Lead Microsoft Purview strategy at Under Armour, ensuring enterprise data protection and compliance. Design and implement governance policies, driving compliance across integrated platforms.
Responsibilities
Define and execute the enterprise Purview strategy and multi-year roadmap, aligning information governance priorities to business needs and risk posture.
Design and maintain the enterprise data classification and labeling model (sensitivity labels, auto-labeling where appropriate), ensuring clear handling expectations and consistent end-user experience.
Implement, tune, and operate Data Loss Prevention (DLP) policies across endpoints and Microsoft 365 workloads (e.g., Exchange, Teams, SharePoint/OneDrive), balancing protection with productivity.
Establish and manage retention and records governance (retention labels/policies, disposition workflows), enabling defensible compliance and lifecycle management of content.
Build and run Insider Risk and related controls (policy design, indicator governance, escalation paths) in partnership with HR, Legal, and Cybersecurity.
Partner with Legal and Compliance to operationalize eDiscovery processes (holds, collections, case workflows), ensuring repeatable execution and audit readiness.
Define and enforce data boundaries and collaboration controls (information barriers / boundaries and policy guardrails) to reduce inappropriate sharing and insider risk.
Drive platform integrations and policy extension to adjacent systems (identity, endpoint management, security tooling, and prioritized SaaS platforms), ensuring consistent enforcement and telemetry.
Operate monitoring, reporting, and governance rhythms: dashboards/metrics, control health, policy exceptions, and executive-ready compliance updates.
Own operational processes and documentation (runbooks, change control, standards, training) and guide cross-functional teams to ensure consistent adoption and execution without direct authority.
Provide licensing/budget input and support vendor/auditor engagement as needed, ensuring the program is sustainable and scalable.
Requirements
Bachelor’s degree required.
8–10 years of relevant experience in information protection, data governance, security/compliance, or enterprise risk controls.
Expert-level capability in Microsoft Purview, including: data classification, labeling, DLP, Insider Risk, retention, eDiscovery, and information barriers/boundaries.
Demonstrated ability to translate legal, regulatory, HR, and cybersecurity requirements into scalable enterprise policies and operational processes.
Strong cross-functional leadership and influence skills; ability to drive governance decisions and execution through partners (HR, Legal, Cyber, IT, Compliance) without direct reports.
Experience operating compliance programs (control health, reporting, audits, metrics) and building sustainable operating models (standards, runbooks, change governance).
Vice President of Data Governance responsible for data strategy and governance at Universal Music Group. Leading cross - functional initiatives to optimize data management and compliance.
Senior Operations Risk Manager at Manulife handling global operational risk initiatives. Leading risk governance programs and collaborating with senior leadership in the insurance sector.
Senior Risk Control Consultant at Travelers providing account evaluations and risk management solutions. Collaborating with Underwriters and maintaining customer relationships in the Construction sector.
Loss Mitigation Analyst role in Customer Asset Management tackling operational risk and compliance. Collaborating on reporting and process improvement initiatives to enhance workflows across teams.
Head of Insurance and Risk overseeing risk governance and insurance strategies for Circle K. Leading casualty claims management and collaboration across operational teams in a global company.
Risk Manager overseeing fiduciary activities within Personal Trust and Investments across Wealth Management at U.S. Bank. Collaborating with senior leadership to ensure compliance and manage risks.
Associate Director managing environmental and social risks at RBC, supporting account managers and enhancing financial stability through effective risk management.
Assistant Manager - IT Risk Management leading day - to - day operations of information security strategies at S&C Electric. Collaborating with IT teams to safeguard digital assets and mitigate cyber threats.