ORB-REC-0059
Your responsibilities: Lead the architecture, design and implementation of Microsoft Purview IRM capabilities Define and configure sensitivity labels, encryption policies, data classification rules and access control models. Assess current information protection controls and recommend target-state architecture,implementation roadmap and migration approach. Provide SME guidance on IRM policy design, label taxonomy, auto-labelling, DLP integration and data lifecycle governance. Support testing, pilot deployment, user adoption, troubleshooting and operational handover activities. Produce architecture documents, configuration guides, implementation runbooks and control evidence for audit and governance reviews. Ensure solution alignment with banking security standards, data privacy expectations and enterprise control frameworks. Mentor implementation teams and provide technical assurance across design, build and deployment phases Essential skills/knowledge/experience: Strong hands-on experience in Microsoft Purview Information Protection / Information Rights Management, including sensitivity labels, encryption, label policies, rights management controls and secure sharing models. Deep understanding of Microsoft 365 security and compliance workloads, including Exchange Online, SharePoint Online, OneDrive, Teams, Endpoint DLP and Purview compliance portal administration. Experience designing enterprise label taxonomy, classification models, auto-labelling policies, protection templates and data handling controls for regulated environments. Strong knowledge of data loss prevention, data discovery, sensitive information types, trainable classifiers, data lifecycle management and integration of Purview controls with broader data security processes. Ability to translate regulatory, privacy, audit and banking control requirements into technical Purview configurations, implementation patterns and measurable control outcomes. Good understanding of identity and access management concepts, including Microsoft EntraID, conditional access, role-based access control, privileged access and secure collaboration controls. Experience with solution architecture, high-level and low-level design documentation, implementation runbooks, test plans, migration planning and operational handover artefacts. Strong stakeholder engagement skills with the ability to work with security, compliance,legal, data governance, infrastructure, operations and business teams in a large banking environment.