What are the responsibilities and job description for the Data Protection Analyst Microsoft Purview position at Northern Base?
Job Description
Must Have Technical/Functional Skills:
• 3 years of experience in Data Protection, Information Security, Compliance, or Data Governance.Data Protection Analyst, Data Protection Analyst – Purview, Microsoft Purview
• Hands-on experience with Microsoft Purview (DLP, Information Protection, Data Classification, Retention, eDiscovery).
• Strong knowledge of Microsoft 365 Security & Compliance features.
• Experience implementing and managing Data Loss Prevention (DLP) policies across Exchange, SharePoint, OneDrive, and Teams.
• Understanding of data classification, sensitivity labels, retention, and records management.
• Familiarity with compliance and regulatory standards such as GDPR, HIPAA, SOX, ISO 27001, and NIST.
• Experience investigating data protection incidents, compliance alerts, and policy violations.
• Knowledge of Microsoft Entra ID (Azure AD) and access management concepts.
• Basic to intermediate PowerShell scripting skills for administration and automation.
• Experience creating compliance reports, dashboards, and audit documentation.
• Strong analytical, problem-solving, and communication skills.
• Ability to work effectively with security, compliance, legal, and business teams.
• Bachelor's degree in Engineering, Computer Science, or related discipline.
Roles & Responsibilities:
• Administer and configure Microsoft Purview, including Data Loss Prevention, Information Protection, Insider Risk Management, and eDiscovery.
• Develop and enforce data classification and labeling strategies, including sensitivity labels and retention policies.
• Plan, design, simulate, and deploy DLP policies, applying Adaptive Protection for dynamic, risk-based data controls.
• Create, manage, and enforce DLP policies across cloud apps, email, devices, Microsoft Fabric, and AI within the Microsoft Purview portal.
• Own governance for data protection capabilities including document classification, labeling, retention, and DLP.
• Design, implement, and automate enterprise data-protection capabilities that safely govern sensitive information across cloud workloads.
• Monitor alerts, investigate incidents, and tune policies to balance detection efficacy with operational impact.
• Collaborate with security operations, compliance, and information protection administrators.
Good to Have:
Excellent communication
Team collaboration
Documentation and knowledge sharing
Any Technical Certification is Preferred