{"id":1212075,"url":"https://alion.io/job/trace3-senior-solutions-architect-secops-remote","title":"Senior Solutions Architect | SecOps (Remote)","company":{"id":1703,"name":"Trace3","domain":"trace3.com","url":"https://alion.io/company/trace3","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"B","score":82,"open_postings":7,"ghost_share":0,"stale_share":0.714,"repost_share":0,"time_to_fill_p50_days":54,"computed_at":"2026-10-03T05:45:00Z"}},"role":"Solutions","role_family":"Solutions","seniority":"staff","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Dallas, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":175000,"max":200000,"currency":"USD","period":"year","gross":null,"usd_annual":200000},"salary_estimate":null,"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Agentic Workflows","optional":false},{"name":"AI Agents","optional":false},{"name":"Cortex","optional":false},{"name":"Crowdstrike","optional":false},{"name":"CVSS","optional":false},{"name":"EPSS","optional":false},{"name":"Falcon","optional":false},{"name":"Google SecOps","optional":false},{"name":"ISO 27001","optional":false},{"name":"KEV","optional":false},{"name":"LLM","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"Microsoft Sentinel","optional":false},{"name":"MITRE D3FEND","optional":false},{"name":"NIST AI RMF","optional":false},{"name":"NIST CSF","optional":false},{"name":"OWASP","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Qualys Cloud Platform","optional":false},{"name":"SentinelOne","optional":false},{"name":"SIEM","optional":false},{"name":"Splunk","optional":false},{"name":"Wiz","optional":false},{"name":"AWS","optional":true},{"name":"Azure","optional":true},{"name":"GCP","optional":true},{"name":"Prometheus","optional":true}],"status":"live","first_seen_at":"2026-09-25T04:00:47Z","employer_posted_date":"2026-09-25","last_verified_at":"2026-10-03T23:40:25Z","board_verified":true,"closed_at":null,"days_open":8,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":8},"description":"Who is Trace3?\nTrace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to our clients. Equipped with elite engineering and dynamic innovation, we empower IT executives and their organizations to achieve competitive advantage through a process of Integrate, Automate, Innovate.\nOur culture at Trace3 embodies the spirit of a startup with the advantage of a scalable business. Employees can grow their career and have fun while doing it!\nTrace3 is headquartered in Irvine, California. We employ more than 1,200 people all over the United States. Our major field office locations include Denver, Indianapolis, Grand Rapids, Lexington, Los Angeles, Louisville, Texas, San Francisco. \nReady to discover the possibilities that live in technology?\nCome Join Us!\nStreet-Smart - Thriving in Dynamic Times\nWe are flexible and resilient in a fast-changing environment. We continuously innovate and drive constructive change while keeping a focus on the “big picture.” We exercise sound business judgment in making high-quality decisions in a timely and cost-effective manner. We are highly creative and can dig deep within ourselves to find positive solutions to different problems.\nJuice - The “Stuff” it takes to be a Needle Mover \nWe get things done and drive results. We lead without a title, empowering others through a can-do attitude. We look forward to the goal, mentally mapping out every checkpoint on the pathway to success, and visualizing what the final destination looks and feels like.\nTeamwork - Humble, Hungry and Smart\nWe are humble individuals who understand how our job impacts the company's mission. We treat others with respect, admit mistakes, give credit where it’s due and demonstrate transparency. We “bring the weather” by exhibiting positive leadership and solution-focused thinking. We hug people in their trials, struggles, and failures - not just their success. We appreciate the individuality of the people around us.\nJOB SUMMARY:\nThe Senior Solutions Architect, Security Operations will be responsible for providing architect-level thought leadership and expertise across modern security operations including endpoint detection and response, SIEM/SOAR, agentic SOC, and AI-assisted detection engineering, and AI-ready threat, exposure, and vulnerability management, including continuous threat exposure management (CTEM), threat-informed prioritization, attack surface and attack path analysis, and closed-loop remediation validation. Under the direction of Security Operations leadership, the Senior Solutions Architect will lead Trace3’s most complex client architecture engagements across these domains and translate that work into the reference architectures, offerings, and enablement that allow Trace3’s regional technical teams to sell and deliver Security Operations solutions consistently and at scale. This is a client-facing, presales role in a practice built to lead where AI is rebuilding both how organizations detect and respond to threats and how they find, prioritize, and eliminate exposure.