & SaaS, financial services & banking, government & public sector, logistics & transportation, healthcare & life sciences, energy, manufacturing, retail, semiconductor, insurance) and highlights customer-facing metrics such as 300+ happy clients, 98% client retention, 88% placement success, and fast time-to-shortlist.

📋 Description

• Understand objectives, scope, current-state challenges, governance expectations, and desired outcomes for the broader data security and remediation effort. • Review relevant SharePoint, OneDrive, Microsoft Purview, and Cyera context to identify where sensitive data exposure, oversharing, policy gaps, workflow constraints, or remediation backlog items are creating risk. • Connect discovery, classification, tagging, labeling, remediation, and governance activities into one integrated project approach that supports practical execution and long-term operating maturity. • Work with client teams to identify priority findings, ownership paths, decision points, remediation dependencies, and near-term actions requiring deeper technical validation. • Assess how sensitive data is currently discovered, classified, tagged, labeled, monitored, and remediated across SharePoint, OneDrive, Cyera, and Microsoft Purview. • Help define and refine classification, tagging, and labeling practices that support remediation, DLP policy alignment, access governance, and ongoing data protection objectives. • Provide architecture-level guidance on labeling strategy, DLP policy impacts, access exposure, exception handling, and control behavior across the client’s Microsoft 365 and DSPM environment. • Maintain and support client’s governance model, operational workflows, and risk reduction priorities. • Work hands-on in Cyera and Microsoft Purview to improve findings, validate root cause, confirm control behavior, and support remediation actions. • Support controlled validation activities in approved environments to confirm that remediation actions reduce exposure without creating unacceptable business disruption. • Partner with security operations, DLP, governance, compliance, and business stakeholders to ensure findings are triaged, assigned, remediated, and tracked consistently. • Define practical measures of remediation progress, including closure rate, exposure reduction, policy effectiveness, escalation clarity, and audit readiness. • Take action to integrate DSPM, Microsoft Purview, classification, labeling, DLP, access governance, and incident response workflows. • Document recommended ownership, cadence, escalation paths, and governance checkpoints so remediation can continue beyond the initial project window. • Apply solutions to business-case terms, connecting technical remediation to risk reduction, operational maturity, and governance outcomes.

🎯 Requirements

• 7+ years in security architecture, data security, or related cybersecurity consulting roles, with demonstrated ownership of client-facing engagements from scoping through delivery. • Genuinely hands-on-keyboard — able to log into Cyera and Microsoft Purview directly, investigate a finding, and drive it to remediation personally, not only direct others to do so. This is a client-stated requirement, not a nice-to-have. • Deep working knowledge of Microsoft 365 data-layer security: SharePoint Online, OneDrive for Business, Microsoft Purview (DLP, sensitivity labels, Insider Risk Management, Audit), and Entra ID access/consent fundamentals. • Direct, practical expertise in Cyera specifically — Client 's enterprise-standard DSPM platform — including how to investigate and remediate findings, not just interpret dashboards. • Demonstrated ability to remediate findings surfaced by Cyera or any DLP tooling — revoking access, adjusting policy, closing out flagged exposure — since the client's core concern is remediation capability, not just detection or reporting. • Demonstrated ability to design and lead purple-team-style validation exercises (not full red-team penetration testing) — controlled, safety-guard railed simulations in test environments. • Strong command of incident response fundamentals: MTTD/MTTC measurement, scope determination, evidence/audit readiness, and remediation tracking, including how DLP findings hand off to the SOC for incident response. • Comfort working as a peer alongside a client's existing in-house DLP engineer — augmenting and unblocking their work, not replacing or duplicating it. • Working knowledge of relevant regulatory and contractual notification obligations (e.g., state breach notification laws, SEC cyber disclosure rules) sufficient to guide discovery questions — not intended to substitute for the client's own legal/compliance counsel. • Excellent stakeholder-facing communication skills; able to translate technical findings into a business case for both technical and executive audiences. • Hands-on experience with both Cyera and Varonis is viewed favorably by the client, even though Cyera is the enterprise-standard platform — broader DSPM platform fluency is a plus. • Relevant certifications such as CISSP, SANS/GIAC (e.g., GDSA, GCTI), or Microsoft security certifications (SC-100, SC-401). • Experience assessing Copilot for M365 or other generative-AI access-exposure risk ahead of rollout. • Prior experience in a public-company or regulated-industry environment (industrial, manufacturing, or similar). • Comfort operating within a formal enterprise data governance structure spanning multiple business units — Data Governance Council, segment governance leads, RACI-based accountability model. We strive to create an environment where all employees are empowered to succeed based on their skills, performance, and dedication.

🏖️ Benefits

• Health insurance • 401(k) matching • Flexible work hours • Paid time off • Remote work options

Apply Now

Similar Jobs

🔥 2 hours ago

GuidePoint Security

201 - 500

💼 Consulting

🏥 Healthcare

📦 Logistics

Security Engineer solving complex challenges and providing support for network security clients. Collaborating with sales teams and developing strategic security solutions in the Heartland region.

Firewalls

Linux

MacOS

Splunk

🔥 2 hours ago

Founders Founders

2 - 10

🤝 B2B

☁️ SaaS

IT Security Officer safeguarding organizational data and systems in a cybersecurity role. Develops policies, leads incident response, and ensures compliance with standards.

Cyber Security

🔥 2 hours ago

Electrosoft

51 - 200

🔒 Cybersecurity

🤖 Artificial Intelligence

🏛️ Government

Cybersecurity Assessment and Authorization SME supporting the Department of War's cybersecurity program at Electrosoft. Evaluating security controls and providing expert guidance on compliance regulations.

Cloud

Cyber Security

🔥 3 hours ago

Abacus Group

501 - 1000

🔒 Cybersecurity

🏥 Healthcare

Cybersecurity Engineer collaborating closely with Cybersecurity and Engineering teams to handle escalated issues. Supporting new security initiatives and mentoring junior members of the team.

Cloud

🔥 3 hours ago

EWOR

201 - 500

📚 Education

💸 Finance

💼 Consulting

Co-Founder / CPTO leading a Cybersecurity startup with funding and mentorship from successful entrepreneurs. Taking full responsibility for the startup's growth and management.

Cyber Security