Detection Engineer - APAC
elevenlabsSingaporeFull Time5d ago
PythonGCPGoogle CloudAISecuritySaaSOperationsTalentGrowthEngineeringInfrastructureReliability
Job description
Detection Engineer - APAC at elevenlabs.
About the role
Join our security operations team to build and maintain our detection and incident response systems. You will focus on automating security processes and reducing manual tasks, using advanced AI models. This position is for someone who values security frameworks and best practices, takes initiative, and aims to continuously enhance our security posture.
Key facts
What you'll do
- Lead incident response, including triaging alerts, investigating security events, and managing response actions.
- Develop, refine, and maintain security detection rules and alerts.
- Manage SIEM infrastructure, specifically Google SecOps (Chronicle), for data onboarding, parsing, rule creation, and dashboards.
- Monitor security across platforms like JAMF MDM for macOS, Google Workspace, Okta, and various SaaS applications.
- Oversee cloud security monitoring in Google Cloud (GCP), utilizing GCP Security Command Center (SCC).
- Automate detection and response tasks, data parsing, and security tool integration using scripting.
- Translate threat intelligence and common attack techniques into effective detections.
Requirements
- Demonstrated experience in incident response and security operations.
- Strong background in developing and tuning security detection rules.
- Hands-on experience with Google SecOps (Chronicle) SIEM infrastructure.
- Proficiency in security monitoring for JAMF MDM, Google Workspace, Okta, and general SaaS.
- Experience with Google Cloud (GCP) security monitoring, including GCP Security Command Center (SCC).
- Solid scripting skills in Python or Bash for automation.
- Deep understanding of attack techniques, threat intelligence, and their application to detections.
- Familiarity with security frameworks such as MITRE ATT&CK and NIST Cybersecurity Framework.
- Excellent analytical and problem-solving abilities.
Skills & tools
- Google SecOps (Chronicle)
- JAMF MDM
- Google Workspace
- Okta
- Google Cloud (GCP)
- GCP Security Command Center (SCC)
- Python
- Bash
- MITRE ATT&CK
- NIST Cybersecurity Framework
Practical notes
- This role requires operating within GMT+10 time zones.
- ElevenLabs offers an annual discretionary stipend for professional development.
- An annual discretionary stipend is provided for meeting colleagues.
- The company holds an annual offsite event for the entire team.
- A monthly co-working stipend is available if not near a main hub.