385,729open jobs
10,133companies
47,789added this week
Browse all
Location
Remote (New Zealand)
Seniority
Senior · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Xplor is a software and payments company that builds tools for service based businesses that run on recurring bookings, memberships, and day to day customer interactions. Its products are designed to bring together the operational side of running a venue or programme, such as scheduling, enrolment, attendance tracking, communications, and reporting, with the ability to take payments in a more integrated way. The underlying problem it tackles is the amount of time and complexity involved in managing customers, staff, and billing across multiple systems, particularly for organisations that need reliable recurring revenue and smooth customer experiences.

Xplor Technologies powers the experiences at the heart of everyday life. Through modern vertical software, embedded payments, and AI-powered capabilities, we help businesses in fitness, recreation, golf and club, field services, laundry, education, and other membership-based and service-based industries simplify operations, uncover insights, and elevate customer and member experiences.

About the opportunity

Our Cyber Threat Intelligence & Response (CTIR) engineers are the people we count on when something goes wrong, and the people who make sure it goes wrong far less often. This is a hands-on incident response role. You'll lead the response to security events across our platforms and applications: triage, investigate, contain, eradicate and recover, then make sure we come out of it stronger.

We're looking for someone who genuinely loves incident response. Someone who gets calmer and sharper when an incident kicks off, who is confident making decisions when the picture isn't complete, and who doesn't wait to be told what to look at. If you're a self-starter who takes ownership from the first alert to the final report, you'll fit right in.

Some of the other responsibilities include :

  • Own incidents as part of the CTIR team: detect, triage, investigate, contain and eradicate, driving each one until the threat is under control.
  • Work live incidents alongside the team and be ready to step up and take the lead yourself when the situation calls for it.
  • Lead investigations across our systems, digging into logs, endpoints, email and network data to work out what happened, how far it reached, and how to resolve.
  • Perform host and network forensics, malware triage, and email analysis (including PDF and document analysis) to understand attacker activity and build a reliable timeline.
  • Coordinate with engineering, IT and the wider security team during a response, and communicate clearly to both technical teams and leadership.
  • Hunt proactively for threats across system logs, user behaviour and threat intelligence, turning what you find into new detections and indicators of compromise.
  • Build and automate incident response workflows and playbooks so routine response is fast and repeatable.
  • Strengthen our detection coverage using the MITRE ATT&CK framework, closing monitoring gaps, and tuning to reduce noise.
  • Feed what you learn from each incident back into how the team detects and responds, so an attack pattern we've seen once is caught faster next time.
  • Analyse threat intelligence, research emerging threats, and recommend practical mitigation.
  • Be ready to work incidents as they arise, including on-call and out-of-hours cover when needed.

For this position, you'll work fully remote. You need to be based in NZ and have full working rights for this region.

What would make me a good candidate?

We are looking for curious and empathetic people. We also love to hear from people who are motivated by meaningful work, resonate with our four core values, have a positive outlook, are comfortable with ambiguity and thrive working in an ever-evolving and complex environment. We are inspired by meeting big picture thinkers and doers, people who can be both tactical and strategic, aim high and put people first in everything they do.

  • People who want to make a real difference in security, and who care about incident response in particular.
  • 3 to 6 years experience in security operations or incident response, with genuine passion for running incidents, not just watching a queue.
  • Confidence managing incidents through the full incident-handling lifecycle, and the judgement to make sound calls under pressure.
  • Strong triage and root cause analysis, with a solid understanding of different log sources and how to correlate events across them.
  • Comfortable reading logs (HTTP, SMTP, network), Windows and Active Directory, and common operating systems and servers.
  • Hands-on experience with a SIEM to investigate, hunt and build detections. Microsoft Sentinel and KQL preferred.
  • Practical experience across EDR, advanced threat protection, identity management and API security.
  • Threat-hunting experience across network flow, user behaviour and threat intelligence, plus the ability to design new ways to detect and contain attacks using scripting, analytics and automation.
  • Familiar with a broad range of attacker tools and techniques (TTPs), with the ability to map adversary activity across the Cyber Kill Chain to identify, assess, and communicate potential attack progression.
  • A self-starter who works independently, delivering projects without being chased, and keeps learning as the industry develops.
  • A critical thinker with strong problem-solving instincts and exceptional communication skills, capable of translating complex technical risks into clear, actionable insights for both the immediate team and cross-functional partners, including engineers, administrators, and leadership, through both verbal and written communication.
  • Good understanding of ITIL processes and standards such as ISO 27001 and PCI DSS, including change, incident and problem management.

