Microsoft Data Protection Consultant
Microsoft Data Protection & Security Consultant (Purview, Sentinel, Defender) – Remote UK – Full time Permanent
An opportunity has arisen for a Cyber Security Consultant specialising in Microsoft security technologies, with a strong focus on data protection, compliance, and threat protection across the Microsoft ecosystem.
This role will involve working with enterprise environments to design and implement modern data protection strategies, leveraging the Microsoft Security, Compliance and Identity platform.
Key Responsibilities
- Design and implement Zero Trust security architectures using Microsoft security technologies
- Lead the deployment and configuration of Microsoft Purview to support data governance, information protection, compliance, insider risk management and data loss prevention (DLP)
- Implement and configure Microsoft Defender security solutions, including Defender for Endpoint, Defender for Identity and Defender for Cloud Apps
- Deploy and configure Microsoft Sentinel to support threat detection, monitoring and incident response
- Develop and maintain data classification, labelling and retention policies across enterprise environments
- Implement Data Security Posture Management (DSPM) strategies for AI systems to ensure secure data flows and privacy compliance
- Conduct data protection and security risk assessments and provide recommendations to strengthen security posture
- Support technical workshops, discovery sessions and security governance activities with stakeholders
- Provide guidance on data lifecycle management, regulatory compliance and privacy frameworks
- Deliver technical documentation, best practices and knowledge transfer to internal and client teams.
- Stay current with evolving threats, vulnerabilities and Microsoft security platform updates
Required Experience & Skills
Hands-on expertise with Microsoft Purview, including:
- Data Loss Prevention (DLP)
- Information Protection
- Data classification and labelling
- Insider Risk Management
- eDiscovery and compliance capabilities
Strong experience with Microsoft Defender security products, including:
- Defender for Endpoint
- Defender for Identity
- Defender for Cloud Apps
- Defender for Cloud
- Experience deploying and managing Microsoft Sentinel for threat detection and security monitoring
- Strong understanding of Zero Trust security architecture
- Experience designing and implementing data governance and data protection strategies
- Knowledge of data confidentiality, integrity and privacy principles
- Experience securing Microsoft 365 and Office 365 environments, including Secure Score optimisation
Strong understanding of data protection regulations and frameworks, such as:
- GDPR
- Data Protection Act 2018
- ISO 27001
- NIST security frameworks
- EU AI Act
- Familiarity with AI security concepts, including Data Security Posture Management (DSPM), model governance and data lineage
- Experience delivering security workshops, advisory engagements or consulting services
- Strong stakeholder communication and client engagement skills
Certifications
Candidates should ideally hold one or more of the following certifications:
Microsoft Security Certifications
- SC-400 – Microsoft Information Protection Administrator (Purview)
- SC-200 – Microsoft Security Operations Analyst (Sentinel)
- SC-100 – Microsoft Cybersecurity Architect
- AZ-500 – Microsoft Azure Security Engineer
Additional Security Certifications (beneficial)
- CISSP
- CISM
- CIPP/E
- Microsoft AI or cloud security certifications