Xplor Technologies powers the experiences at the heart of everyday life. Through modern vertical software, embedded payments, and AI-powered capabilities, we help businesses in fitness, recreation, golf and club, field services, laundry, education, and other membership-based and service-based industries simplify operations, uncover insights, and elevate customer and member experiences.
Job DescriptionAbout the opportunity
Our Cyber Threat Intelligence & Response (CTIR) engineers are the people we count on when something goes wrong, and the people who make sure it goes wrong far less often. This is a hands-on incident response role. You'll lead the response to security events across our platforms and applications: triage, investigate, contain, eradicate and recover, then make sure we come out of it stronger.
We're looking for someone who genuinely loves incident response. Someone who gets calmer and sharper when an incident kicks off, who is confident making decisions when the picture isn't complete, and who doesn't wait to be told what to look at. If you're a self-starter who takes ownership from the first alert to the final report, you'll fit right in.
Some of the other responsibilities include :
- Own incidents as part of the CTIR team: detect, triage, investigate, contain and eradicate, driving each one until the threat is under control.
- Work live incidents alongside the team and be ready to step up and take the lead yourself when the situation calls for it.
- Lead investigations across our systems, digging into logs, endpoints, email and network data to work out what happened, how far it reached, and how to resolve.
- Perform host and network forensics, malware triage, and email analysis (including PDF and document analysis) to understand attacker activity and build a reliable timeline.
- Coordinate with engineering, IT and the wider security team during a response, and communicate clearly to both technical teams and leadership.
- Hunt proactively for threats across system logs, user behaviour and threat intelligence, turning what you find into new detections and indicators of compromise.
- Build and automate incident response workflows and playbooks so routine response is fast and repeatable.
- Strengthen our detection coverage using the MITRE ATT&CK framework, closing monitoring gaps, and tuning to reduce noise.
- Feed what you learn from each incident back into how the team detects and responds, so an attack pattern we've seen once is caught faster next time.
- Analyse threat intelligence, research emerging threats, and recommend practical mitigation.
- Be ready to work incidents as they arise, including on-call and out-of-hours cover when needed.
For this position, you'll work fully remote. You need to be based in NZ and have full working rights for this region.
QualificationsWhat would make me a good candidate?
We are looking for curious and empathetic people. We also love to hear from people who are motivated by meaningful work, resonate with our four core values, have a positive outlook, are comfortable with ambiguity and thrive working in an ever-evolving and complex environment. We are inspired by meeting big picture thinkers and doers, people who can be both tactical and strategic, aim high and put people first in everything they do.
- People who want to make a real difference in security, and who care about incident response in particular.
- 3 to 6 years experience in security operations or incident response, with genuine passion for running incidents, not just watching a queue.
- Confidence managing incidents through the full incident-handling lifecycle, and the judgement to make sound calls under pressure.
- Strong triage and root cause analysis, with a solid understanding of different log sources and how to correlate events across them.
- Comfortable reading logs (HTTP, SMTP, network), Windows and Active Directory, and common operating systems and servers.
- Hands-on experience with a SIEM to investigate, hunt and build detections. Microsoft Sentinel and KQL preferred.
- Practical experience across EDR, advanced threat protection, identity management and API security.
- Threat-hunting experience across network flow, user behaviour and threat intelligence, plus the ability to design new ways to detect and contain attacks using scripting, analytics and automation.
- Familiar with a broad range of attacker tools and techniques (TTPs), with the ability to map adversary activity across the Cyber Kill Chain to identify, assess, and communicate potential attack progression.
- A self-starter who works independently, delivering projects without being chased, and keeps learning as the industry develops.
- A critical thinker with strong problem-solving instincts and exceptional communication skills, capable of translating complex technical risks into clear, actionable insights for both the immediate team and cross-functional partners, including engineers, administrators, and leadership, through both verbal and written communication.
- Good understanding of ITIL processes and standards such as ISO 27001 and PCI DSS, including change, incident and problem management.
Nice to have
- Malware analysis experience.
- Preferred certifications such as GCIH, GCFA, AZ-500 or SC-100.
- Experience with Jupyter Notebooks for threat-hunting.
- Python and PowerShell scripting.
- Experience building and tuning SOAR automation for response.
At Xplor, we believe the best innovation and ideas happen at the intersections of our differences — across cultures, generations, disciplines, and lived experiences. So even if you do not tick every box, we still encourage you to apply.
Additional InformationValues and Life at Xplor
Our five core values guide us from how we hire and recognise our team members to how we interact with our customers day to day:
- Find a better way
- Do the right thing
- Say it straight
- Win together
- Own the outcome
If these values sound like you, and describe people you want to work with, you will thrive at Xplor.
As an Xplorer, you will be part of a global network of talented colleagues who will support your success. We look for commonalities and shared passions and give people the tools they need to deliver great work and grow at speed.
Some of our perks and benefits are:
- Paid Parental Leave benefit programs
- #GiveBackDays/Commitment to social impact – 3 extra days off to volunteer and give back to your local community
- Ongoing dedication to Diversity & Inclusion initiatives such as D&I Council, Global Mentorship Program
- Access to free mental health support
- Flexible working arrangements
Ready to apply?
To start your application, please submit your resume and we will be in touch as soon as we can. Please include the word "moonshot" at the top of your message to the Hiring Manager so that we know you took the time to read our job ad.
We understand that diverse candidates have diverse needs. We welcome you to inform us of any additional needs related to completing your job application or participating in the interview process, via [email protected].
