Manager Information Security- Data Protection

UNITED STATES PROFESSIONA
Atlanta, GA, United States
19 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$50,000.0 - $60,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Computing Platforms Audit Trail Collaborative Software Cyber Security Information Systems Data Discovery Data Governance Information Leak Prevention Data Security Information Lifecycle Management Information Security Management
+10 more
Cloud Services Microsoft SharePoint Security Information and Event Management Software Vulnerability Management Data Classification IT General Controls (ITGC) Microsoft Power Automate Software Security Information Technology CIS Benchmarks

Job description

The Manager Data Protection is a first level manager that oversees the day-to-day activities of the Data Protection team and leads the organization’s enterprise data protection program across data discovery, classification, loss prevention, information protection, and data lifecycle governance. This role involves operating Microsoft Purview and related controls, managing data protection risks, and ensuring compliance with relevant laws, regulations, and industry frameworks.

What You’ll Do:

  • Own and develop Mohawk’s enterprise Data Protection program across data discovery, classification, loss prevention, information protection, and data lifecycle governance.

  • Maintain the Data Protection roadmap against the Mohawk Information Security Program Framework (MIPF), CIS Controls v8, and NIST CSF 2.0.

  • Track program KPIs and operational metrics, and report status to the Director of AppSec, Vulnerability Management & Data Protection and the CISO.

  • Set and enforce data protection policies, standards, and procedures across business units and regions.

  • Implement and operate Microsoft Purview across Information Protection (sensitivity labels, label policies, auto-labeling), Data Loss Prevention (DLP), Data Lifecycle Management (retention labels and policies), Communication Compliance, and eDiscovery.

  • Lead the enterprise sensitivity labeling taxonomy design and rollout across Microsoft 365 (Exchange, SharePoint, OneDrive, Teams) and integrated third-party platforms.

  • Tune DLP policies for endpoints, cloud services, email, and collaboration tools to reduce false positives while maintaining coverage on PII, PCI, intellectual property, and HR data.

  • Manage Purview Audit and Compliance Manager, and track and report on regulatory posture against SOX, GDPR, CCPA, and other applicable frameworks.

  • Integrate Microsoft Purview with Microsoft Defender XDR, Entra ID P2, and Sentinel/Google SecOps SIEM in coordination with the Microsoft E5 platform team.

  • Oversee enterprise-wide sensitive data discovery across on-premises repositories, Microsoft 365, cloud workloads, and manufacturing systems.

  • Maintain the Mohawk data classification taxonomy and drive adoption across business units through training, communication, and governance.

  • Work with business unit data owners to inventory critical data, assess risk exposure, and prioritize remediation.

  • Run and tune Microsoft Purview Insider Risk Management, including risk policies, escalation workflows, and investigation procedures, in coordination with HR, Legal, and the Incident Response team.

  • Support eDiscovery and legal hold workflows in coordination with Legal and Compliance stakeholders.

  • Provide subject matter expertise for regulatory audits (SOX ITGC, GDPR, and regional privacy laws) pertaining to data protection controls.

  • Hire and lead a team of data protection engineers and analysts, and maintain a staffing plan that keeps pace with program growth.

  • Act as the primary data protection lead on cross-functional projects, including Microsoft Copilot deployment, SharePoint governance remediation, and Microsoft 365 data governance.

  • Partner with Enterprise Architecture, Infrastructure, Legal, HR, and Compliance to build data protection requirements into project delivery and change management.

  • Develop and deliver data protection awareness content in coordination with the security awareness program (KnowBe4).

  • Perform other duties as needed.

Requirements

  • Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, or a related field; Master’s degree preferred.

  • Minimum 8 years of progressive information security experience, with at least 3 years focused on data protection, DLP, or information governance.

  • Demonstrated hands-on expertise with Microsoft Purview (Information Protection, DLP, Insider Risk Management, Compliance Manager, eDiscovery, and Data Lifecycle Management).

  • Working knowledge of Microsoft 365 platform architecture, including Exchange Online, SharePoint Online, OneDrive, Teams, and Entra ID.

  • Relevant certification required: Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400), or equivalent; CISSP, CISM, or CIPP/E preferred.

  • Experience operating in regulated environments with exposure to SOX ITGC, GDPR, CCPA, or similar data privacy and compliance frameworks.

  • Prior experience in a global enterprise (manufacturing, industrial, or comparable complex environment) strongly preferred.

What You’re Good At:

  • Strong verbal, written, and presentation skills, with the ability to explain data protection concepts to both technical and executive audiences and negotiate with business stakeholders.

  • Strong program management skills, with the ability to run multiple workstreams, set priorities, meet deadlines, and communicate status clearly.

  • Track record of growing a program from early stages and delivering measurable risk reduction.

  • Collaborative leader able to influence peers across business units and regions without relying on formal authority.

  • High level of integrity and discretion in handling sensitive and confidential data.

  • Analytical mindset, with the ability to use Purview audit logs, DLP incident data, and insider risk signals to improve the program over time.

  • Takes ownership of outcomes, willing to challenge assumptions, and works well in a fast-moving environment.

  • Stays composed and uses good judgment under pressure during major data incidents or regulatory inquiries.

About the company

At Mohawk Industries, we’re committed to more - more customer solutions, more process improvements, more sustainable manufacturing and more opportunities for our team.

As a Fortune 500, global flooring leader with some of the best-known brands in the industry, Mohawk is a great place to start or develop your career with an emphasis on more of what’s important to you. Whether you want to lead more, innovate more, learn more or create more, you can find your more with Mohawk., Mohawk Industries is a leading global flooring manufacturer that creates products to enhance residential and commercial spaces around the world. Mohawk’s vertically integrated manufacturing and distribution processes provide competitive advantages in the production of carpet, rugs, ceramic tile, laminate, wood, stone and vinyl flooring. Our industry-leading innovation has yielded products and technologies that differentiate our brands in the marketplace and satisfy all remodeling and new construction requirements. Our brands are among the most recognized in the industry and include American Olean, Daltile, Durkan, IVC, Karastan, Marazzi, Mohawk, Mohawk Home, Pergo, and Quick-Step. During the past decade, Mohawk has transformed its business from an American carpet manufacturer into the world’s largest flooring company with operations in Australia, Brazil, Canada, Europe, India, Malaysia, Mexico, New Zealand, Russia and the United States.

Mohawk Industries, Inc. is an Equal Opportunity Employer including disability/veteran committed to an inclusive workplace and a proud Drugs Don’t Work participant. General Business 30+ days ago PEPI: Senior Associate, Supply Chain – Procurement & Sourcing (OPEN TO ALL U.S. LOCATIONS) Alvarez & Marsal Private Equity Performance Improvement Group, LLC

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jofdav.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · WWC 2024

3:56 min

Leveraging GitOps for AI auditing and instant rollbacks

Jaroslaw Gajewski Jaroslaw Gajewski · WWC Europe 2026

2:03 min

Platform compliance and security certifications for sensitive data

Chad Carlson · WWC 2021

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · WWC 2023

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 · LIVE

Videos

See all

Related articles

See all