AI SOC Solutions Architect - Professional Services
AI summary of the role
Design and deliver AI-driven SOC automation for enterprise customers, turning their existing security operations into agent-assisted workflows that reduce analyst workload and MTTR.
What you’ll do
- Design and implement AI-driven SOC automation, building agentic workflows and AI agents for triage, enrichment, investigation, and response.
- Map customer Tier 1/2 triage, investigation, and incident response runbooks into automated workflows on Torq.
- Own technical delivery end to end for strategic accounts, from architecture to handoff, with measurable outcomes within weeks.
- Engineer integrations across SIEM, EDR/XDR, IdP, ticketing, and threat intel via REST APIs.
What you’ll bring
- 4–6+ years in a technical security role (SOC analyst, detection/automation engineer, incident response, or technical PS/SA in cybersecurity).
- Hands-on SOC operational understanding of alert triage, investigation, escalation, and incident response lifecycle.
- Direct experience with at least one SIEM (Sentinel, Splunk, Chronicle) and one EDR/XDR (CrowdStrike, Defender, SentinelOne).
- Proficiency in Python, Bash, or Go, plus fluency with REST APIs, JSON, and webhooks.
Technologies
SIEM · Sentinel · Splunk · Chronicle · EDR/XDR · CrowdStrike · Defender · SentinelOne · Python · Bash · Go · REST APIs
About Torq
AI-native security operations platform for enterprise SOC teams, combining hyperautomation, case management, and customizable AI agents to triage, investigate, and remediate threats faster.
Series D · 200–500 people
Employer postings · Data from · Sources