وصف الوظيفة
المستشار لأمن البيانات والامتثال Microsoft 365 مسؤول عن التنفيذ الشامل، والإعداد، ونشر حلول Microsoft Purview عبر نظام Microsoft 365 البيئي.
ستتولى مسؤولية تنفيذ حوكمة البيانات على مستوى المؤسسة، وحماية المعلومات، والامتثال، وإدارة المخاطر باستخدام Microsoft Purview — بما في ذلك حماية المعلومات، حماية البيانات ضد فقدان البيانات (DLP)، إدارة السجلات، إدارة مخاطر الداخلين، امتثال الاتصالات، الاستكشاف القضائي الإلكتروني، والتدقيق — لضمان بقاء بيانات المؤسسة آمنة ومتوافقة ومحكومة بشكل مناسب.
هذا دور استشاري وهندسي عملي يركز على التنفيذ: تحويل المتطلبات التنظيمية والتجارية إلى حلول Microsoft Purview جاهزة للإنتاج، وتحمل مسؤولية دورة النشر، والتأكد من أن ضوابط حوكمة البيانات متوافقة مع معايير الأمن والخصوصية والامتثال على مستوى المؤسسة.
المسؤوليات: تصميم حماية المعلومات وتصنيف البيانات، تصميم وتكوين ونشر حلول Microsoft Purview استناداً إلى امتثال العميل والمتطلبات القانونية والخصوصية وبيئة العمل.
إجراء ورش اكتشاف مع أصحاب المصالح بالامتثال والقانون والخصوصية وتكنولوجيا المعلومات لدى العميل لتطوير التصميم المستهدف لحوكمة البيانات وحلول Microsoft Purview.
تنفيذ أطر تصنيف البيانات المؤسساتية باستخدام تسميات الحساسية، حماية المعلومات من مايكروسوفت، الوسم التلقائي، التشفير، وحماية مستوى الحاوية عبر خدمات Microsoft 365 ونقاط النهاية.
تطوير وصيانة سياسات حماية المعلومات المؤسسية بما يتوافق مع المتطلبات التنظيمية والامتثال المؤسسي.
حماية البيانات من فقدانها وإدارة السجلات: إعداد سياسات DLP عبر أعباء Microsoft 365 ونقاط النهاية وبيئات السحابة باستخدام تسميات الحساسية وأنواع المعلومات الحساسة لمنع مشاركة البيانات الخاضعة للأنظمة دون إذن.
نشر تسميات الاحتفاظ، سياسات الاحتفاظ، إدارة السجلات، مراجعات التصرف، الاحتجاز القانوني، وميزات الاحتفاظ التنظيمي لتلبية متطلبات الامتثال المؤسسي والتنظيمي.
إعداد سياسات إدارة دورة حياة البيانات لضمان الاحتفاظ المتوافق، والأرشفة، والتصرف في معلومات المؤسسة.
إدارة المخاطر الداخلية والاستكشاف القضائي الإلكتروني والامتثال: تهيئة إدارة مخاطر الداخلين، امتثال الاتصالات، الاستكشاف القضائي الإلكتروني (القياسي والمتميز)، وعمليات التدقيق لدعم التحقيقات، والاكتشاف القانوني، والفحوص التنظيمية.
تنفيذ ضوابط التدقيق والامتثال التي تدعم حوكمة المؤسسة، والتقارير التنظيمية، ومتطلبات الاحتجاز القانوني.
التعاون مع مستشاري التعاون والمحتوى ونطاقات Microsoft 365 Copilot لضمان تصنيف المحتوى المؤسسي، وحمايته، وإدارته بشكل صحيح لاستخدام آمن لـ Copilot في Microsoft 365.
ملكية النشر والحوكمة: امتلاك دورة النشر الكاملة من ورش الاكتشاف وتقييمات الامتثال حتى تصميم الحل، والتنفيذ، والتشغيل المرحلي، ونشر الإنتاج، والاختبار، ونقل التشغيل.
تطوير خطوط أساس قابلة لإعادة الاستخدام لتكوين Microsoft Purview، ونماذج السياسات، وأدلة النشر، ووثائق التنفيذ، ودفاتر التشغيل.
إنتاج وثائق التصميم الفني ووثائق التنفيذ، وأدلة التشغيل، ومواد نقل المعرفة لدعم العمليات المستمرة.
التوجيه والاستشارة مع العملاء والتعاون مع أصحاب المصلحة: العمل كمستشار موثوق به من خلال ترجمة المتطلبات التنظيمية والخصوصية وحوكمة البيانات إلى حلول Microsoft Purview مع التوصية بممارسات Microsoft والصناعة الأفضل.
التعاون عن كثب مع فرق التعاون والمحتوى، ونقاط النهاية والهوية، و Copilot والذكاء الاصطناعي، والأمن السيبراني، وأصحاب المصلحة لدى العميل لتقديم حلول أمان وامتثال متكاملة لـ Microsoft 365.