\nSUMMARY OF ESSENTIAL JOB FUNCTIONS:\nLead client engagements as the senior architect for target-state SOC architecture, SIEM/SOAR modernization and consolidation, agentic SOC and AI-assisted detection design, and CTEM and vulnerability operations redesign, from discovery through executive readout.\nAssess client current state and deliver strategic, tactical, and operational recommendations that translate detection, response, and exposure capabilities into business risk, investment, and operating-model terms for CISO- and board-level audiences.\nDesign target-state threat and exposure management architectures that unify vulnerability management, attack surface management (EASM/CAASM), cloud and container posture, identity exposure, and attack path analysis into a single prioritized view of risk.\nDefine defensible risk scoring, remediation SLAs, and accountability models, combining threat intelligence, exploitability evidence (EPSS, KEV), asset criticality, and compensating controls, that client IT, cloud, and application owners will accept and execute.\nArchitect the AI layer of security operations and exposure management, including agentic enrichment and deduplication of findings, automated remediation routing, natural-language executive reporting, and closed-loop validation through breach and attack simulation, penetration testing, and purple-team findings.\nConverge detection and exposure operations so exposure context informs detection and response prioritization, and detection, incident, and threat-hunting findings feed back into exposure prioritization, one threat-informed loop, not two disconnected programs.\nGovern the data foundation that agentic SOC and exposure workflows depend on: asset inventory and ownership fidelity, findings normalization across scanners and platforms, and security data pipeline and platform decisions.\nAuthor and maintain the practice's reference architectures, assessment frameworks, and packaged offerings, including SOC maturity and AI-readiness assessment, SIEM/SOAR migration, agentic SOC readiness, and exposure management program design, each with defined scope and a delivery playbook.\nCollaborate with Security Solutions practices, Regional teams, Managed Services, and Service Delivery to scope, design, and hand off engagements that can be delivered repeatably without the architect's continued involvement.\nDevelop and deliver enablement and certification content for regional architects and sellers, including delivery playbooks for standardized work (EDR migration, SIEM onboarding, detection content standards) and opportunity qualification guidance.\nServe as the practice’s senior technical counterpart to priority Security Operations partners (such as Palo Alto Networks, CrowdStrike, Microsoft, and Google), influencing roadmaps, shaping joint offerings, and securing co-funded enablement and lab capacity.\nSupport account teams on qualified opportunities with solution design, competitive positioning, proposal and SOW creation, and technical validation.\nProvide subject matter expertise on AI in security operations, AI-assisted triage, LLM-based detection engineering, agentic workflows, and agent governance, and stay current on the threat landscape, standards, and frameworks.\nAdvocate for Trace3 through speaking engagements, publications, field briefings, and industry events.\nMentor solutions architects, early-career practitioners, and interns across regions, transferring judgment as well as knowledge.\n\nREQUIRED SKILLS AND EXPERIENCE:\nBachelor’s degree in computer science, Cybersecurity or equivalent information security, engineering, or like discipline from an accredited college or university, or measurable knowledge / experience from proven industry, military, defense, or government operations.\n8+ years’ experience in security operations, exposure management, or both, including hands-on ownership of detection engineering, SIEM/SOAR content and automation, SOC operations, or enterprise vulnerability and exposure operations, beyond product implementation alone.\nExperience in a customer-facing presales, solutions architecture, or technology consulting role within a VAR, systems integrator, consultancy, or technology vendor.\nDeep expertise in at least two of the following: SIEM/SOAR platforms (e.g., Palo Alto Networks Cortex XSIAM, Microsoft Sentinel, Google SecOps, Splunk); endpoint/EDR/XDR (e.g., CrowdStrike Falcon, Microsoft Defender, SentinelOne); threat, exposure, and vulnerability management, including CTEM and attack surface management (e.g., Tenable, Qualys, Rapid7, Wiz, Axonius, XM Cyber, Cymulate); identity and cloud telemetry integration.\nDemonstrated ability to design target-state security operations architectures, including platform consolidation and migration strategy, detection-as-code, exposure-as-code, and SOC and exposure operating models.