More about us
More than 130,000 businesses in 72+ countries rely on Xplor to run their day and get paid, processing over $47 billion in payments annually. Our connected ecosystem helps operators spend less time managing complexity and more time delivering the experiences that matter most.
Xplor is backed by world-class investors Advent International, Battery Ventures, and Silver Lake.
Good to know
We kindly ask you to apply through our careers portal or external job boards only. Please don't send your application via email. They will not be forwarded.
To learn more about us and our products, please visit xplor.com/careers/.
We also invite you to check out our Candidate FAQs for more information about our recruitment process xplor.com/recruitment-faqs/.
EEO and Artificial Intelligence
We believe in transparent hiring. We use an applicant tracking system that includes artificial intelligence enabled features to assist with the screening and assessment of job applications, such as candidate scoring or ranking. These tools support our recruitment process, but all hiring decisions are made by our recruitment team following human review. We do not rely on artificial intelligence to make final hiring decisions. Find our Candidate AI Usage guidelines here.
Xplor is dedicated to attracting, retaining and developing our people regardless of gender identity, ethnicity, sexual orientation, disability and age. Applications are encouraged from all sectors of the community and we particularly encourage speakers of Te Reo Māori or Pasifika languages to apply.
We are a 2024 Circle Back Initiative Employer – we commit to respond to every applicant.
We make it a priority to respond to every applicant.
Skills Required
- 3 to 6 years of experience in security operations or incident response
- Experience managing incidents through the full incident-handling lifecycle
- Strong security triage and root cause analysis skills
- Ability to read and correlate HTTP, SMTP, and network logs
- Experience with Windows, Active Directory, operating systems, and servers
- Hands-on SIEM experience for investigation, threat hunting, and detection development
- Experience with Microsoft Sentinel and KQL
- Practical experience with EDR, advanced threat protection, identity management, and API security
- Threat-hunting experience using network flow, user behavior, and threat intelligence
- Ability to use scripting, analytics, and automation to detect and contain attacks
- Knowledge of attacker tools, techniques, procedures, and Cyber Kill Chain analysis
- Strong independent working, problem-solving, written, and verbal communication skills
- Understanding of ITIL, ISO 27001, and PCI DSS processes and standards
- Ability to participate in on-call and out-of-hours incident coverage
- Based in New Zealand with full working rights in the region
- Malware analysis experience
- GCIH, GCFA, AZ-500, or SC-100 certification
- Experience using Jupyter Notebooks for threat hunting
- Python and PowerShell scripting experience
- Experience building and tuning SOAR automation for response
Xplor Technologies Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Xplor Technologies and has not been reviewed or approved by Xplor Technologies.
-
Leave & Time Off Breadth — Leave options appear broad, with generous PTO and paid sick days frequently highlighted as a notable part of the overall package. Paid volunteer time and bereavement leave add additional time-off breadth beyond standard vacation policies.
-
Retirement Support — Retirement support is positioned as a meaningful component of total rewards, including a 401(k) match that is described with a clear match formula. Eligibility for performance bonuses and mentions of equity/pension options further contribute to perceived long-term value for some roles.
-
Healthcare Strength — Healthcare coverage is described as comprehensive, spanning medical, dental, vision, life, and disability insurance, alongside U.S.-specific supports like an FSA. Mental health support through an employee assistance program and wellness programs strengthen the overall health-and-wellbeing offering.
Xplor Technologies Insights
What We Do
WHAT WE DO At Xplor, we build easy-to-use technology for the businesses that make up everyday life – whether booking a gym session, dropping the kids at daycare, registering for a community center class, fixing your furnace, or playing 18 holes on Saturday. That’s what people expect in the experience age – and why more than 130,000 businesses across 72+ countries use our integrated software and embedded payment solutions to attract, connect, engage, and retain their customers. Our platform processes $47 billion in payments annually because we've made it simple for businesses to get paid, manage their operations, and focus on what they do best: serving their customers. WHY JOIN XPLOR? • Work that has real-world impact: What we build helps businesses serve customers more effectively, and adapt as their businesses grow. When our customers succeed, everyday life works better for millions of people around the world. • Technology with purpose: We build technology for real operators solving real-world problems. That means designing products that fit how businesses actually work, helping customers make better decisions, and creating tools that improve both operations and the experiences they deliver. • A portfolio with breadth and depth: Our teams support a diverse set of industries, including fitness and leisure, golf and club, recreation, field services, garment care, education, and payments. That means the opportunity to solve meaningful challenges across multiple markets, while contributing to one shared company vision. OUR VALUES Our values shape how we lead, how we make decisions, and how we work every day. • Find a better way: We challenge outdated processes, improve the way we work, and look for smarter solutions. We bring ideas, not just problems, and stay open to better ways forward. • Do the right thing: We act with integrity, make ethical decisions, and hold ourselves to a high standard. We own mistakes quickly, learn from them, and apply our principles consistently. • Say it straight: We communicate clearly, and with respect. We share context, not just outcomes, give timely feedback, and speak up early when something needs attention. • Win together: We work across teams and functions with trust and shared purpose. We seek input early, assume positive intent, and celebrate success together. • Own the outcome: We take responsibility for results. We follow through, solve problems, and step in when something needs to be fixed.
Why Work With Us
At Xplor, you get room to grow, work that has real impact, and a team where you can bring your whole self. In return, we ask you to put people first, innovate fearlessly, and aim high. Be part of a global community built to help you – and the businesses we serve – thrive.
Gallery


.png)





