Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Cybersecurity Architect, Agentic SOC Modernization & AI-Enabled Security Operations

West Monroe
CompanyWest Monroe
CategoryData & Analytics
LocationChicago; Los Angeles; New York; San Francisco
RemoteOn-site (inferred)
EmploymentNot stated
LevelLead
SalaryNot stated by the employer
Posted11 Jun 2026
Last verified11 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Are you ready to make an impact? West Monroe is seeking a Senior Cybers ecurity Architect, Agentic SOC Modernization & AI-Enabled Security Operations  to join our Cybersecurity & Enterprise Technology practice. This role is focused on helping clients modernize security operations by designing next-generation SOC capabilities that leverage automation, AI-enabled workflows, agentic security operations, advanced analytics, SIEM/SOAR platforms, threat intelligence, and scalable detection and response processes.   You will help clients move beyond traditional, manually intensive SOC models toward more intelligent, automated, and resilient security operations. This includes assessing current-state SOC capabilities, rationalizing fragmented tooling, designing future-state operating models, defining agent-assisted workflows, improving detection engineering, automating investigation and response processes, and enabling measurable improvements in analyst productivity, detection coverage, and response effectiveness.   You will serve as a trusted advisor to CIOs, CISOs, security operations leaders, technology executives, and cyber defense teams as they transform fragmented security operations into scalable, intelligence-driven, AI-enabled, and human-governed SOC capabilities.   While this role will support clients across industries, there is a strong preference for candidates with experience modernizing SOC capabilities for  Energy & Utilities clients , including electric, gas, water, and other critical infrastructure environments. Experience supporting Financial Services, Healthcare, Private Equity, and other highly regulated sectors is also valuable where security operations, regulatory requirements, operational resilience, and risk reduction are critical.   Experience with  Google Security Operations / Google SecOps  is a plus, but this role is intended to be broader than any single platform. The ideal candidate understands how to design modern SOC capabilities across people, process, data, governance, automation, AI, and technology.     What You’ll Do   Lead Agentic SOC Modernization Strategy   Assess current-state security operations capabilities across people, process, technology, data, governance, automation, and operating model dimensions.    Define future-state SOC operating models that incorporate AI-assisted investigation, agentic workflows, automated enrichment, response orchestration, human-in-the-loop decisioning, and continuous improvement.    Develop SOC modernization roadmaps aligned to business risk, cyber maturity, regulatory obligations, operational resilience goals, staffing models, and technology investments.    Identify opportunities to reduce alert fatigue, improve analyst efficiency, accelerate investigation and response, increase detection coverage, and improve the quality of security outcomes.    Evaluate where AI agents, automation, analytics, and orchestration can improve SOC workflows without introducing unacceptable operational, privacy, security, or governance risk.    Facilitate executive workshops and working sessions with security leadership, infrastructure, cloud, data, application, compliance, risk, and operations stakeholders.   Design AI-Enabled and Agentic SOC Capabilities   Architect AI-enabled SOC capabilities that support alert triage, evidence gathering, enrichment, summarization, detection authoring, threat hunting, response recommendation, case management, and executive reporting.    Define agentic SOC use cases that improve security operations outcomes, including autonomous or semi-autonomous investigation support, alert correlation, threat intelligence enrichment, detection tuning,