Назад
Company hidden
17 часов назад

AI SOC Solutions Architect (Cybersecurity)

Формат работы
remote (только Costa_rica)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
CR
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
AI SOC Solutions Architect (Cybersecurity) (AI-driven SOC automation): Designing and delivering agent-assisted security workflows for enterprise customers with an accent on alert triage, threat investigation, incident response, and integrations across SIEM and EDR/XDR platforms. Focus on engineering trustworthy AI agent behavior, building REST API integrations, and reducing analyst workload and mean time to respond.

Location: Remote, based out of Costa Rica

Company

hirify.global develops an AI SOC platform that combines hyperautomation and agentic AI to automate enterprise security operations.

What you will do

  • Design and implement AI-driven SOC automation, including agentic workflows and AI agents for alert triage, enrichment, investigation, and response.
  • Translate Tier 1/2 SOC triage, investigation, and incident response runbooks into automated workflows on the hirify.global platform.
  • Own technical delivery for strategic accounts from architecture and implementation through validation and handoff.
  • Build integrations with SIEM, EDR/XDR, identity provider, ticketing, and threat intelligence systems using REST APIs.
  • Design, tune, and evaluate AI agent behavior, including prompts, guardrails, and human-in-the-loop checkpoints.
  • Advise SOC leaders and analysts, resolve technical blockers, support adoption, and contribute field learnings to new Professional Services offerings.

Requirements

  • 4–6+ years of experience in a technical security, SOC, incident response, cybersecurity Professional Services, or Solutions Architect role.
  • Hands-on knowledge of alert triage, investigation, escalation, and the incident response lifecycle.
  • Experience with at least one SIEM, such as Sentinel, Splunk, or Chronicle, and one EDR/XDR platform, such as CrowdStrike, Defender, or SentinelOne.
  • Proficiency in Python, Bash, or Go, plus REST APIs, JSON, and webhooks.
  • Practical experience with LLMs and agentic AI, including prompt engineering, agent evaluation, and mitigation of hallucination and over-automation risks.
  • Ability to explain technical and AI concepts to analysts and CISOs, manage customer relationships, and coordinate multiple enterprise engagements.

Nice to have

  • SOAR platform experience, particularly hirify.global, XSOAR, Splunk SOAR/Phantom, or Chronicle SOAR.
  • Detection engineering and query languages such as KQL, SPL, Sigma, or YARA.
  • Experience with MCP, tool/function calling, RAG, vector stores, MSSP deployments, or cloud security fundamentals.
  • Security, incident response, AI, or cloud certifications such as CISSP, GCIH, GCIA, GCFA, or an AI/cloud certification.

Culture & Benefits

  • Work remotely from Costa Rica as part of a global Professional Services organization.
  • Work on an AI-native autonomous SecOps platform for enterprise security teams.
  • Collaborate in a fast-growing startup environment focused on security automation and applied AI.
  • hirify.global is an equal opportunity employer committed to diversity and inclusion.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →