Jobs / New Zealand / Xero (UK) Limited

Senior Security Operations Analyst

Xero (UK) Limited · 🌍 NZ: Wellington: Xero One (19-23 Taranaki St); NZ: Auckland: Xero 4 (96 St Georges Bay Rd, Level 2 & 3)

Sponsorship verdict

No sponsorship evidence yet

No government record and no wording either way. Not a refusal — ask the recruiter.

  • No government sponsor record hereNo government sponsor record covers this employer in this country.
  • The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
  • Can’t check pay against the visa rulesWe don’t have visa salary rules for this country yet.
  • Confirmed live todayWhen a source last listed this job as open.

A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.

Start free →

Or apply yourself on the official page →

Why not apply?

Sponsorship unknown

No register record and no sponsorship wording in the posting. Worth asking the employer before investing significant time.

SponsorApply flags time-wasters so your applications go where they can land. These come from the posting's own wording — read the original listing to confirm. See better-fit alternatives →

Sponsor Radar — Xero (UK) Limited

Sponsorship not verified for this country

No government sponsor record covers this employer in this country.

Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for Xero (UK) Limited →

About the role

The role and its impact When something goes wrong in security at Xero, our Response team are first on the scene. We're looking for a Senior Security Operations Analyst who loves incident response, enjoys building things, and wants a hand in shaping what a SOC looks like when AI agents are part of the team. You'll lead our complex investigations and take command of medium and high impact incidents, keeping people calm, decisions moving and stakeholders in the loop. When things settle down, you'll make sure what we learnt changes something, whether that's a detection, a runbook or the way we train. You'll also help us build. Our Analysts improve the queue as well as working it, so part of your time will go on creating automations and AI-assisted workflows that take repetitive work off the team and leave more room for the investigations that need a person. The team and how they connect Response is a follow-the-sun global team. You'll be in the Southern Hemisphere half, based in New Zealand or Australia, and at the end of your day you'll hand over to colleagues in the UK and North America, who hand back to us the next morning. You'll work business hours in your time zone and take a share of our on-call roster for after-hours incidents. You won't be doing it on your own. You'll join a cohort of Senior Analysts who share the load on complex work and lead our initiatives, with a Lead Analyst alongside for the hardest problems. Our XFLT, a cross-functional leadership team of Security Operations Managers, our Lead Analyst and our Product Manager, sets the direction and clears the way, so there's always someone to think out loud with. The team is currently working on / Initially, you will focus on We're building towards an agentic SOC, where AI agents and automation carry more of the first pass, and analysts direct them and step in where judgement matters. We're working through it carefully: which low-risk work agents can take on, where the guardrails and human approvals belong, and how we'll know it's working. People still make the big calls, because our robots aren't that good yet. You don't need to be an AI expert. We'd love you to be curious, to have tried a few things, and to want to help us get this right. You’ll also: - Lead complex investigations and step up as Incident Commander for medium and high impact incidents - Be a go-to escalation point for our Graduate, Associate and Analyst crew, and coach them through the tricky stuff - Run post incident reviews that lead to real change in detections, runbooks and training - Lead initiatives with our Product Manager and Security Operations Managers, turning goals into work that gets delivered - Build and improve automations and AI-assisted workflows, with guardrails and human sign-off where they matter - Work with our Defence engineers on detection and response logic, and test new capabilities in real incidents - Turn threat intelligence into practical action for Xero - Give customers and internal teams clear, timely answers to their security concerns Where and how you can work We support a flexible working model that empowers you to balance your professional and personal life. You will have the option to work in a hybrid capacity, combining the focus of remote work with the collaboration of our office spaces and team boost days to foster connection and alignment. Here are some of the things we're looking for Incident response comes first for us, so we're looking for: - Solid experience in security operations, and a real passion for incident response - A track record of leading complex investigations and incidents through to resolution, including coordinating people and making calls under pressure - Sound technical judgement and good know

View the official posting →

Source: Ashby (employer board) First seen: 2026-10-07 Last confirmed: 2026-10-07 How our data works → Report this job

Similar opportunities