Job Description Summary
We are seeking an experienced Senior Data Security Engineer to own and evolve Intapp's data protection programme across our global SaaS and Corporate environments. This is a senior individual-contributor role embedded within our Global Cybersecurity Operations team, with a primary focus on the Microsoft Purview platform and the broader suite of data and information protection controls that safeguard Intapp's most sensitive data assets.
This role sits at the intersection of security engineering, compliance, and data governance. In addition to the primary data protection mandate, the role provides critical backfill capability across both Corporate IT Security (endpoint and email security) and Cloud Security (vulnerability and posture management) functions within the SecOps team.
About Intapp:
Intapp, based in Silicon Valley, is a leader in Vertical AI SaaS company, collaborating with over 2,550 professional and financial services firms globally. With 20+ years of industry expertise, Intapp's "Intelligence Applied" approach is transforming how businesses operate and leverages a strategic partner with Microsoft in delivering industry cloud solutions. The company culture promotes accountability, responsibility, and growth in a diverse, inclusive, and collaborative environment. Since going public in 2021, Intapp has expanded to over 1,600 employees globally with development centers in Palo Alto, Charlotte, Belfast, Berlin, and Lisbon.
Job Description
This role suits a security professional who combines deep Microsoft Purview technical expertise with a rigorous, policy-minded approach to data governance. You think in data flows, classification taxonomies, and risk — translating policy intent into enforced technical controls at scale. You are comfortable working autonomously, owning complex cross-functional workstreams, and communicating outcomes clearly to security leadership and business stakeholders.
Key Responsibilities:
Own and administer the Microsoft Purview platform (Compliance, Information Protection, Data Lifecycle, Audit, eDiscovery).
Configure and manage sensitivity labels, auto-labelling, and information protection policies.
Manage retention policies, retention labels, and data lifecycle controls.
Design, implement, and optimise Data Loss Prevention (DLP) policies across Microsoft 365, Teams, Endpoint, and Azure.
Investigate DLP incidents, tune policies, and reduce false positives.
Build and maintain custom sensitive information types, trainable classifiers, and keyword dictionaries.
Maintain enterprise data classification and information governance policies.
Produce governance and compliance reporting on data protection and DLP effectiveness.
Integrate Microsoft Purview with Microsoft Sentinel, including KQL queries, analytics, and dashboards.
Support Insider Risk Management, investigations, and incident response for data exposure events.
Provide operational support for Microsoft Defender (Endpoint, Office 365, Vulnerability Management, and Defender for Cloud).
Support cloud security posture management and remediation aligned with security frameworks (CIS, NIST, ISO 27001).
Required experience & skills:
6+ years in information security, with 3–5 years focused on data protection or information governance centred on Microsoft Purview and DLP.
Deep, hands-on expertise with Microsoft Purview — Information Protection, DLP, Data Lifecycle Management, Audit, eDiscovery, and the Compliance portal.
Solid knowledge of GDPR, CCPA, ISO 27001 Annex A, NIST SP 800-53, and CIS Controls.
Proficiency with PowerShell and Microsoft Graph API for Purview and M365 administration and automation.
Familiarity with Microsoft Defender for Endpoint, Defender for Office 365, Defender Vulnerability Management, and Defender for Cloud.
Certifications: SC-400 or AZ-500 (highly regarded); SC-200, SC-300, CISM, or CISSP beneficial.
Experience integrating Purview with Microsoft Sentinel, including KQL development and analytics rules.
What you will gain at Intapp:
Our culture at Intapp emphasises accountability, responsibility, and growth. We support each other in a positive, open atmosphere that fosters creativity, approachability, and teamwork. We're committed to creating a modern work environment that's connected yet flexible, supporting both professional success and work-life balance. In return for your passion, commitment, and collaborative approach, we offer:
Hybrid work system supporting agile and flexible hours.
Attractive compensation — including competitive base pay and performance-based variable pay.
Equity and stock in Intapp.
Opportunity to travel to other development centres for product training and cross-site collaboration.
One-time home office stipend.
Generous paid parental leave (including adoptive leave), marriage leave, bereavement leave, carer's leave, and paid sick days.
Reimbursement for training towards continuing education.
Intapp provides equal employment opportunities to all qualified applicants and will make hiring decisions without regard to race, color, sex, sexual orientation, gender identity or expression, religion, national origin or ancestry, age, disability, marital status, pregnancy, protected veteran status, protected genetic information, political affiliation, or any other characteristic protected by federal, state or local laws.
Please note: Intapp will not hire through text message, social media, or email alone. We will never extend a job offer unless you have been contacted directly by an Intapp recruiter and have participated in the interview process which will generally consist of 3 or more virtual or in person meetings. Please note that Intapp only uses company email addresses, which contain “@intapp.com” or “@dealcloud.com” to communicate with candidates via email. Intapp will never ask for financial information of any kind or for any payment during the job application process. We post all legitimate job openings on the Intapp Career Site at https://www.intapp.com/working-at-intapp/. If you believe you were a victim of such a scam, you may contact your local authorities. Intapp is not responsible for any claims, losses, damages, or expenses resulting from scammers.