IN_Senior Associate_MS Purview_ITRA_Advisory_Bangalore
Line of Service Advisory Industry/Sector FS X-Sector Specialism Risk Management Level Senior Associate Job Description & Summary At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies.
They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data. In cloud security at PwC, you will be responsible for designing, implementing and elevating the security posture across our clients’ cloud environments, covering IaaS, PaaS and SaaS.
Your work will involve having a deep technical knowledge of cloud security and you will work with one or more Cloud Service Providers (CSP) to implement security protocols, monitor for potential security breaches, conduct risk assessments and vulnerability testing of cloud-based systems, and stay up to date with the latest security threats and trends in cloud technology.
Why PWC At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world.
We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other.
Learn more about us . At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law.
We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations.
Role Summary We are seeking a Senior Microsoft Purview Consultant / Architect with 10+ years of experience in Data Security, Compliance, Information Governance, and Data Lifecycle Management to lead enterprise-scale Microsoft Purview consulting and implementation engagements.
This role requires deep hands-on and architectural expertise across the Microsoft Purview suite, with particular strength in Records Management, Information Governance, Data Lifecycle Management, Retention Policies, and Regulatory Compliance alignment.
The ideal candidate will be capable of designing governance strategies, translating regulatory obligations into technical controls, and leading executive-level discussions with business, legal, compliance, security, and IT stakeholders. Responsibilities Lead the design, architecture, and implementation of Microsoft Purview solutions for enterprise customers.
Define and deliver Information Governance and Records Management strategies aligned to business, legal, and regulatory requirements. Architect and implement retention labels, retention policies, regulatory records, records declaration, disposition reviews, file plans, and event-based retention.
Design enterprise Data Lifecycle Management frameworks covering data retention, defensible disposal, data minimization, and storage optimization. Implement and optimize Information Protection capabilities including Sensitivity Labels, auto-labeling, encryption, and data classification.
Design and deploy Data Loss Prevention (DLP) controls across Endpoint, Exchange, SharePoint, OneDrive, and Teams, including integration with Insider Risk Management. Configure and support Compliance Manager for regulatory mapping and control tracking across frameworks such as GDPR, DPDPA, HIPAA, ISO 27701, and related standards.
Enable eDiscovery, Content Search, Audit, and Investigation Readiness to support legal, compliance, and forensic use cases. Implement Insider Risk Management and Communication Compliance policies, workflows, and investigation processes. Translate privacy and regulatory obligations into actionable Purview policies, governance controls, and operating procedures.
Develop governance operating models, policy standards, control frameworks, and implementation roadmaps for enterprise clients. Engage with CIO, CISO, Legal, Risk, Compliance, and Data Governance leadership to define strategy, present recommendations, and drive adoption.
Provide consulting leadership during assessments, solution workshops, gap analysis, and transformation programs. Mentor delivery teams and provide architectural oversight, best practices, and quality assurance across engagements. Mandatory skill sets: 10+ years of overall experience in Data Security, Compliance, Information Governance, Records Management, and Privacy.
Proven experience in enterprise consulting, architecture, and implementation of Microsoft Purview solutions. Strong hands-on expertise across key Microsoft Purview capabilities, including: Microsoft Purview Core Expertise Information Protection Sensitivity Labels Auto-labeling Encryption Data Classification Data Loss Prevention (DLP) Endpoint DLP Exchange / SharePoint / Teams DLP Insider Risk integration Records Management Retention labels and policies Records declaration Regulatory records Disposition reviews File plans Event-based retention Information Governance Data lifecycle management Retention strategy Data minimization Storage optimization Compliance policy enforcement Compliance Manager Regulatory compliance mapping GDPR / DPDPA / HIPAA alignment eDiscovery & Audit Content search Audit trails Investigation readiness Insider Risk Management Risk policy creation Investigation workflows Communication Compliance Monitoring Policy enforcement Domain and Consulting Expertise Deep understanding of privacy, compliance, and information governance principles in enterprise environments.
Strong knowledge of DPDPA, GDPR, HIPAA, ISO 27701, and other global compliance frameworks. Experience creating governance frameworks, operating models, policy definitions, control standards, and implementation blueprints. Ability to align technical implementations with legal retention requirements, regulatory obligations, and enterprise risk management objectives.
Strong understanding of Microsoft 365 security and compliance architecture and integration points across the Microsoft ecosystem. Experience leading workshops, assessments, roadmap creation, and stakeholder presentations for enterprise clients. 5.
Preferred Certifications Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400) Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900) Additional Microsoft Security / Compliance certifications Privacy and compliance certifications such as: CIPP / CIPM / CIPT CDPSE ISO 27701 / Privacy-related certifications Relevant records management or information governance certifications 6.
Preferred Industry Experience Consulting / Professional Services BFSI Healthcare / Life Sciences Technology Government / Public Sector Manufacturing Global enterprises with complex regulatory and cross-border data governance requirements Preferred Skill sets: Strong executive communication and presentation skills, with confidence engaging CIO/CISO-level stakeholders Excellent stakeholder management and consulting capability Strong analytical and problem-solving skills Ability to translate regulatory and business requirements into practical technical solutions Strong documentation, policy-writing, and solution design skills Leadership mindset with the ability to guide teams, influence decisions, and drive outcomes Client-facing professionalism with strong workshop facilitation and advisory skills Years of experience required: 4-7 yr Education qualification: Btech/BE/Mtech Education (if blank, degree and/or field of study not specified) Degrees/Field of Study required: Bachelor of Technology, Bachelor of Engineering Degrees/Field of Study preferred: Certifications (if blank, certifications not specified) Required Skills MS Reporting Services Optional Skills Accepting Feedback, Accepting Feedback, Active Listening, Analytical Thinking, Cloud Administration, Cloud Engineering, Cloud Infrastructure, Cloud Infrastructure Architecture Design, Cloud Resource Management, Cloud Security, Cloud Security Auditing, Cloud Service Delivery, Cloud Service Level Risk Management, Communication, Creativity, Cyber Engineering, Embracing Change, Emotional Regulation, Empathy, Forensic Investigation, Incident Investigation, Inclusion, Information Security, Infrastructure as a Service (IaaS), Intellectual Curiosity {+ 19 more} Desired Languages (If blank, desired languages not specified) Travel Requirements Not Specified Available for Work Visa Sponsorship?
No Government Clearance Required? No Job Posting End Date August 18, 2026