4 days ago
Base Salary
$175k - $200k/yr
Responsibilities
- Lead client engagements involving target-state SOC architecture, SIEM/SOAR modernization, agentic SOC design, AI-assisted detection, CTEM, and vulnerability operations redesign.
- Assess client environments and present strategic, tactical, and operational recommendations to CISO- and board-level audiences.
- Design architectures unifying vulnerability management, attack surface management, cloud and container posture, identity exposure, and attack path analysis.
- Define risk scoring, remediation SLAs, accountability models, and threat-informed prioritization processes.
- Architect AI-assisted security operations capabilities including finding enrichment, deduplication, remediation routing, executive reporting, and closed-loop validation.
- Govern asset inventory, findings normalization, security data pipelines, and platform decisions supporting agentic SOC and exposure workflows.
- Create reference architectures, assessment frameworks, packaged offerings, delivery playbooks, and technical enablement or certification content.
- Support account teams with solution design, competitive positioning, proposals, statements of work, and technical validation.
- Collaborate with security practices, regional teams, managed services, service delivery, and technology partners to deliver repeatable solutions.
- Provide subject matter expertise, industry advocacy, mentoring, and speaking or publication support.
Requirements
- Bachelor’s degree in computer science, cybersecurity, information security, engineering, or a related discipline, or equivalent proven industry, military, defense, or government knowledge and experience.
- 8+ years of experience in security operations, exposure management, or both, including hands-on ownership of detection engineering, SIEM/SOAR automation, SOC operations, or enterprise vulnerability and exposure operations.
- Customer-facing presales, solutions architecture, or technology consulting experience within a VAR, systems integrator, consultancy, or technology vendor.
- Deep expertise in at least two relevant areas, including SIEM/SOAR, endpoint/EDR/XDR, threat and exposure management, vulnerability management, CTEM, attack surface management, identity, or cloud telemetry integration.
- Experience designing target-state security operations architectures, platform consolidation and migration strategies, detection-as-code, exposure-as-code, and SOC or exposure operating models.
- Experience designing or operating enterprise-scale risk-based vulnerability management or CTEM programs.
- Knowledge of CVSS, EPSS, CISA KEV, SSVC, threat intelligence enrichment, attack path analysis, breach and attack simulation, and adversarial validation.
- Practical experience building, evaluating, or operating AI-assisted security operations or exposure management capabilities.
- Knowledge of NIST CSF, MITRE ATT&CK, MITRE D3FEND, ISO 27001, CTEM-aligned frameworks, and preferably OWASP AI, OWASP Top 10 for LLM Applications, MITRE ATLAS, and the NIST AI Risk Management Framework.
- Experience with at least one major cloud provider, preferably multiple, and its native security telemetry.
- GIAC, CISSP, or relevant vendor architecture certifications are highly preferred.
- Incident response, threat hunting, purple-team detection validation, offering packaging, reference architecture development, or technical enablement experience is highly preferred.
- Strong workshop, assessment, executive briefing, technical documentation, presentation, communication, organization, prioritization, and customer relationship skills.
- Ability to travel approximately 25–35% and hold a valid driver’s license.
Benefits
- Comprehensive medical, dental, and vision plans for employees and dependents.
- 401(k) retirement plan with employer match, 529 college savings plan, health savings account, life insurance, and long-term disability.
- Training and development programs.
- Major offices stocked with snacks and beverages.
- Collaborative culture, work-life balance, and generous paid time off.
- Remote work arrangement with approximately 25–35% travel.
- Estimated base salary range of $175,000–$200,000 USD, with some positions potentially eligible for variable incentive compensation.
Tech Stack
Categories
Solutions Engineering
About Trace3
Trace3 is an IT solutions integrator and consulting firm that designs, implements, and operates data, security, and cloud infrastructure for enterprises. Its offerings span advisory services, systems integration, and managed operations across networking, storage, backup, and data platforms. Founded in 2002 and headquartered in Irvine, California, Trace3 is privately held and backed by American Securities.
