

ECLARO
Data Security Remediation Engineer
β - Featured Role | Apply direct with Data Freelance Hub
This role is for a Data Security Remediation Engineer, remote for 6 months at a pay rate of "X". Requires expertise in BigID and Microsoft Purview, PowerShell scripting, and relevant certifications. Strong analytical and communication skills are essential.
π - Country
United States
π± - Currency
$ USD
-
π° - Day rate
Unknown
-
ποΈ - Date
January 8, 2026
π - Duration
Unknown
-
ποΈ - Location
Remote
-
π - Contract
Unknown
-
π - Security
Unknown
-
π - Location detailed
Maryland, United States
-
π§ - Skills detailed
#Documentation #Compliance #Automation #Deployment #Scripting #SharePoint #Strategy #Data Loss Prevention #"ETL (Extract #Transform #Load)" #NLP (Natural Language Processing) #Cloud #Data Security #Graph API #API (Application Programming Interface) #Classification #Security
Role description
Job Number: 26-00030
ECLARO is looking for a Data Security Remediation Engineer for our client in Remote, MD.
ECLAROβs client is a major technology firm with a prominent presence in large and fast-growing markets, providing products and services that enable businesses and economies to thrive. If youβre up to the challenge, then take a chance at this rewarding opportunity!
Position Overview:
β’ This initiative focuses on a comprehensive data security transformation designed to Client, classify, and secure unstructured data across the client's Microsoft 365 SharePoint and OneDrive environments.
β’ Leveraging the technical integration of BigID for deep discovery and Microsoft Purview for policy enforcement, the project follows a structured four-phase lifecycle: initially targeting Critical data (Phase 1), expanding to Moderate sensitivity (Phase 2), identifying Low Risk / Stale (ROT) data (Phase 3), and executing comprehensive Remediation (Phase 4).
β’ The Remediation Team will drive the execution of this strategy, managing the cross-platform integration to perform essential tasks such as validating classification accuracy, applying sensitivity labels, enforcing Data Loss Prevention (DLP) policies, and relocating at-risk files to ensure a compliant and hardened data estate.
Responsibilities:
β’ The Remediation Engineer serves as the primary technical resource responsible for the hands-on deployment, configuration, and integration of BigID and Microsoft Purview to secure the client's Microsoft 365 ecosystem, with an initial engagement scope strictly focused on SharePoint Online and OneDrive for Business.
β’ Reporting directly to the Remediation Lead, this individual will execute the daily technical operations of the project, including tuning classification scanners, applying sensitivity labels, configuring Data Loss Prevention (DLP) enforcement policies, and performing file relocation workflows for Critical, Moderate, and Stale data.
β’ The Engineer is responsible for troubleshooting integration issues, validating system performance against architectural requirements, and collaborating with vendor support to ensure the accurate discovery, tagging, and protection of unstructured data within these specific file repositories.
β’ Platform Configuration, Tuning & Policy Management: Perform hands-on configuration of BigID scanners and Microsoft Purview policies; tune classification logic, sensitivity labels, and DLP rules to ensure high-fidelity detection with minimal false positives.
β’ Remediation Execution (Labeling, Enforcement & Relocation): Execute the technical workflows to apply sensitivity labels, enforce blocking / encryption actions, and relocate stale or high-risk files (ROT) to secure repositories.
β’ Integration Troubleshooting & Vendor Support: Diagnose and resolve technical issues related to API connectivity, scan failures, or label mismatches; work directly with vendor support tickets to resolve product bugs or limitations.
β’ Scripting, Automation & Documentation: Develop PowerShell scripts to automate bulk remediation tasks or reporting; maintain detailed technical "runbooks " and configuration documentation for all implemented controls.
Required Qualifications:
β’ Technical Execution - BigID: Hands-on experience deploying and configuring BigID scanners for unstructured data sources. Proficient in troubleshooting connectivity issues, configuring "Hyperscan " performance tuning, and building custom classifiers using RegEx or NLP training sets.
β’ Technical Execution - Microsoft Purview: Demonstrated ability to implement data protection controls within the M365 Compliance center. Must be capable of creating Sensitivity Labels, configuring auto-labeling policies for SharePoint / OneDrive, and testing DLP rule behavior (e.g., blocking external sharing) in a live environment.
β’ Scripting & Automation: Proficiency in PowerShell is essential. The candidate needs to be able to write scripts to interact with the Microsoft Graph API or BigID API for bulk tasks, such as generating reports on labeled files or automating the relocation of "stale " data to archive folders.
β’ Operational Troubleshooting: Strong analytical skills to diagnose integration breaks between BigID and Purview (e.g., labels not applying, scan failures). Ability to read audit logs and work with vendor support tickets to resolve technical blockers.
β’ Team Collaboration & Communication: Excellent written and verbal communication skills are required for documenting configuration changes ("Runbooks") and effectively communicating technical progress or blockers to the Remediation Lead and project stakeholders.
β’ Must have one of the following: Security + CE, CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, CND, CASP CE, CISSP, CSSLP.
Preferred Skills:
β’ 5+ years of experience.
β’ Understanding and experience with NIST Special Publication [SP] 800-171.
β’ Familiarity and understanding of United States Executive Order [EO] 14117.