Nice to have

  • Malware analysis experience.
  • Preferred certifications such as GCIH, GCFA, AZ-500 or SC-100.
  • Experience with Jupyter Notebooks for threat-hunting.
  • Python and PowerShell scripting.
  • Experience building and tuning SOAR automation for response.

At Xplor, we believe the best innovation and ideas happen at the intersections of our differences - across cultures, generations, disciplines, and lived experiences. So even if you do not tick every box, we still encourage you to apply.

Values and Life at Xplor

Our five core values guide us from how we hire and recognise our team members to how we interact with our customers day to day:

  • Find a better way
  • Do the right thing
  • Say it straight
  • Win together
  • Own the outcome

If these values sound like you, and describe people you want to work with, you will thrive at Xplor.

As an Xplorer, you will be part of a global network of talented colleagues who will support your success. We look for commonalities and shared passions and give people the tools they need to deliver great work and grow at speed.

Some of our perks and benefits are:

  • Paid Parental Leave benefit programs
  • #GiveBackDays/Commitment to social impact - 3 extra days off to volunteer and give back to your local community
  • Ongoing dedication to Diversity & Inclusion initiatives such as D&I Council, Global Mentorship Program
  • Access to free mental health support
  • Flexible working arrangements

Ready to apply?

To start your application, please submit your resume and we will be in touch as soon as we can. Please include the word "moonshot" at the top of your message to the Hiring Manager so that we know you took the time to read our job ad.

We understand that diverse candidates have diverse needs. We welcome you to inform us of any additional needs related to completing your job application or participating in the interview process, via [email protected].

More about us

More than 130,000 businesses in 72+ countries rely on Xplor to run their day and get paid, processing over $47 billion in payments annually. Our connected ecosystem helps operators spend less time managing complexity and more time delivering the experiences that matter most.

Xplor is backed by world-class investors Advent International, Battery Ventures, and Silver Lake.

Good to know

We kindly ask you to apply through our careers portal or external job boards only. Please don't send your application via email. They will not be forwarded.

To learn more about us and our products, please visit xplor.com/careers/.

We also invite you to check out our Candidate FAQs for more information about our recruitment process xplor.com/recruitment-faqs/.

EEO and Artificial Intelligence

We believe in transparent hiring. We use an applicant tracking system that includes artificial intelligence enabled features to assist with the screening and assessment of job applications, such as candidate scoring or ranking. These tools support our recruitment process, but all hiring decisions are made by our recruitment team following human review. We do not rely on artificial intelligence to make final hiring decisions. Find our Candidate AI Usage guidelines here.

Xplor is dedicated to attracting, retaining and developing our people regardless of gender identity, ethnicity, sexual orientation, disability and age. Applications are encouraged from all sectors of the community and we particularly encourage speakers of Te Reo Māori or Pasifika languages to apply.

We are a 2024 Circle Back Initiative Employer - we commit to respond to every applicant.