\nDemonstrated experience designing or operating a risk-based vulnerability management or CTEM program at enterprise scale, including asset inventory and ownership, findings normalization across multiple scanners and platforms, threat-informed prioritization, remediation SLAs, and executive-level exposure reporting.\nWorking knowledge of exposure prioritization inputs and standards, including CVSS, EPSS, CISA KEV, and SSVC, and of threat intelligence enrichment, with a defensible point of view on where each is useful and where each misleads.\nFamiliarity with attack path analysis, breach and attack simulation, and adversarial validation, and how each should inform remediation priority and measure program effectiveness.\nPractical experience building, evaluating, or operating AI-assisted security operations and exposure management capabilities, with an informed point of view on what works, what does not yet, and how such capabilities should be governed.\nWorking knowledge of Cybersecurity Principles, Frameworks and Standards including NIST CSF, MITRE ATT&CK, MITRE D3FEND, ISO 27001, and CTEM-aligned exposure frameworks; familiarity with OWASP AI, the OWASP Top 10 for LLM Applications, MITRE ATLAS, and the NIST AI Risk Management Framework is a plus.\nWorking knowledge and experience with at least one (preferably multiple) major cloud service providers (AWS, GCP, Azure) and their native security telemetry.\nCertifications such as GIAC (GCIA, GCDA, GCFA, GDAT), CISSP, or vendor architecture certifications on the platforms above are highly preferred.\nExperience in incident response, threat hunting, or purple-team detection validation is highly preferred.\nPrior experience packaging offerings, writing reference architectures, or running technical enablement or certification programs is highly preferred.\nAbility to conduct workshops, assessments, and executive briefings and to develop clear, concise reporting and recommendations.\nKnowledge and experience creating and maintaining technical documentation, presentations, plans, roadmaps, etc.\nStrong executive communication skills, including the ability to make complex security operations problems understandable to executives and to defend a recommendation under challenge.\nStrong interpersonal and communication skills are required.\nStrong customer presentation skills are required.\nMotivated self-starter who loves to solve challenging problems and feels comfortable working directly with customers.\nHighly organized, detail-oriented, excellent time management skills and able to effectively prioritize tasks in a fast-paced, high-volume, and evolving work environment.\nComfortable managing multiple and changing priorities, and meeting deadlines in an entrepreneurial environment.\nAbility to travel when needed (approximately 25-35%); holds a valid driver’s license\nActual salary will be based on a variety of factors, including location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base salary.\nEstimated Pay Range\n$175,000—$200,000 USD\nThe Perks\nComprehensive medical, dental and vision plans for you and your dependents\n401(k) Retirement Plan with Employer Match, 529 College Savings Plan, Health Savings Account, Life Insurance, and Long-Term Disability\nCompetitive Compensation\nTraining and development programs\nMajor offices stocked with snacks and beverages\nCollaborative and cool culture\nWork-life balance and generous paid time off\nOur Commitment\nAt the core of Trace3's DNA is our people. We are a diverse group of talented individuals who understand the importance of teamwork and demonstrating leadership, character, and passion in all that we do.\nWe’re committed to fostering an inclusive workplace where everyone feels respected, valued, and empowered to grow. We recognize that embracing diversity drives inno...","description_format":"text","description_chars":13277,"description_truncated":true,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Life insurance","Retirement plans"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["IT Consulting & Digital Transformation","AI Consulting & Integration","Cloud Consulting & Migration","IT Resellers & VARs"],"lifecycle":[{"event":"open","at":"2026-09-25T04:46:48Z"}],"visa":[{"country":"US","licensed_sponsor":true,"evidence":"Filed H-1B visas in the last two years","filings_12m":0,"filings_prev_12m":3,"green_card_filings_12m":0,"median_offered_wage_usd":null,"route":null,"cap_exempt":false,"checked_at":"2026-10-03T21:08:04+00:00","sources":["US Department of Labor: LCA disclosure data (H-1B, H-1B1, E-3)"],"filings_for_role_12m":0}],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":8,"expected_fill_days":54,"reasons":["conf:14","velocity","win:early"],"computed_at":"2026-10-03T05:45:00Z"},"pay":{"stated_usd_annual":200000,"is_top_pay":true},"html_url":"https://alion.io/job/trace3-senior-solutions-architect-secops-remote","json_url":"https://alion.io/job/trace3-senior-solutions-architect-secops-remote.json","meta":{"generated_at":"2026-10-04T00:27:51Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":500,"day_limit":5000,"remaining_today":4500,"minute_limit":60,"resets_at":"2026-10-05T00:00:00Z"}}}