Mount Indie logo
Mount IndiePosted 1 week ago

Senior Data Security Engineer - DRM

HybridTampa, Florida, United States

Full TimeSenior LevelBachelors Degree

Job Summary

Architect, deploy, and manage Active Directory Rights Management (AD-RMS) and Azure RMS to enforce persistent protection of files and emails across hybrid networks. Design security policies within the Microsoft Defender suite, including Purview, Cloud Apps, and Entra ID, to control resource access based on device compliance and risk. Drive data catalog integration with Palantir and Microsoft Unified Catalog to track data movement, while connecting discovery tools to enterprise databases to scan for sensitive indicators. Utilize Microsoft Purview Data Map to inventory data in AWS S3 and Azure Blobs, and collaborate with mission owners to train Machine Learning classifiers for accurate data classification. Requires Top-Secret clearance with SCI eligibility and 10+ years of enterprise systems engineering experience. Join the Zero Trust initiative at U.S. Special Operations Command, headquartered in DC.

Required Qualifications

  • Bachelor's degree (BS) in Computer Science, Cybersecurity, Information Technology, or a related technical discipline
  • Master's degree (MA/MS)
  • 10+ years of relevant experience in enterprise systems engineering, data security, or cybersecurity operations
  • Proven experience implementing and administering AD-RMS and Azure RMS in complex, multi-domain, or hybrid cloud environments
  • Experience dealing with large-scale data environments (Petabyte scale)
  • Solid understanding of data lineage, provenance, and classification concepts
  • Deep expertise in the Microsoft Defender suite, specifically: Microsoft Purview (Sensitivity Labeling, DLP, Information Barrier policies), Microsoft Defender for Cloud Apps (MCAS policies and session controls), Microsoft Entra ID (Identity and Access Management), Microsoft Conditional Access (Context-aware security policies)
  • Active Top-Secret clearance with SCI eligibility

Desired Qualifications

  • Advanced knowledge of Kusto Query Language (KQL) for writing sophisticated detection rules, hunting queries, and diagnostic analysis within Microsoft Sentinel/Purview
  • Strong proficiency in Splunk Processing Language (SPL) for building advanced dashboards, alerts, and performing forensic analysis
  • Proficiency with Kubernetes and Docker, as modern data collectors and agents are frequently deployed as containerized microservices
  • Proven experience integrating and managing metadata across enterprise catalogs such as Palantir, Microsoft Unified Catalog, and utilizing Purview Audit and Activity Explorer to monitor data lifecycle events
  • Strong understanding of storage protocols (NFS, SMB/CIFS, S3) and database structures (SQL, NoSQL) to troubleshoot connectivity and security scanning access

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce