Data in NN is booming, and we need to keep it safe. That’s why we’re on the lookout for a Senior Data Security Specialist to help us protect sensitive info and stop it from leaking.
Our mission:
We’re building one clear, company-wide approach to data security - classifying and protecting every bit of sensitive data so everyone knows exactly where it is and how it’s guarded.
Your mission:
As a Data Security Specialist, you will be responsible for designing, implementing, and maintaining data security strategies across the organization, with a strong emphasis on Microsoft Purview technologies. You will work closely with international business units as well as with the central organization to ensure sensitive data is classified, monitored, and protected in compliance with internal standards and external regulations (e.g. GDPR, DORA).
Key Responsibilities:
Microsoft Purview Implementation & Management
Configure and manage Purview Data Classification policies across workloads
Configure and manage Purview DLP policies across endpoints, cloud services, and collaboration platforms.
Define and maintain Data Classifiers such as Sensitive Information Types (SITs) or trainable classifiers for automated detection of data exfiltration events.
Leverage Purview’s Data Security Posture Management (DSPM) to assess risks and recommend controls.
Design and implement continuous improvement of automation of data security alerting.
Provide stakeholders (Management, Security Officers, Security specialists) insight into product developments
Policy Development & Governance
Collaborate with ESS, CDC, and CSIRT teams to define and enforce Purview services and use cases.
Ensure alignment with NN Information Security Standards and Technical Security Requirements.
Maintain audit trails and reporting dashboards using Power BI and Microsoft Defender integrations.
Operational Support & Incident Response
Monitor DLP alerts and coordinate with BSO/DPO teams for incident handling and remediation.
Participate in weekly syncs and catch-up meetings to review deployment status and policy effectiveness.
Process desired changes in Purview policies to accommodate the Business Units need
Required Skills & Experience
Proven experience with Microsoft Purview, including DLP, DSPM, and Data Lifecycle Management and e-Discovery.
Strong understanding of data classification, SITs, and endpoint protection strategies.
Strong understanding of data governance, privacy laws, and regulatory frameworks.
Experience with Power BI, Microsoft Defender, Microsoft Sentinel and integration of security tooling.
Excellent communication skills and ability to collaborate with technical and business teams.
Willing to occasionally travel
Microsoft certifications in Security, Compliance, and Identity (SC-900 / SC-400) are preferred
Other relevant certifications like CIPP/E or CISSP are plus.
Excellent analytical, communication, and documentation skills.
Responsibility, accountability, critical thinking.
Fluent English and clear communication skills.
Master’s tech degree is a plus.
Perks of joining NN
We work mostly from home, giving you the flexibility to choose your preferred workspace. However, as a team, we aim to meet in person at least once a week whenever possible. NN also contributes to your home office expenses every month.
Enjoy 5 weeks of vacation to truly unwind, plus 5 well-being days, extra paid time off for personal or family milestones, and 1 day each year to volunteer and give back.
On top of your salary, count on a handy meal allowance, up to CZK 20 000 in Cafeteria points, an optional MultiSport card, contributions toward supplementary pension savings, and a nice discount on life insurance.
Grow with us through tailor-made professional training that supports both your career ambitions and personal development.
Know someone great? Earn up to CZK 60 000 when your referral joins our team.
Work smoothly with a company laptop and an iPhone equipped with a paid O2 plan and generous data package.
How we hire
There are usually two rounds. First, you’ll have a chat with Veronika (Talent Acquisition Specialist) and the engineering manager - we’ll tell you about the team and ask about your experience and what you’re looking for. Next up is a technical talk with one or more senior team members, just to see what you know in practice. If things go well and we’re a good fit for each other, you’ll have a quick call with the Cyber Defence Center Manager to get to know each other a bit more.