Senior Security Engineer

2 weeks ago


Wellington, New Zealand Xero Full time

**Our Purpose** At Xero, we’re here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and connecting businesses with the right data, advisors and apps. When that happens, we’re not only making life better for small business, we’ll be building a stronger economy that can change the world. **About the role** Sitting within a newly formed Application Security team, this role will focus on secure software development, DevSecOps, security automation, and vulnerability management. We're looking for somebody with a passion for security automation and security-as-code, who can leverage tools to improve efficiency. Coupled with a growth mindset, continuously learning and adapting to emerging threats and security trends. This position will play a key role in securing Xero’s software development lifecycle (SDLC), ensuring that security is embedded into engineering workflows while enabling teams to deliver secure products at scale. **What you'll do**: - Develop and implement secure coding practices, working closely with engineers to uplift security awareness and adoption - Integrate automated security testing (SAST, DAST, SCA, IaC scanning) and security policy enforcement into CI/CD pipelines to identify vulnerabilities early. - Work with DevOps and engineering teams to build security guardrails, ensuring frictionless security adoption; driving a "shift-left" security mindset by enabling teams with secure coding guidance, tooling, and risk-based security testing. - Build and manage security automation tools, integrating them into existing developer workflows; contribute to DevSecOps initiatives, ensuring security controls are scalable, efficient, and developer-friendly. - Participate in cross-functional security initiatives, working on security improvements that impact multiple teams. Continuously evaluate and improve security tools, scanning coverage, and security-as-code implementations. **What you'll bring with you**: - Extensive experience in Application Security, Secure Software Development, and DevSecOps practices. - Hands-on experience with automated security testing tools, including SAST, DAST, SCA, and IaC security scanning. - Proficiency in programming and scripting languages (_Python, Java, Go, JavaScript, or similar_); coupled with a strong understanding of secure coding principles, OWASP Top 10, SANS CWE, and software security best practices. - Experience integrating security controls into CI/CD pipelines (_Jenkins, GitHub Actions, GitLab CI, or similar)_. **Why Xero?** Offering very generous paid leave to use however you’d like (plus statutory holidays), dedicated paid leave to care for your physical and mental wellbeing as well as an Employee Assistance Program to access mental health care for you and your family, free medical insurance, wellbeing and sports programmes, employee resource groups, 26 weeks of paid parental leave for primary caregivers, an Employee Share Plan, beautiful offices, flexible working, career development, and many other benefits that reflect our human value, you’ll do the best work of your life at Xero.


  • Senior Engineer

    1 week ago


    Wellington City, New Zealand Xero Full time

    Xero is a beautiful, easy-to-use platform that helps small businesses and their accounting and bookkeeping advisors grow and thrive. At Xero, our purpose is to make life better for people in small business, their advisors, and communities around the world. This purpose sits at the centre of everything we do. We support our people to do the best work of...


  • Wellington City, New Zealand Government Communications Security Bureau Full time

    Are you inspired by protecting New Zealand? Looking for a role where your expertise will be highly valued? Join our diverse and talented people and work at the heart of national security, providing essential intelligence to the NZ government to protect New Zealand and its people. About us The National Cyber Security Centre (NCSC) is the heart of Aotearoa New...


  • Wellington City, New Zealand Fire and Emergency New Zealand Full time

    Design, advocate, and help build secure-by-default infrastructure that closes off entire classes of security problems. - A role that promotes career development, innovation and growth - Flexible working environment based in Newlands, with free car parking - A challenging and interesting work environment **Who are we?** Fire and Emergency New Zealand is a...


  • Wellington City, New Zealand Talent Army Full time

    New SaaS Product - AWS - Wellington-based **Company**: This SaaS startup is on a mission to reduce inequality in NZ by creating a new path to wealth that is accessible to the average person. You'll be contributing to the future technical design of their SaaS mobile product and impact mission to help the next generation of Kiwis become empowered...


  • Wellington, New Zealand Xero Full time

    **Our Purpose** At Xero, we’re here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and connecting businesses with the right data, advisors and apps. When that happens, we’re not only making life better for small business, we’ll be building a stronger economy that can change the...


  • Wellington City, New Zealand New Zealand Government Full time

    Working as a Senior Security Engineer for Fire and Emergency offers the opportunity to make a meaningful impact, work with leading-edge technology, and be part of a supportive and collaborative team that is dedicated to a noble purpose. These factors make it an exciting and fulfilling career choice for security professionals looking to contribute their...


  • Wellington City, New Zealand Government Communications Security Bureau Full time

    Join our diverse and talented people and work at the heart of national security, providing essential intelligence to the NZ government to protect New Zealand and its people. About us The National Cyber Security Centre (NCSC) is the heart of Aotearoa New Zealand's cyber defence. We fulfil the cyber security responsibilities of the Government Communications...


  • Wellington City, New Zealand Presto Resourcing Options Full time

    **Role type**: Fixed Term **Location**: Wellington **Job published on**: 11 July 2025 We are seeking an experienced and dedicated Senior DevOps engineer who is passionate about security!! Stepping into a fast-paced environment, you will lead the way in engineering secure systems. To qualify we are looking for: - An experienced Senior engineer with a...

  • Casual Event

    7 days ago


    Wellington City, New Zealand Red Badge Security Full time

    **Red Badge is 100% Kiwi owned and operated is widely recognised as a market leader, trusted to deliver a full range of security planning and staffing solutions for some of New Zealand’s best events!** **From ticket scanning at Phoenix games, bag search at the Foo Fighters or preventing pitch invaders at the Hurricanes you’ll see our people at events...

  • System Engineer

    2 weeks ago


    Wellington City, New Zealand Government Communications Security Bureau Full time

    Join our diverse and talented people and work at the heart of national security, providing essential intelligence to the NZ government to protect New Zealand and its people. At the Government Communications Security Bureau (GCSB) | Te Tira Tiaki, our mission is to protect and enhance Aotearoa New Zealand's security and wellbeing. We provide Signals...