We make it a priority to respond to every applicant.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
385,729 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Auckland
$87k – $198k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • San Diego
DevOps
Azure
Azure DevOps
CI/CD
Terraform
Cybersecurity
FedRAMP
Fortify
Microsoft Defender
Microsoft Defender for Cloud
Microsoft Entra ID
Microsoft Sentinel
MITRE ATT&CK
Sonatype Nexus IQ
Management
ServiceNow
Apply
$137k – $229k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • Atlanta
Cybersecurity
ISO 27001
NIST 800-53
NIST CSF
Apply
Helpdesk Engineer 4 hours ago
$13k – $33k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Bengaluru
DevOps
Azure
Cybersecurity
Least Privilege
Microsoft Entra ID
Management
Gmail
Google Drive
Google Workspace
Jira
Microsoft Teams
OneDrive
Outlook
Power Apps
Power Automate
ServiceNow
SharePoint
Apply
$84k – $206k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Montreal • Pittsburgh
DevOps
IAM
Cybersecurity
ISO 27001
NIST CSF
Threat Modeling
Zero Trust
Apply
$75k – $108k per year • In office • Full-Time • Toronto
Management
Outlook
Apply
$107k – $199k per year (Estimated) • Remote • Full-Time • 3+ years exp • Atlanta
PowerShell
Python
Cybersecurity
Cyber Kill Chain
ISO 27001
Microsoft Sentinel
MITRE ATT&CK
PCI DSS
Marketing
LinkedIn
Apply
Remote • Full-Time • 5+ years exp • Auckland
AI/ML
Claude
Claude Code
Cursor
DevOps
AWS
Azure
Cybersecurity
Threat Modeling
Apply
$72k – $93k per year • Remote • Full-Time • 5+ years exp • Toronto
JavaScript
Design
Figma
Management
Miro
Apply
Group Product Manager 14 days ago
$99k – $158k per year (Estimated) • Remote • Full-Time • 5+ years exp • Manchester
Apply
$18k – $49k per year (Estimated) • In office • Full-Time • 4+ years exp • Pune
JavaScript
Node JS
Databases
Amazon Aurora
Apache Kafka
PostgreSQL
AI/ML
Claude
Claude Code
Copilot
Cursor
Tokenization
Frontend
ESLint
Material UI
Prettier
React.js
Storybook
DevOps
AWS
AWS Lambda
Bitbucket
CI/CD
Datadog
Git
GitHub Actions
Grafana
SigNoz
Terraform
Amazon ECS
Amazon EventBridge
API Gateway
GitHub
QA
Jest
k6
Playwright
Apply
In office • Full-Time • Auckland • Wellington
JavaScript
Node JS
Python
SQL
TypeScript
C#
ABAP
Python
FastAPI
C#
.NET
ABAP
SAP BTP
Databases
Apache Kafka
Databricks
Delta Lake
Kafka
pgvector
Pinecone
Qdrant
Snowflake
Weaviate
PostgreSQL
AI/ML
AI Agents
Amazon SageMaker
Anthropic
AutoGen
AWS Bedrock
AWS Bedrock AgentCore
Claude
Copilot
CrewAI
Embeddings
Gemini
Google ADK
LangChain
Langfuse
LangGraph
LlamaIndex
LLM
MLFlow
OpenAI
Prompt Engineering
RAG
Semantic Search
Semantic Search
Vertex AI
Frontend
GraphQL
React.js
DevOps
Amazon ECS
Amazon Kinesis
AWS
AWS Lambda
AWS Step Functions
Azure
CI/CD
Cortex
Docker
GCP
Kubernetes
OpenTelemetry
Pulumi
Terraform
Vector
Prometheus
Management
ServiceNow
Marketing
Salesforce
Apply
In office • Full-Time • 5+ years exp • Auckland
Swift
Mobile
SwiftUI
DevOps
AWS
Apply
In office • Internship • PhD • Auckland
C#
C++
C#
.NET
AI/ML
Text-to-Speech
DevOps
CI/CD
Vercel
Management
Google Docs
Stripe
Marketing
LinkedIn
Apply
Lead Engineer 2 days ago
Remote/Hybrid • Full-Time • Auckland
C#
SQL
C#
.NET
DevOps
CI/CD
Incident Management
Apply
$66k – $109k per year • Remote • Full-Time • 3+ years exp • Bachelor's Degree • Auckland
Management
Confluence
Apply
See all jobs
This is one of many
385,729 more open roles from verified company boards, updated every day.