Responsibilities
- Data governance framework design and implementation — has built a classification framework and operationalized it, not just documented it
- Data classification standards — understands sensitivity levels, labeling, handling procedures, and how to enforce them technically
- Regulatory compliance: GDPR, UAE data protection law, and ideally NESA/NIAR or Abu Dhabi data management standards
- Security controls: encryption at rest and in transit, key management, access recertification, DLP tooling
- DSPM/DLP tool experience (BigID, Fortra, Microsoft Purview, or comparable) — can evaluate, configure, and operate these tools
- Vendor management: has been the client-side technical lead managing an external governance engagement
- Data mesh governance concepts: data product ownership, quality SLAs, cross-entity sharing
- AI governance fundamentals: model and agent registration, data scope controls, audit trail requirements
- Stakeholder communication: can work with Legal, IT, and entity leadership on policy review and adoption
- Policy-as-code concepts: translating governance rules into automated technical enforcement
Requirements
- Data governance framework design and implementation — has built a classification framework and operationalized it, not just documented it
- Data classification standards — understands sensitivity levels, labeling, handling procedures, and how to enforce them technically
- Regulatory compliance: GDPR, UAE data protection law
- Security controls: encryption at rest and in transit, key management, access recertification, DLP tooling
- DSPM/DLP tool experience (BigID, Fortra, Microsoft Purview, or comparable) — can evaluate, configure, and operate these tools
- Vendor management: has been the client-side technical lead managing an external governance engagement
- Stakeholder communication: can work with Legal, IT, and entity leadership on policy review and adoption
Nice to Have
- Regulatory compliance: ... ideally NESA/NIAR or Abu Dhabi data management standards
- Data mesh governance concepts: data product ownership, quality SLAs, cross-entity sharing
- AI governance fundamentals: model and agent registration, data scope controls, audit trail requirements
- Policy-as-code concepts: translating governance rules into automated technical enforcement