J.S. Held LLC

Senior Data Security Engineer

J.S. Held LLC

Posted 10 hours ago

Employment Type

Full Time

Location

Completely Remote

Requirements

Microsoft 365 security, Azure security, DLP implementation

Job Description

Responsibilities

Data Loss Prevention (DLP) & Information Protection

  • Design, implement, and manage enterprise DLP policies across Microsoft Purview, Box Shield, Azure Information Protection, and third-party DLP solutions
  • Configure and optimize sensitivity labels, classification taxonomies, and automated data discovery workflows to identify and protect sensitive information
  • Conduct regular DLP effectiveness assessments and refine policies based on emerging threats and business requirements

Microsoft 365 Security & Governance

  • Secure data within the Microsoft 365 environment including Exchange, Teams, Office 365, Copilot, Power Platform, etc.
  • Configure and maintain audit logging, insider risk management, data loss prevention and communication compliance features
  • Collaborate with IT teams to enforce security baselines, device compliance policies, and secure collaboration practices across Teams, SharePoint, and OneDrive

Azure Data Security & Cloud Protection

  • Design and implement Azure data security controls using tools such as Azure Defender and other Cloud Security Posture Management (CSPM) tools
  • Deploy and manage Microsoft Defender for Cloud (formerly Azure Security Center) to monitor security posture and remediate vulnerabilities
  • Implement data governance frameworks using Azure Purview for data cataloging, lineage tracking, and compliance scanning
  • Conduct cloud security assessments and ensure adherence to CIS/SOC2 Azure Benchmarks and Microsoft Cloud Security Benchmark

AI Security & Emerging Technologies

  • Develop and implement security controls and guardrails for AI/ML platforms including Azure AI Services, Microsoft 365 Copilot, and other generative AI tools
  • Establish data security best practices for AI training data, model inputs/outputs, and AI-generated content in accordance with CISA and other guidance
  • Monitor AI system access, prompt injection risks, data exfiltration attempts, and adversarial attacks on AI models (DSPM for AI)
  • Collaborate with security, infrastructure, and other engineering teams to implement privacy-preserving techniques and secure AI development lifecycle practices

Requirements

  • Bachelor’s degree in computer science, Information Security, Cybersecurity, or related technical field
  • Minimum 7 years of progressive experience in enterprise data security, information protection, or cybersecurity engineering
  • Minimum 5 years of hands-on experience with Microsoft 365 security and compliance tools (Microsoft Purview, Defender suite, Azure AD/Entra ID)
  • Minimum 3 years of experience with Azure security services and cloud data protection
  • Strong proficiency with Azure security services (Defender for Cloud, Key Vault, Azure Policy, Azure Firewall, Azure Sentinel)
  • Hands-on experience with Box Shield, Box Governance, and Box Platform APIs
  • Advanced knowledge of DLP technologies, data classification frameworks, and information rights management (IRM)
  • Proficiency in scripting/automation using PowerShell, Python, or similar languages for security automation
  • Experience with SIEM/SOAR platforms and security analytics tools
  • Understanding of AI/ML security concepts including data poisoning, model extraction, prompt injection, and adversarial attacks
  • Familiarity with compliance frameworks (NIST CSF, CIS Controls, ISO 27001/27701, GDPR, CCPA)

Preferred Qualifications

  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400)
  • Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900)
  • Certified Cloud Security Professional (CCSP)
  • Experience with AI/ML security or securing generative AI platforms in enterprise environments
  • Experience in consulting, professional services, or financial services organizations

Benefits

  • Generous Annual Leave Policy
  • Comprehensive Medical Insurance
  • Flexible work environment

About the Company

J.S. Held, a global consulting firm providing specialized technical, scientific, financial, and advisory services, is seeking a Senior Data Security Engineer to lead the design, implementation, and governance of enterprise data security programs across platforms such as Microsoft 365, Box, Azure, and emerging AI platforms. This role is critical to protecting sensitive client and corporate information, ensuring regulatory compliance, and advancing the firm's data protection capabilities in a rapidly evolving threat landscape.

The ideal candidate will bring deep technical expertise in cloud data security, DLP technologies, and AI security frameworks, combined with strong collaboration skills to work across IT, compliance, legal, and business units.

How to Apply

Similar Jobs You Might Be Interested In

Join Dubai's Remote Work Revolution.

Stay ahead in your career with Dubai's first platform dedicated to remote and hybrid job opportunities. Subscribe for weekly insights and job alerts directly to your inbox.

Thank you for subscribing! Check your inbox for confirmation.
Weekly Job Alerts
Subscribe to receive curated lists of the best remote and hybrid job opportunities in Dubai, tailored to your skills and interests.
Weekly Blog Newsletter
Get the latest insights, trends, and advice on remote work every week to help you thrive in the evolving work environment.