W2 - Security Compliance Architect

Remote • Posted 1 hour ago • Updated 1 hour ago
Contract W2
3 Months
No Travel Required
Remote
Depends on Experience
Fitment

Dice Job Match Score™

📋 Comparing job requirements...

Job Details

Skills

  • Microsoft Purview/DLP
  • SharePoint Online
  • compliance architecture
  • CUI/NIST 800-171
  • Cyber Security
  • Auditing
  • Cisco Certifications
  • Entra ID / Azure AD
  • Microsoft SharePoint Online
  • Microsoft Purview
  • Data Loss Prevention (DLP)
  • Microsoft Information Protection (MIP)
  • Microsoft 365 security
  • Information Protection / Data Classification
  • Sensitivity Labels
  • DLP policy design and implementation
  • Secure collaboration
  • Data boundary / controlled data boundary
  • Security architecture
  • Compliance-driven security controls
  • Audit / evidence / logging
  • Policy exception management
  • CUI (Controlled Unclassified Information)
  • NIST 800-171
  • ITAR
  • Secure enclave
  • Exchange Online
  • Endpoint DLP
  • Defender for Endpoint
  • External sharing controls
  • Least privilege / access control
  • Control mapping
  • Risk assessment / gap analysis
  • Regulated environments

Summary

Security / Compliance Architect – DLP, CUI Boundary, and Secure Enclave

 

Note: One of the candidate has back-out recently, We need some who can join us by Aug 17th

 

Position:  Security / Compliance Architect – DLP, CUI Boundary, and Secure Enclave

Location: remote

3 months Contract

 

 

“Need Hands-on Experience with MS SharePoint and DLP”

 

Role Summary

The Security / Compliance Architect is the primary security design authority for the engagement. This role is responsible for defining the controlled data boundary, translating compliance and business requirements into enforceable controls, shaping the secure enclave design, and ensuring the overall solution is defensible from a governance, audit, and risk-management standpoint.

This is a client-facing onshore role requiring strong experience in data protection, compliance-aligned architecture, information protection controls, and regulated collaboration environments.

Key Responsibilities

  • Lead the definition of the controlled data / CUI boundary, including in-scope users, repositories, workflows, endpoints, and approved handling paths.
  • Translate customer requirements into a target-state security architecture for a secure collaboration enclave.
  • Define the DLP and information protection strategy across collaboration, email, endpoint, and removable media channels.
  • Establish the control intent for classification, labeling, monitoring, restriction, blocking, exception handling, and audit evidence generation.
  • Drive alignment between business process requirements and security control design to ensure the solution is usable as well as compliant.
  • Lead design decisions related to:
    • approved vs non-approved storage locations
    • secure collaboration patterns
    • external sharing restrictions
    • exception governance
    • evidence and logging requirements
  • Review current-state data handling patterns and identify exposure points, control gaps, and architectural risks.
  • Produce client-facing security design artifacts, including boundary definitions, control strategies, architecture requirements, and decision packs.
  • Support design reviews, steering discussions, and executive readouts.
  • Work closely with the platform lead to ensure Microsoft control implementation aligns with security intent.
  • Support pilot validation by reviewing policy effectiveness, exception scenarios, usability impacts, and audit defensibility.
  • Provide oversight during deployment and handover to ensure the final state aligns with the approved security design.

Required Skills and Experience

  • 8+ years in cybersecurity architecture, security consulting, or security engineering roles.
  • Strong experience in one or more of the following:
    • Data Loss Prevention
    • Information Protection / Data Classification
    • Secure collaboration architecture
    • Microsoft Purview / MIP / DLP
    • Compliance-driven security design
  • Experience defining and operationalizing controls for sensitive or regulated data.
  • Strong understanding of:
    • secure data boundaries
    • access control and least privilege concepts
    • audit evidence requirements
    • policy exception governance
    • endpoint, email, and collaboration security controls
  • Experience working directly with business stakeholders, security leadership, and platform teams in regulated environments.
  • Strong workshop facilitation, requirements analysis, and executive communication skills.
  • Ability to convert ambiguous customer requirements into precise security architecture decisions.

Preferred Skills

  • Experience supporting environments involving CUI, ITAR-sensitive handling models, NIST 800-171 aligned controls, or regulated operations.
  • Familiarity with Microsoft Entra ID, SharePoint Online, Exchange Online, endpoint protection controls, and Microsoft-native security services.
  • Experience with control mapping, evidence design, and audit support for regulated programs.
  • Prior experience in DLP strategy and secure enclave design.

 

Education / Certifications

Preferred but not mandatory:

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related discipline
  • CISSP, CISM, CCSP, or equivalent
  • Microsoft security certifications are a plus

 

 

  • Microsoft SharePoint Online – hands-on
  • Microsoft Purview
  • Data Loss Prevention (DLP)
  • Microsoft Information Protection (MIP)
  • Microsoft 365 security
  • Information Protection / Data Classification
  • Sensitivity Labels
  • DLP policy design and implementation
  • Secure collaboration
  • Data boundary / controlled data boundary
  • Security architecture
  • Compliance-driven security controls
  • Audit / evidence / logging
  • Policy exception management

Strong differentiators

  • CUI (Controlled Unclassified Information)
  • NIST 800-171
  • ITAR
  • Secure enclave
  • Entra ID / Azure AD
  • Exchange Online
  • Endpoint DLP
  • Defender for Endpoint
  • External sharing controls
  • Least privilege / access control
  • Control mapping
  • Risk assessment / gap analysis
  • Regulated environments
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91126058
  • Position Id: 9055663
  • Posted 1 hour ago
Contact the job poster
Anusha Chenna

Anusha Chenna

Recruiter @ Prohires
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

2d ago

Easy Apply

Contract

Depends on Experience

Remote

16d ago

Easy Apply

Third Party, Contract

55

Remote or Atlanta, Georgia

Today

Full-time

USD 130,000.00 - 160,000.00 per year

Remote

15d ago

Full-time

Depends on Experience

Search all similar jobs