AI SOC Solutions Architect - Professional Services

Torq
United States
Workplace: OnsiteFull timeFunction: Solutions Engineering & Sales EngineeringExperience: 4-6 yearsSkills: ["Customer-facing communication","Organizational skills","Technical advisory","Problem-solving","Stakeholder collaboration"]

Design and deliver AI-driven SOC automation for enterprise customers, translating Tier 1/2 triage, investigation, and incident response runbooks into agent-assisted workflows on the Torq platform. Own technical delivery end to end—from architecture and build through validation and handoff—while engineering integrations across SIEM/EDR/IdP and other tools. Tune AI agent behavior with prompt engineering and guardrails, and advise SOC leaders to drive adoption and measurable outcomes within weeks.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Torq
Torq
9 hours ago

AI SOC Solutions Architect - Professional Services

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Design and deliver AI-driven SOC automation for enterprise customers, translating Tier 1/2 triage, investigation, and incident response runbooks into agent-assisted workflows on the Torq platform. Own technical delivery end to end—from architecture and build through validation and handoff—while engineering integrations across SIEM/EDR/IdP and other tools. Tune AI agent behavior with prompt engineering and guardrails, and advise SOC leaders to drive adoption and measurable outcomes within weeks.
Location: United States
Workplace: Onsite
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Design and implement AI-driven SOC automation by building agentic workflows and AI agents that triage, enrich, investigate, and respond to alerts while reducing analyst workload and MTTR.
  • •Translate customer SOC processes into automation by mapping Tier 1/2 triage, investigation, and incident response runbooks into automated, agent-assisted workflows on Torq.
  • •Own strategic account technical delivery end to end—architecture, build, validation, and handoff—so customers see measurable outcomes within weeks.
  • •Engineer integrations across the customer security stack (SIEM, EDR/XDR, IdP, ticketing, threat intel) using REST APIs.
  • •Design, tune, and evaluate AI agent behavior with prompt engineering, guardrails, and human-in-the-loop checkpoints, then lead adoption with SOC leaders and analysts.

Key Requirements

  • •4–6+ years in a technical security role such as SOC analyst, detection/automation engineering, incident response, or solutions architect work in cybersecurity.
  • •Hands-on SOC operations understanding across alert triage, investigation, escalation, and the incident response lifecycle (Tier 1/2).
  • •Experience with core detection tooling—at least one SIEM (Sentinel, Splunk, Chronicle) and one EDR/XDR (CrowdStrike, Defender, SentinelOne).
  • •Automation/integration skills using at least one of Python, Bash, or Go, plus REST APIs, JSON, and webhooks (jq/data transformation is a plus).
  • •Practical applied AI experience using LLMs/agentic AI, including prompt engineering, designing/evaluating agent behavior, and guardrails for failure modes like hallucination or over-automation.
Experience:4-6 yearsCybersecuritySOCIncident responseSecurity automation
Skills:Customer-facing communicationOrganizational skillsTechnical advisoryProblem-solvingStakeholder collaboration
Certifications:CISSPGCIHGCIAGCFA
Languages:English
Tech Stack:TorqAI SOCAgentic AILLMsPrompt engineeringGuardrailsREST APIsJSONWebhooksJqPythonBashGoSIEMSentinelSplunkChronicleEDR/XDRCrowdStrikeMicrosoft Defender

Company Brief

Torq
Provides a no-code/low-code security automation platform (SOAR) enabling security teams to automate detection, response, and identity/security operations workflows across cloud and SaaS environments to accelerate incident response and reduce alert fatigue.
Industry: Cybersecurity
Company Size: Medium (51 to 250 employees)
Growth: Growth Stage Startup
Headquarters: San Francisco, United States
Website