
The client is a leading international consulting company specializing in real estate, infrastructure, and industrial sector solutions. With headquarters in Stuttgart, Germany, they operate in over 60 locations worldwide and have a team of approximately 6,000 employees.
They are recognized for their innovative approach to sustainability and digitalization, offering cost-effective and future-oriented solutions tailored to the specific needs of their clients.
The project focuses on supporting the organisation’s preparation for ISO certification through the design and implementation of a robust data governance and compliance framework using Microsoft Purview.
The scope includes assessing the current data classification, retention, and data protection approach, identifying gaps against regulatory and industry standards, and defining a clear implementation roadmap.
The engagement will cover analysis, design, and controlled implementation activities to improve audit readiness, data visibility, and compliance posture across cloud and data platforms.
The consultant will work closely with the Cybersecurity GRC function, reporting to the Head of Global Cyber Security GRC.
The project team includes internal security, compliance, and IT stakeholders, as well as business representatives responsible for data ownership and operational processes.
Collaboration with multiple teams is expected to ensure alignment between regulatory requirements, technical controls, and business operations.
Assess the current data governance, classification, and compliance posture
Identify data privacy and regulatory risks and propose mitigation measures
Design and validate a Microsoft Purview implementation aligned with ISO and GDPR requirements
Support data discovery activities, including classification, retention, and data loss considerations
Review existing policies and recommend updates aligned with best practices
Define and execute test deployments to validate proposed labelling and governance configurations
Support audit readiness and documentation activities
Collaborate with internal stakeholders to ensure smooth implementation and adoption