
Security and Governance Consultant
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in United States.
• Evaluate the readiness of the Microsoft 365 environment for Copilot deployment.
• Assess data exposure risks, concerns regarding oversharing, and the current permissions posture.
• Create recommendations for the secure implementation of Copilot.
• Establish frameworks for AI governance, along with guardrails and usage policies.
• Define the requirements for monitoring and reporting on Copilot activities and risk management.
• Review AI firewalls and perform other security-related tasks.
• Analyze and enhance Microsoft Purview configurations.
• Assess controls related to sensitivity labeling, Data Loss Prevention (DLP), retention, and records management.
• Formulate data protection strategies for regulated and sensitive information.
• Assist in meeting security logging, auditing, and compliance reporting obligations.
• Propose enhancements to controls aimed at minimizing inappropriate content exposure.
• Determine governance roles and responsibilities for Copilot and AI projects.
• Develop approval processes, usage standards, and risk management protocols.
• Ensure AI security controls are aligned with enterprise compliance standards.
• Promote responsible AI practices and provide guidelines for prompt governance.
• Collaborate with stakeholders on policies related to retention, content lifecycle, and information management.
• Evaluate governance strategies for Microsoft Entra ID and Conditional Access.
• Review compliance of devices and management controls under Intune.
• Assess considerations for BYOD and mobile access in relation to Copilot.
• Suggest improvements for identity protection and access control measures.
• Facilitate the integration of security controls across Microsoft security platforms.
• Collaborate with Security Operations and Incident Management teams.
• Review requirements for logging, auditing, and monitoring.
• Advise on the incorporation of Copilot-related security events into existing security monitoring systems.
• Assist in the operationalization of new security controls and processes.
• Over 7 years of experience in Microsoft Security, Compliance, or Governance consulting.
• Extensive expertise in Microsoft Purview.
• Extensive expertise in Microsoft Entra ID.
• Extensive expertise in Microsoft Intune.
• Extensive expertise in Microsoft Defender Suite.
• Extensive expertise in Microsoft 365 Security & Compliance.
• Extensive expertise in Microsoft 365 Copilot Governance.
• Experience working in highly regulated sectors such as financial services, insurance, healthcare, or government.
• Strong knowledge of information protection, DLP, retention, records management, and AI governance.
• Experience in conducting security assessments and developing remediation plans.
• Microsoft Security certifications SC-100, SC-200, SC-300, or SC-400 are preferred.
• Experience with AI governance and secure AI adoption initiatives is preferred.
• Familiarity with Microsoft SharePoint Advanced Management is preferred.
• Experience leading security workshops and engaging with executive stakeholders is preferred.
• Understanding of enterprise security modernization programs and E5/E7 value realization initiatives is preferred.
• Only candidates based in the US will be considered.
• Sponsorship is not available.
• Comprehensive health, dental, and vision insurance.
• Competitive salary and performance-based bonuses.
• Flexible working hours and remote work options.
• Opportunities for professional development and continuous learning.
• Supportive company culture that values diversity and inclusion.
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.