If hired, you will enjoy the following ECLARO Benefits:
β’ 401k Retirement Savings Plan administered by Merrill Lynch
β’ Commuter Check Pretax Commuter Benefits
β’ Eligibility to purchase Medical, Dental & Vision Insurance through ECLARO
If interested, you may contact:
Melissa Francisco
Melissa.Francisco@eclaro.com
646-849-5125
Melissa Francisco | LinkedIn
Equal Opportunity Employer: ECLARO values diversity and does not discriminate based on Race, Color, Religion, Sex, Sexual Orientation, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status, in compliance with all applicable laws.
Job Number: 26-00030
ECLARO is looking for a Data Security Remediation Engineer for our client in Remote, MD.
ECLAROβs client is a major technology firm with a prominent presence in large and fast-growing markets, providing products and services that enable businesses and economies to thrive. If youβre up to the challenge, then take a chance at this rewarding opportunity!
Position Overview:
β’ This initiative focuses on a comprehensive data security transformation designed to Client, classify, and secure unstructured data across the client's Microsoft 365 SharePoint and OneDrive environments.
β’ Leveraging the technical integration of BigID for deep discovery and Microsoft Purview for policy enforcement, the project follows a structured four-phase lifecycle: initially targeting Critical data (Phase 1), expanding to Moderate sensitivity (Phase 2), identifying Low Risk / Stale (ROT) data (Phase 3), and executing comprehensive Remediation (Phase 4).
β’ The Remediation Team will drive the execution of this strategy, managing the cross-platform integration to perform essential tasks such as validating classification accuracy, applying sensitivity labels, enforcing Data Loss Prevention (DLP) policies, and relocating at-risk files to ensure a compliant and hardened data estate.
Responsibilities:
β’ The Remediation Engineer serves as the primary technical resource responsible for the hands-on deployment, configuration, and integration of BigID and Microsoft Purview to secure the client's Microsoft 365 ecosystem, with an initial engagement scope strictly focused on SharePoint Online and OneDrive for Business.
β’ Reporting directly to the Remediation Lead, this individual will execute the daily technical operations of the project, including tuning classification scanners, applying sensitivity labels, configuring Data Loss Prevention (DLP) enforcement policies, and performing file relocation workflows for Critical, Moderate, and Stale data.
β’ The Engineer is responsible for troubleshooting integration issues, validating system performance against architectural requirements, and collaborating with vendor support to ensure the accurate discovery, tagging, and protection of unstructured data within these specific file repositories.
β’ Platform Configuration, Tuning & Policy Management: Perform hands-on configuration of BigID scanners and Microsoft Purview policies; tune classification logic, sensitivity labels, and DLP rules to ensure high-fidelity detection with minimal false positives.
β’ Remediation Execution (Labeling, Enforcement & Relocation): Execute the technical workflows to apply sensitivity labels, enforce blocking / encryption actions, and relocate stale or high-risk files (ROT) to secure repositories.
β’ Integration Troubleshooting & Vendor Support: Diagnose and resolve technical issues related to API connectivity, scan failures, or label mismatches; work directly with vendor support tickets to resolve product bugs or limitations.
β’ Scripting, Automation & Documentation: Develop PowerShell scripts to automate bulk remediation tasks or reporting; maintain detailed technical "runbooks " and configuration documentation for all implemented controls.
Required Qualifications:
β’ Technical Execution - BigID: Hands-on experience deploying and configuring BigID scanners for unstructured data sources. Proficient in troubleshooting connectivity issues, configuring "Hyperscan " performance tuning, and building custom classifiers using RegEx or NLP training sets.
β’ Technical Execution - Microsoft Purview: Demonstrated ability to implement data protection controls within the M365 Compliance center. Must be capable of creating Sensitivity Labels, configuring auto-labeling policies for SharePoint / OneDrive, and testing DLP rule behavior (e.g., blocking external sharing) in a live environment.
β’ Scripting & Automation: Proficiency in PowerShell is essential. The candidate needs to be able to write scripts to interact with the Microsoft Graph API or BigID API for bulk tasks, such as generating reports on labeled files or automating the relocation of "stale " data to archive folders.
β’ Operational Troubleshooting: Strong analytical skills to diagnose integration breaks between BigID and Purview (e.g., labels not applying, scan failures). Ability to read audit logs and work with vendor support tickets to resolve technical blockers.
β’ Team Collaboration & Communication: Excellent written and verbal communication skills are required for documenting configuration changes ("Runbooks") and effectively communicating technical progress or blockers to the Remediation Lead and project stakeholders.
β’ Must have one of the following: Security + CE, CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, CND, CASP CE, CISSP, CSSLP.
Preferred Skills:
β’ 5+ years of experience.
β’ Understanding and experience with NIST Special Publication [SP] 800-171.
β’ Familiarity and understanding of United States Executive Order [EO] 14117.
If hired, you will enjoy the following ECLARO Benefits:
β’ 401k Retirement Savings Plan administered by Merrill Lynch
β’ Commuter Check Pretax Commuter Benefits
β’ Eligibility to purchase Medical, Dental & Vision Insurance through ECLARO
If interested, you may contact:
Melissa Francisco
Melissa.Francisco@eclaro.com
646-849-5125
Melissa Francisco | LinkedIn
Equal Opportunity Employer: ECLARO values diversity and does not discriminate based on Race, Color, Religion, Sex, Sexual Orientation, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status, in compliance with all applicable laws.






