About The Position

The Manager Data Protection is a first level manager that oversees the day-to-day activities of the Data Protection team and leads the organization’s enterprise data protection program across data discovery, classification, loss prevention, information protection, and data lifecycle governance. This role involves operating Microsoft Purview and related controls, managing data protection risks, and ensuring compliance with relevant laws, regulations, and industry frameworks.

Requirements

  • Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, or a related field; Master’s degree preferred.
  • Minimum 8 years of progressive information security experience, with at least 3 years focused on data protection, DLP, or information governance.
  • Demonstrated hands-on expertise with Microsoft Purview (Information Protection, DLP, Insider Risk Management, Compliance Manager, eDiscovery, and Data Lifecycle Management).
  • Working knowledge of Microsoft 365 platform architecture, including Exchange Online, SharePoint Online, OneDrive, Teams, and Entra ID.
  • Relevant certification required: Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400), or equivalent; CISSP, CISM, or CIPP/E preferred.
  • Experience operating in regulated environments with exposure to SOX ITGC, GDPR, CCPA, or similar data privacy and compliance frameworks.

Nice To Haves

  • Prior experience in a global enterprise (manufacturing, industrial, or comparable complex environment) strongly preferred.
  • Strong verbal, written, and presentation skills, with the ability to explain data protection concepts to both technical and executive audiences and negotiate with business stakeholders.
  • Strong program management skills, with the ability to run multiple workstreams, set priorities, meet deadlines, and communicate status clearly.
  • Track record of growing a program from early stages and delivering measurable risk reduction.
  • Collaborative leader able to influence peers across business units and regions without relying on formal authority.
  • High level of integrity and discretion in handling sensitive and confidential data.
  • Analytical mindset, with the ability to use Purview audit logs, DLP incident data, and insider risk signals to improve the program over time.
  • Takes ownership of outcomes, willing to challenge assumptions, and works well in a fast-moving environment.
  • Stays composed and uses good judgment under pressure during major data incidents or regulatory inquiries.

Responsibilities

  • Own and develop Mohawk’s enterprise Data Protection program across data discovery, classification, loss prevention, information protection, and data lifecycle governance.
  • Maintain the Data Protection roadmap against the Mohawk Information Security Program Framework (MIPF), CIS Controls v8, and NIST CSF 2.0.
  • Track program KPIs and operational metrics, and report status to the Director of AppSec, Vulnerability Management & Data Protection and the CISO.
  • Set and enforce data protection policies, standards, and procedures across business units and regions.
  • Implement and operate Microsoft Purview across Information Protection (sensitivity labels, label policies, auto-labeling), Data Loss Prevention (DLP), Data Lifecycle Management (retention labels and policies), Communication Compliance, and eDiscovery.
  • Lead the enterprise sensitivity labeling taxonomy design and rollout across Microsoft 365 (Exchange, SharePoint, OneDrive, Teams) and integrated third-party platforms.
  • Tune DLP policies for endpoints, cloud services, email, and collaboration tools to reduce false positives while maintaining coverage on PII, PCI, intellectual property, and HR data.
  • Manage Purview Audit and Compliance Manager, and track and report on regulatory posture against SOX, GDPR, CCPA, and other applicable frameworks.
  • Integrate Microsoft Purview with Microsoft Defender XDR, Entra ID P2, and Sentinel/Google SecOps SIEM in coordination with the Microsoft E5 platform team.
  • Oversee enterprise-wide sensitive data discovery across on-premises repositories, Microsoft 365, cloud workloads, and manufacturing systems.
  • Maintain the Mohawk data classification taxonomy and drive adoption across business units through training, communication, and governance.
  • Work with business unit data owners to inventory critical data, assess risk exposure, and prioritize remediation.
  • Run and tune Microsoft Purview Insider Risk Management, including risk policies, escalation workflows, and investigation procedures, in coordination with HR, Legal, and the Incident Response team.
  • Support eDiscovery and legal hold workflows in coordination with Legal and Compliance stakeholders.
  • Provide subject matter expertise for regulatory audits (SOX ITGC, GDPR, and regional privacy laws) pertaining to data protection controls.
  • Hire and lead a team of data protection engineers and analysts, and maintain a staffing plan that keeps pace with program growth.
  • Act as the primary data protection lead on cross-functional projects, including Microsoft Copilot deployment, SharePoint governance remediation, and Microsoft 365 data governance.
  • Partner with Enterprise Architecture, Infrastructure, Legal, HR, and Compliance to build data protection requirements into project delivery and change management.
  • Develop and deliver data protection awareness content in coordination with the security awareness program (KnowBe4).
  • Perform other duties as needed.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service