Back to Jobs
Trail of Bits
Cybersecurity 2h ago

Solutions Architect (Cybersecurity) - Remote US or Canada

Trail of Bits
United StatesUnited States
Full-time
$175,000 to $215,000
Senior-Level

Job Description

Key Skills Required

Master these to land this role

AI-native ToolingProgram DesignSecurity ConsultingTechnical Account DirectorCybersecurity

Want to know if you're a match for this job?

Calculate My Match Score
{"type":"html","content":"

Post-Engagement Technical Sponsorship

  • Join findings readouts alongside the engineers who did the work, then own the expansion planning that follows
  • Own the technical continuity of each named account: what changed, what is still open, what we should look at next.
  • Join or lead technical office hours and working sessions that give client engineers structured, scoped access to our expertise.
  • Back the PMO on escalations that turn technical. The process and the client relationship stay with them; the methodology and judgment are yours.

Client Technical Strategy and Business Reviews

  • Own the technical half of business reviews across our strategic accounts, with a point of view on where the client's security should go next rather than a recap of what we delivered.
  • Build a multi-year security roadmap for each account in your named portfolio, and use it to make the case for the next phase.
  • Amplify the technical voice to our dedicated account teams, account planning, and portfolio strategy.
  • Spot the single-practice clients who should be working with more of the firm, and make the technical case before anyone makes the commercial one.

Expansion and Program Design

  • Convert post-engagement needs into scoped work: fix reviews, differential reviews, follow-ons, retained advisory, and multi-phase programs. Re-engage past clients where delivered work gives us a running start.
  • Design and price programmatic engagements that span practice areas, working with the practice leads whose people will staff them.
  • Help shape our milestone- and outcome-based engagement models, and partner with Account Executives on expansion. Commercial strategy is theirs; whether the technical plan is right and deliverable is yours.

Complex Pre-Sales and Service Design

  • Take the deals that fall outside our established scopes: cross-practice engagements, multi-year programs, and clients still working out what they need. Write down what you learn so the next person does not start over.
  • Refine our service offerings alongside the Lead of Sales Engineering, our Engineering Directors, and the Head of GTM, translating engineering capabilities into services we can bring to clients.
  • Iterate the agentic tooling our GTM team runs on. Everyone here ships skills; this role ships the ones that make scoping and account planning faster.

Every seat here has a clear lane. Senior Sales Engineers own the pre-sales technical gate and stay engaged with clients after signature; you step in for programmatic and cross-practice work, by exception. You're PMO's technical counterpart on delivery, scheduling, and client continuity. The commercial relationship and the number belong to Account Executives, while the technical strategy behind it is yours. Engineers deliver the work: you'll know when to loop one in, though you won't carry billable hours on engagements yourself.

Requirements

What You'll Bring

  • Client-facing security depth. You bring 7+ years in security consulting, security engineering, or a related technical delivery role, including 3+ years client-facing, and can hold a technical conversation with anyone from a client's staff engineer to their board.
  • The ability to design a program, not just a project. You can look at a client's estate, say what should happen over the next twelve to eighteen months, and defend the sequence, backed by hands-on delivery experience in security assessments, architecture reviews, threat modeling, or remediation.
  • Scoping and pricing judgment. Experience translating ambiguous technical needs into scoped, priced engagements, including statements of work reviewed by both clients and delivery teams.
  • Credibility with engineers. You don't have to be the deepest specialist in every domain, but you need enough judgment to work effectively with specialized engineers, know where your own expertise ends, and ask strong technical questions. Clients will interview and challenge you.
  • Commercial instinct. You can spot the expansion and shape it, and you leave the closing to the Account Executives who are great at it.
  • Clear technical writing. Roadmaps, readouts, statements of work, and business review material. Structure and accuracy matter more than volume.
  • AI-native in practice. You build with agentic tooling: skills, agents, and automations you can show us or walk us through, and you can explain what you built, why, and how it worked. You will extend ours.

Nice to Have

  • Prior work at a security consultancy, audit firm, or professional services organization
  • Depth in one or more of our domains: application security, blockchain, cryptography, AI/ML security, or systems and low-level research
  • Experience owning technical business reviews or a named account portfolio
  • Experience designing retained, programmatic, or outcome-based security engagements
"}

How would you rate this job post?

See what other professionals think about this role.

banner

Trail of Bits is a premier cybersecurity consulting and research firm dedicated to securing the world's most targeted organizations and products. Founded by a team of expert hackers, the company operates at the intersection of high-end security research and practical, real-world application. Moving beyond traditional bug-hunting, Trail of Bits is on a mission to fundamentally "fix software" by combining an attacker mentality with deep expertise in systems software, cryptography, blockchain, and AI/ML security. Under the hood, they provide a comprehensive suite of services including software assurance, customized security engineering, and cutting-edge R&D—helping to fortify critical, globally utilized infrastructure like Kubernetes and the Linux kernel. Additionally, they develop specialized commercial tools, such as the iVerify mobile device security platform. Their primary target audience spans highly regulated enterprises, major tech corporations, and pioneering Web3 protocols that require absolute confidence in their codebases. What sets Trail of Bits apart in the fiercely competitive infosec industry is its profound commitment to the open-source community (frequently publishing proprietary research and tools) alongside an elite, remote-first engineering culture that boldly tackles technology's newest and most challenging risks.

Safety First

  • Never pay for a job application.
  • Do not share sensitive bank info.
  • Verify the client before starting work.
Learn More