Senior Security Engineer

4 weeks ago


Melbourne, Victoria, Australia Xero Full time
Our Purpose

At Xero, we're here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and connecting businesses with the right data, advisors and apps. When that happens, we're not only making life better for small business, we'll be building a stronger economy that can change the world.

About the team

Our Cyber Security Engineering pods are responsible for delivering Xero's underlying network infrastructure for our beautiful offices, seamless communication, and work from anywhere methodology. We run mission-critical infrastructure, and you'll build resilient and scalable networks.

About the role

As a Senior Security Engineer, you'll be hands-on solving problems with a focus on DLP, Firewalls, SASE, ZTNA and CASB.

Over time, you'll become deeply familiar with the capabilities of our vendors to build and support modern and adaptable security services that will delight our customers. You'll deliver robust network security solutions across both BAU and project-based initiatives in a fast-paced dynamic environment.

Automation will be the standard for you, and you'll seek new and interesting ways to reduce our operational overheads. We're looking for people with a growth mindset, continuously learning and adapting to emerging network security threats and technologies; coupled with experience working in high-availability network security environments.

Most importantly, you'll be a team player and get to work with an awesome group of engineers in an amazing and unique working environment.

What you\'ll do
  • Assess, design, implement and manage security protocols, with emphasis on Data Loss Protection to protect Xero's sensitive data and meeting compliance (SOC2 and ISO27001).
  • Provide input and guidance to develop security frameworks and ensure best practices are applied across the Xero network; develop and lead scalable, reliable and secure network architectures such as SASE, ZTNA, DLP, CASB and SWG.
  • Automate security configurations and infrastructure-as-code (IaC) practices to reduce operational overhead and improve reliability; support high-availability network security for BAU operations, and deliver solutions in project-driven environments.
  • Proactively monitor, detect, and respond to security threats, ensuring incidents are closed, contained, and remediated efficiently in a timely manner.
  • Work with SOC teams and security analysts to tune and optimise network security detections for evolving threats; conduct regular security assessments, ensuring network configurations, firewalls, and security policies align with best practices and regulatory standards.
  • Provide coaching and mentorship, helping teach small groups of engineers and contributing to Xero's shared knowledge base.
What you\'ll bring with you
  • Deep expertise in Data Loss Prevention (DLP) solutions, including policy configuration, monitoring, and incident management.
  • Extensive experience in network security, cloud-based security solutions, and Zero Trust architectures. - Ideally with proven ability of designing and enforcing Zero Trust security models, ensuring secure authentication, segmentation, and access controls.
  • Proficiency in scripting and automation (Python, Terraform, or other infrastructure-as-code tools).
  • Experience working with Cloud Access Security Broker (CASB) and Secure Web Gateway (SWG)
  • Deep understanding of network security compliance frameworks (SOC2, ISO 27001, NIST, CIS Benchmarks).
  • Strong stakeholder management skills, with the ability to influence without authority and align security priorities with business needs.
  • Solid background in cybersecurity incident response, threat detection, and network forensics. Including incident response and troubleshooting skills, ensuring rapid recovery and remediation of network security threats.

Research has shown that women and underrepresented groups are less likely to apply to jobs unless they meet every single competency or experience . If you are excited about this role, but your past experience doesn't align perfectly, we encourage you to apply anyway. You could be just the right person for this role and Xero. If you have any support or access requirements, we encourage you to advise us at time of application and throughout the interview process.

Why Xero?

Offering very generous paid leave to use however you'd like (plus statutory holidays), dedicated paid leave to care for your physical and mental wellbeing as well as an Employee Assistance Program to access mental health care for you and your family. Health insurance, life insurance, and income protection.

We offer wellbeing and sports programmes, employee resource groups, 26 weeks of paid parental leave for primary caregivers, an Employee Share Plan, beautiful offices, flexible working, career development, and many other benefits that reflect our human value.

You'll do the best work of your life at Xero

#J-18808-Ljbffr

  • Melbourne, Victoria, Australia Decipher Bureau Full time

    OverviewCyber and Information Security Recruitment Specialist - Building Contract and Permanent Cyber Teams Across AustraliaOur client is a leading enterprise organisation, recognised for its strong investment in cyber security and commitment to innovation. Backed by a clear vision and supportive leadership, the business is undergoing a multi-year...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    OverviewCyber and Information Security Recruitment Specialist - Building Contract and Permanent Cyber Teams Across AustraliaOur client is a leading enterprise organisation, recognised for its strong investment in cyber security and commitment to innovation. Backed by a clear vision and supportive leadership, the business is undergoing a multi-year...


  • Melbourne, Victoria, Australia Xero Full time

    Overview1 week ago Be among the first 25 applicantsAt Xero, we're here to help supercharge small businesses. We do this by automating routine tasks, surfacing actionable insights and connecting businesses with the right data, advisors and apps. When that happens, we're not only making life better for small business, we'll be building a stronger economy that...


  • Melbourne, Victoria, Australia Xero Full time

    Overview1 week ago Be among the first 25 applicantsAt Xero, we're here to help supercharge small businesses. We do this by automating routine tasks, surfacing actionable insights and connecting businesses with the right data, advisors and apps. When that happens, we're not only making life better for small business, we'll be building a stronger economy that...


  • Melbourne, Victoria, Australia Spartans Security Full time $104,000 - $130,878 per year

    Company DescriptionAt Spartans Security, we protect businesses from evolving cyber threats, such as data breaches and ransomware, using advanced threat detection and vulnerability management. Our experienced team offers tailored cybersecurity strategies, penetration testing, and risk assessments to identify and resolve system weaknesses before they become...


  • Melbourne, Victoria, Australia Airwallex Full time

    Join to apply for the Senior Application Security Engineer role at AirwallexJoin to apply for the Senior Application Security Engineer role at AirwallexAbout AirwallexAirwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infrastructure and software, we empower over 150,000...


  • Melbourne, Victoria, Australia SafetyCulture Full time

    At SafetyCulture, we helpbusinesses get better everyday. As the operational heartbeat of working teams, our technology gives workers a voice and leaders the visibility to make smart decisions. We're constantly evolving our platform, expanding into sensors/IoT, Scalable and Event-Driven Architecture to name a few, but we believe there's more to be...

  • Security Engineer

    3 weeks ago


    Melbourne, Victoria, Australia Logical Full time

    OverviewJoin to apply for the Security Engineer role at LogicalPermanent | Melbourne | Hybrid (4 days in office)We're seeking a Security Engineer to join a growing team and play a key role in delivering secure, reliable, and modern environments. This role will suit someone who has a strong technical foundation across Microsoft security products and is...

  • Security Engineer

    3 weeks ago


    Melbourne, Victoria, Australia Logical Full time

    OverviewJoin to apply for the Security Engineer role at LogicalPermanent | Melbourne | Hybrid (4 days in office)We're seeking a Security Engineer to join a growing team and play a key role in delivering secure, reliable, and modern environments. This role will suit someone who has a strong technical foundation across Microsoft security products and is...


  • Melbourne, Victoria, Australia Logical Full time $150,000 - $200,000 per year

    Senior Cloud Infrastructure & Security EngineerPermanent | Melbourne | Hybrid (4 days in office)We're partnering with a leading Australian technology and cybersecurity provider, recognised for delivering innovative cloud, infrastructure, and security solutions to enterprise clients nationwide. With a track record of delivering complex transformation projects...