إجراء ورش اكتشاف مع العملاء، وتقييمات الامتثال، وجلسات تصميم الحل، وأنشطة تخطيط النشر مع التأكد من توافق الحلول المنشورة مع معايير الحوكمة والامتثال والأمن التنظيمي.
ثقافتنا ومدونة السلوك: في ZainTECH، نفتخر بثقافة مبنية على التعاون والابتكار والنزاهة بلا مساومة.
نحن نبحث عن أفراد يشتركون في هذه القيم ويلتزمون بمركزيّة العملاء والتميّز الأخلاقي.
من المتوقع أن يلتزم جميع الموظفين بمدونة السلوك لدينا التي تعتبر إطاراً توجيهياً للسلوك المسؤول في كل ما نقوم به — من طريقة عملنا مع بعضنا البعض إلى كيفية تعاملنا مع العملاء والشركاء عالمياً.
تصميم، تكوين، ونشر حلول Microsoft Purview استناداً إلى امتثال العميل والمتطلبات القانونية والخصوصية وبيئة العمل.
إجراء ورش اكتشاف مع أصحاب المصالح بالامتثال والقانون والخصوصية وتكنولوجيا المعلومات لدى العميل لتطوير التصميم المستهدف لحوكمة البيانات وحلول Microsoft Purview.
تنفيذ أطر تصنيف البيانات المؤسسة باستخدام تسميات الحساسية، حماية المعلومات من مايكروسوفت، الوسم التلقائي، التشفير، وحماية مستوى الحاوية عبر خدمات Microsoft 365 ونقاط النهاية.
تطوير وصيانة سياسات حماية المعلومات المؤسسية بما يتوافق مع المتطلبات التنظيمية والامتثال المؤسسي.
إعداد سياسات Data Loss Prevention (DLP) عبر أعباء Microsoft 365 ونقاط النهاية وبيئات السحابة باستخدام تسميات الحساسية وأنواع المعلومات الحساسة لمنع مشاركة البيانات المنظمة بشكل غير مصرح به.
نشر تسميات الاحتفاظ، سياسات الاحتفاظ، إدارة السجلات، مراجعات التصرف، الاحتجاز القانوني، وميزات الاحتفاظ التنظيمي لتلبية متطلبات الامتثال المؤسسي والتنظيمي.
إعداد سياسات إدارة دورة حياة البيانات لضمان الاحتفاظ المتوافق، والأرشفة، والتصرف في معلومات المؤسسة.
إعداد إدارة مخاطر الداخلين، امتثال الاتصالات، الاستكشاف القضائي الإلكتروني (القياسي والمتميز)، وعمليات التدقيق لدعم التحقيقات، والاكتشاف القانوني، والفحوص التنظيمية.
تنفيذ ضوابط التدقيق والامتثال التي تدعم حوكمة المؤسسة، والتقارير التنظيمية، ومتطلبات الاحتجاز القانوني.
الشراكة مع مستشري التعاون والمحتوى ونطاقات Microsoft 365 Copilot لضمان تصنيف المحتوى المؤسسي بشكل مناسب، وحمايته، وتوجيهه من أجل تبني آمن لـ Microsoft 365 Copilot.
امتلاك دورة النشر الكاملة من ورش الاكتشاف وتقييمات الامتثال حتى تصميم الحل وتنفيذه وتنفيذ النشرات المرحلية ونشر الإنتاج والاختبار ونقل التشغيل.
تطوير خطوط أساس قابلة لإعادة الاستخدام لتكوين Microsoft Purview، وقوالب السياسات، وأدلة النشر، ووثائق التنفيذ، ودفاتر التشغيل.
إنتاج وثائق التصميم الفني، ووثائق التنفيذ، وأدلة التشغيل، ومواد نقل المعرفة لدعم العمليات المستمرة.
العمل كمستشار موثوق به من خلال ترجمة المتطلبات التنظيمية والخصوصية وحوكمة البيانات إلى حلول Microsoft Purview مع التوصية بممارسات Microsoft والصناعة الأفضل.
التعاون بشكل وثيق مع التعاون والمحتوى، ونطاق النهاية والهوية، و Copilot والذكاء الاصطناعي، والأمن السيبراني، وأصحاب المصلحة لدى العميل لتقديم حلول أمان وامتثال متكاملة لـ Microsoft 365.
إجراء ورش اكتشاف مع العملاء، وتقييمات الامتثال، وجلسات تصميم الحل، وأنشطة تخطيط النشر مع التأكد من توافق الحلول المنشورة مع معايير الحوكمة والامتثال والأمن التنظيمي.
Job description
The Microsoft 365 Data Security & Compliance Consultant is responsible for the end-to-end implementation, configuration, and deployment of Microsoft Purview solutions across the Microsoft 365 ecosystem.
You will take ownership of implementing enterprise data governance, information protection, compliance, and risk management solutions using Microsoft Purview—including Information Protection, Data Loss Prevention (DLP), Records Management, Insider Risk Management, Communication Compliance, eDiscovery, and Audit—to ensure enterprise data remains secure, compliant, and governed.
