Applying and hearing nothing back? Find out what an ATS does to your CV — free.

See my score

Detection Engineer

Elevenlabs · London

On-sitePosted 9 Aug 2026

What this role requires

5 requirements, read out of the advert rather than guessed from the job title:

Also mentioned, not required: JAMF MDM, Google Workspace, Okta, Cloud Security, Google Cloud, GCP Security Command Center, Python, Bash, MITRE ATT&CK, NIST Cybersecurity Framework. Worth having, but their absence is not what gets a CV filtered out.

See how often each of these is required across open security roles in Europe.

Check my CV against these 5 requirements

Free, no card. Tells you which of them your CV evidences and which it only implies.

Job description

About ElevenLabs

ElevenLabs is an AI research and product company transforming how we interact with technology.

We launched in January 2023 with the first human-like AI voice model. Today, we serve millions of users and thousands of businesses - from fast-growing startups to large enterprises like Deutsche Telekom and Meta. Our investors are some of the world's most prominent, including Andreessen Horowitz, ICONIQ Growth and Sequoia. We've raised $781M in funding and our last valuation was $11B - multiples of 11, always. We have expanded from voice into three main platforms:

ElevenAgents enables businesses to deliver seamless and intelligent customer experiences, with the integrations, testing, monitoring, and reliability necessary to deploy voice and chat agents at scale.

ElevenCreative empowers creators and marketers to generate and edit speech, music, image, and video across 70+ languages.

ElevenAPI gives developers access to our leading AI audio foundational models.

Read the full description (30 more sections)

Everything we do is the result of the creativity and commitment of our team - builders doing the best work of their lives. We are researchers, engineers, and operators. IOI medalists and ex-founders. If you want to work hard and create lasting positive impact, we want to hear from you.

How we work

High-velocity: Rapid experimentation, lean autonomous teams, and minimal bureaucracy.

Impact not job titles: We don’t have job titles. Instead, it’s about the impact you have. No task is above or beneath you.

AI first: We use AI to move faster with higher-quality results. We do this across the whole company—from engineering to growth to operations.

Excellence everywhere: Everything we do should match the quality of our AI models.

Global team: We prioritize your talent, not your location.

What we offer

Innovative culture: You’ll be part of a generational opportunity to define the trajectory of AI, surrounded by a team pushing the boundaries of what’s possible.

Growth paths: Joining ElevenLabs means joining a dynamic team with countless opportunities to drive impact - beyond your immediate role and responsibilities.

Learning & development : ElevenLabs proactively supports professional development through an annual discretionary stipend.

Social travel : We also provide an annual discretionary stipend to meet up with colleagues each year, however you choose.

Annual company offsite: Each year, we bring the entire team together in a new location - past offsites have included Croatia and Italy.

Co-working : If you’re not located near one of our main hubs, we offer a monthly co-working stipend.

About the role

As a Security Detection & Response Engineer at ElevenLabs, you'll be on the front lines of our security operations, playing a critical role in building and maintaining our detection and incident response capabilities. You'll have an automation mindset, constantly looking for ways to scale our security efforts and reduce manual work, leveraging frontier AI models. This role is perfect for someone passionate about security frameworks and best practices, driven by ownership, and eager to continuously improve our security posture. You’ll be instrumental in developing best-in-class security practices as we scale.

Requirements

Proven experience in incident response and security operations, including triaging security alerts, conducting investigations, and leading response efforts.

Strong background in detection engineering, including developing, tuning, and maintaining security detection rules and alerts.

Hands-on experience with SIEM Infrastructure, specifically with Google SecOps (Chronicle). This includes data onboarding, parsing, rule creation, and dashboarding.

Proficiency in security monitoring across various platforms, including JAMF MDM for macOS endpoints, Google Workspace, Okta and general SaaS applications.

Experience with cloud security monitoring, particularly in Google Cloud (GCP) with familiarity in GCP Security Command Center (SCC).

Solid scripting skills (e.g., Python, Bash) for automating detection and response tasks, data parsing, and security tooling integration.

Deep understanding of common attack techniques, threat intelligence, and the ability to translate them into actionable detections.

Familiarity with security frameworks and best practices (e.g., MITRE ATT&CK, NIST Cybersecurity Framework).

Excellent analytical and problem-solving skills, with a keen eye for detail and the ability to connect disparate pieces of information during investigations.

Location

This is an in-country role with a strong preference for a candidate in London.

We are an equal opportunity employer and do not discriminate on the basis of race, religion, national origin, gender, sexual orientation, age, veteran status, disability or other legally protected statuses.

Find Jobs in United Kingdom on Arbeitnow

You can apply in a minute. Will it get read?

Applications are screened by software before they reach a person. See the score yours gets and the three things costing you the most — then this role, and the rest of the feed, ranked against what your CV actually says. Free, no card, about thirty seconds.

  1. 1

    Drop in your CV

    One PDF, about thirty seconds. No card, no forms to fill in by hand.

  2. 2

    See what the filter sees

    We read it the way an applicant tracking system does and score it — plus the three things costing you the most.

  3. 3

    Get every role ranked

    Each listing scored against what your CV actually says, with the missing skills named, updated as new roles arrive.

  • Your CV file is deleted after parsing — we keep the extracted skills, and you can delete those in one click
  • Free forever, no card
  • Listings refreshed every 6 hours