Apply with hirly
Senior Solutions Architect | SecOps (Remote)
Trace3 · Dallas, TX
Upload your resume to see how well you match this job — free, in seconds, no account needed.
Your resume is used only to score it against this job. If you don't create an account, it is deleted within 24 hours.
Who is Trace3 ? Trace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to our clients. Equipped with elite engineering and dynamic innovation, we empower IT executives and their organizations to achieve competitive advantage through a process of Integrate, Automate, Innovate. Our culture at Trace3 embodies the spirit of a startup with the advantage of a scalable business. Employees can grow their career and have fun while doing it! Trace3 is headquartered in Irvine, California. We employ more than 1,200 people all over the United States. Our major field office locations include Denver, Indianapolis, Grand Rapids, Lexington, Los Angeles, Louisville, Texas, San Francisco. Ready to discover the possibilities that live in technology? Come Join Us! Street-Smart
- Thriving in Dynamic Times We are flexible and resilient in a fast-changing environment. We continuously innovate and drive constructive change while keeping a focus on the “big picture.” We exercise sound business judgment in making high-quality decisions in a timely and cost-effective manner. We are highly creative and can dig deep within ourselves to find positive solutions to different problems. Juice
- The “Stuff” it takes to be a Needle Mover We get things done and drive results. We lead without a title, empowering others through a can-do attitude. We look forward to the goal, mentally mapping out every checkpoint on the pathway to success, and visualizing what the final destination looks and feels like. Teamwork
- Humble, Hungry and Smart We are humble individuals who understand how our job impacts the company's mission. We treat others with respect, admit mistakes, give credit where it’s due and demonstrate transparency. We “bring the weather” by exhibiting positive leadership and solution-focused thinking. We hug people in their trials, struggles, and failures – not just their success. We appreciate the individuality of the people around us. JOB SUMMARY: The Senior Solutions Architect, Security Operations will be responsible for providing architect-level thought leadership and expertise across modern security operations including endpoint detection and response, SIEM/SOAR, agentic SOC, and AI-assisted detection engineering, and AI-ready threat, exposure, and vulnerability management, including continuous threat exposure management (CTEM), threat-informed prioritization, attack surface and attack path analysis, and closed-loop remediation validation. Under the direction of Security Operations leadership, the Senior Solutions Architect will lead Trace3’s most complex client architecture engagements across these domains and translate that work into the reference architectures, offerings, and enablement that allow Trace3’s regional technical teams to sell and deliver Security Operations solutions consistently and at scale. This is a client-facing, presales role in a practice built to lead where AI is rebuilding both how organizations detect and respond to threats and how they find, prioritize, and eliminate exposure.
Summary of Essential Job
FUNCTIONS:
- Lead client engagements as the senior architect for target-state SOC architecture, SIEM/SOAR modernization and consolidation, agentic SOC and AI-assisted detection design, and CTEM and vulnerability operations redesign, from discovery through executive readout.
- Assess client current state and deliver strategic, tactical, and operational recommendations that translate detection, response, and exposure capabilities into business risk, investment, and operating-model terms for CISO- and board-level audiences.
- Design target-state threat and exposure management architectures that unify vulnerability management, attack surface management (EASM/CAASM), cloud and container posture, identity exposure, and attack path analysis into a single prioritized view of risk.
- Define defensible risk scoring, remediation SLAs, and accountability models, combining threat intelligence, exploitability evidence (EPSS, KEV), asset criticality, and compensating controls, that client IT, cloud, and application owners will accept and execute.
- Architect the AI layer of security operations and exposure management, including agentic enrichment and deduplication of findings, automated remediation routing, natural-language executive reporting, and closed-loop validation through breach and attack simulation, penetration testing, and purple-team findings.
- Converge detection and exposure operations so exposure context informs detection and response prioritization, and detection, incident, and threat-hunting findings feed back into exposure prioritization, one threat-informed loop, not two disconnected programs.
- Govern the data foundation that agentic SOC and exposure workflows depend on: asset inventory and ownership fidelity, findings normalization across scanners and platforms, and security data pipeline and platform decisions.
- Author and maintain the practice's reference architectures, assessment frameworks, and packaged offerings, including SOC maturity and AI-readiness assessment, SIEM/SOAR migration, agentic SOC readiness, and exposure management program design, each with defined scope and a delivery playbook.
- Collaborate with Security Solutions practices, Regional teams, Managed Services, and Service Delivery to scope, design, and hand off engagements that can be delivered repeatably without the architect's continued involvement.
- Develop and deliver enablement and certification content for regional architects and sellers, including delivery playbooks for standardized work (EDR migration, SIEM onboarding, detection content standards) and opportunity qualification guidance.
- Serve as the practice’s senior technical counterpart to priority Security Operations partners (such as Palo Alto Networks, CrowdStrike, Microsoft, and Google), influencing roadmaps, shaping joint offerings, and securing co-funded enablement and lab capacity.
- Support account teams on qualified opportunities with solution design, competitive positioning, proposal and SOW creation, and technical validation.
- Provide subject matter expertise on AI in security operations, AI-assisted triage, LLM-based detection engineering, agentic workflows, and agent governance, and stay current on the threat landscape, standards, and frameworks.
- Advocate for Trace3 through speaking engagements, publications, field briefings, and industry events.
- Mentor solutions architects, early-career practitioners, and interns across regions, transferring judgment as well as knowledge.
Required Skills and
EXPERIENCE:
- Bachelor’s degree in computer science, Cybersecurity or equivalent information security, engineering, or like discipline from an accredited college or university, or measurable knowledge / experience from proven industry, military, defense, or government operations.
- 8+ years’ experience in security operations, exposure management, or both, including hands-on ownership of detection engineering, SIEM/SOAR content and automation, SOC operations, or enterprise vulnerability and exposure operations, beyond product implementation alone.
- Experience in a customer-facing presales, solutions architecture, or technology consulting role within a VAR, systems integrator, consultancy, or technology vendor.
- Deep expertise in at least two of the following: SIEM/SOAR platforms (e.g., Palo Alto Networks Cortex XSIAM, Microsoft Sentinel, Google SecOps, Splunk); endpoint/EDR/XDR (e.g., CrowdStrike Falcon, Microsoft Defender, SentinelOne); threat, exposure, and vulnerability management, including CTEM and attack surface management (e.g., Tenable, Qualys, Rapid7, Wiz, Axonius, XM Cyber, Cymulate); identity and cloud telemetry integration.
- Demonstrated ability to design target-state security operations architectures, including platform consolidation and migration strategy, detection-as-code, exposure-as-code, and SOC an