This is a hands-on consulting and engineering role focused on delivery: translating regulatory and business requirements into production-ready Microsoft Purview solutions, owning the deployment lifecycle, and ensuring data governance controls are aligned with enterprise security, privacy, and compliance standards.
Responsibilities: Information Protection & Data Classification Design, configure, and deploy Microsoft Purview solutions based on client compliance, legal, privacy, and business requirements.
Conduct discovery workshops with client compliance, legal, privacy, and IT stakeholders to develop target-state data governance and Microsoft Purview solution designs.
Implement enterprise data classification frameworks using Sensitivity Labels, Microsoft Information Protection, auto-labeling, encryption, and container-level protection across Microsoft 365 services and endpoints.
Develop and maintain enterprise information protection policies aligned with regulatory and organizational compliance requirements.
Data Loss Prevention & Records Management Configure Data Loss Prevention (DLP) policies across Microsoft 365 workloads, endpoints, and cloud environments using sensitivity labels and sensitive information types to prevent unauthorized sharing of regulated data.
Deploy retention labels, retention policies, records management, disposition reviews, legal hold, and regulatory retention capabilities to meet organizational and regulatory compliance requirements.
Configure data lifecycle management policies to ensure compliant retention, archival, and disposition of enterprise information.
Insider Risk, eDiscovery & Compliance Configure Insider Risk Management, Communication Compliance, eDiscovery (Standard and Premium), and Audit solutions to support investigations, legal discovery, and regulatory examinations.
Implement audit and compliance controls that support organizational governance, regulatory reporting, and legal hold requirements.
Partner with Collaboration & Content and Microsoft 365 Copilot consultants to ensure enterprise content is appropriately classified, protected, and governed for secure Microsoft 365 Copilot adoption.
Deployment Ownership & Governance Own the complete deployment lifecycle from discovery workshops and compliance assessments through solution design, implementation, staged rollouts, production deployment, testing, and operational handover.
Develop reusable Microsoft Purview configuration baselines, policy templates, deployment guides, implementation documentation, and operational runbooks.
Produce technical design documents, implementation documentation, operational guides, and knowledge transfer materials to support ongoing operations.
Client Advisory & Stakeholder Collaboration Act as a trusted advisor by translating regulatory, privacy, and data governance requirements into Microsoft Purview solutions while recommending Microsoft and industry best practices.
Collaborate closely with Collaboration & Content, Endpoint & Identity, Copilot & AI, Cybersecurity, and client stakeholders to deliver integrated Microsoft 365 security and compliance solutions.
Conduct client discovery workshops, compliance assessments, solution design sessions, and deployment planning activities while ensuring deployed solutions align with governance, regulatory, and organizational security standards.
Our Culture & Code of Conduct: At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity.
We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence.
All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.
Design, configure, and deploy Microsoft Purview solutions based on client compliance, legal, privacy, and business requirements.
Conduct discovery workshops with client compliance, legal, privacy, and IT stakeholders to develop target-state data governance and Microsoft Purview solution designs.
Implement enterprise data classification frameworks using Sensitivity Labels, Microsoft Information Protection, auto-labeling, encryption, and container-level protection across Microsoft 365 services and endpoints.
Develop and maintain enterprise information protection policies aligned with regulatory and organizational compliance requirements.
Configure Data Loss Prevention (DLP) policies across Microsoft 365 workloads, endpoints, and cloud environments using sensitivity labels and sensitive information types to prevent unauthorized sharing of regulated data.
Deploy retention labels, retention policies, records management, disposition reviews, legal hold, and regulatory retention capabilities to meet organizational and regulatory compliance requirements.
Configure data lifecycle management policies to ensure compliant retention, archival, and disposition of enterprise information.
Configure Insider Risk Management, Communication Compliance, eDiscovery (Standard and Premium), and Audit solutions to support investigations, legal discovery, and regulatory examinations.
Implement audit and compliance controls that support organizational governance, regulatory reporting, and legal hold requirements.
Partner with Collaboration & Content and Microsoft 365 Copilot consultants to ensure enterprise content is appropriately classified, protected, and governed for secure Microsoft 365 Copilot adoption.
Own the complete deployment lifecycle from discovery workshops and compliance assessments through solution design, implementation, staged rollouts, production deployment, testing, and operational handover.
Develop reusable Microsoft Purview configuration baselines, policy templates, deployment guides, implementation documentation, and operational runbooks.
Produce technical design documents, implementation documentation, operational guides, and knowledge transfer materials to support ongoing operations.
Act as a trusted advisor by translating regulatory, privacy, and data governance requirements into Microsoft Purview solutions while recommending Microsoft and industry best practices.
Collaborate closely with Collaboration & Content, Endpoint & Identity, Copilot & AI, Cybersecurity, and client stakeholders to deliver integrated Microsoft 365 security and compliance solutions.
Conduct client discovery workshops, compliance assessments, solution design sessions, and deployment planning activities while ensuring deployed solutions align with governance, regulatory, and organizational security standards.