Remote job
Senior Solutions Architect | SecOps (Remote)
Job details
About this role
Role overview A senior pre-sales architect role focused on Security Operations, guiding enterprise clients through modernization of their SOC, threat exposure, and vulnerability programs. The position blends hands-on architecture leadership with strategic advisory work for CISO and board-level audiences, shaping how organizations detect, respond to, and reduce risk in an AI-augmented landscape. It is a remote, client-facing role with roughly a quarter to a third of time spent traveling to engagements.
Responsibilities - Lead complex client engagements covering target-state SOC architecture, SIEM/SOAR modernization, agentic SOC and AI-assisted detection design, and continuous threat exposure management (CTEM) programs. - Assess current security operations maturity and translate findings into strategic, tactical, and operational recommendations expressed in business risk and investment terms. - Architect unified threat and exposure management platforms that combine external attack surface, cloud and container posture, identity exposure, and attack path analysis into a single prioritized view. - Define risk scoring, remediation SLAs, and accountability models using threat intelligence, exploitability evidence (EPSS, KEV), asset criticality, and compensating controls. - Mentor regional technical teams and produce reference designs, offerings, and enablement material that allow distributed teams to deliver consistent Security Operations outcomes.
Requirements - Bachelor's degree in computer science, cybersecurity, or a related engineering or information security discipline, or equivalent industry, military, defense, or government experience. - 8+ years in security operations, exposure management, or both, including direct ownership of detection engineering, SIEM/SOAR content, SOC operations, or enterprise vulnerability programs. - Background in customer-facing pre-sales, solutions architecture, or technology consulting at a VAR, systems integrator, consultancy, or vendor. - Deep expertise in at least two of: SIEM/SOAR platforms, EDR/XDR, threat and vulnerability management with CTEM and attack surface tools, or identity and cloud telemetry integration. - Demonstrated ability to design target-state security operations architectures including platform consolidation, detection-as-code, and exposure-as-code practices. - Valid driver's license and willingness to travel approximately 25–35%.
Nice to have - Experience operating in an entrepreneurial or fast-paced consulting environment, with comfort translating architecture work into reusable IP.
Benefits and work setup - Estimated base pay range of $175,000–$200,000 USD, with potential variable incentive compensation depending on location and other factors. - Comprehensive medical, dental, and vision coverage for employees and dependents. - 401(k) retirement plan with employer match, 529 college savings plan, HSA, life insurance, and long-term disability. - Training and development programs, generous paid time off, and a collaborative remote-friendly culture.