Digital Forensics (DFIR) / Incident Response Analyst

Check Point Software

Sydney

On-site

AUD 140,000 - 210,000

Full time

33 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Check Point Software in Sydney is seeking a senior cybersecurity incident response professional to lead T3 investigations and coordinate global incident handling. You will drive incident response efforts, analyze compromised systems, and produce actionable remediation playbooks to protect customers worldwide.

You will work with cross-functional teams to develop defenses, perform forensic analysis, and report on attacker techniques and artifacts.

Qualifications

  • 7+ years of cybersecurity experience, with 2-5 years in T3 incident response focused on system compromise.
  • Experience performing security reviews and vulnerability risk assessments of network environments.
  • Experience with Magnet AXIOM.
  • Experience with enterprise security solutions and incident crisis management.
  • Experience with attack simulations for security training.
  • Experience creating procedures and documented security plans.
  • Ability to participate in on-call rotation, including at least one weekend per month.
  • Willingness to travel domestically and internationally.

Responsibilities

  • Responsible for daily incident management of customer incidents.
  • Perform incident response and forensic analysis of compromised systems, identify and provide recommendations for remediation.
  • Formulate and direct incident response efforts, prioritize those response efforts, and create legible incident reports that describe the compromise vector, attacker methodologies and artifacts.
  • Ability to manage complicated global incidents.
  • Ability to perform large-scale compromise assessments for customer environments.
  • Build incident response plans and playbooks.
  • Create attack scenarios for customer tabletop training exercises.
  • Creation of detailed incident reports for customers and effective communication of findings to customers.
  • Build and maintain sandbox/test lab environments to evaluate malicious code.
  • Work within a team environment and will be responsible for coordinating work actions.

Skills

Incident response
System compromise analysis
Vulnerability risk assessments
Magnet AXIOM
Enterprise security solutions
Incident crisis management
Attack simulation
Security procedures
On-call rotation
Travel willingness

Tools

Magnet AXIOM

Job description

Why Join Us

At Check Point, what you do matters. Every day, we protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.

Why Join Us?

At Check Point, what you do matters. Every day, we protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.

Our prevention-first approach safeguards hybrid networks, cloud environments, digital workspaces, and AI systems, stopping attacks before they happen.

This is where innovation meets real-world impact. You’ll help customers across industries operate with confidence in a rapidly changing digital world, working alongside smart, curious people who take ownership, challenge assumptions, and solve complex problems.

We’re proud to be recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.

What really sets Check Point apart is the opportunity to grow, contribute, and help companies navigate their AI transformation securely.

If you’re excited to work at the frontier of AI-driven security on a global scale, this is the place to do it.

Key Responsibilities
  • Responsible for daily incident management of customer incidents
  • Perform incident response and forensic analysis of compromised systems, identify and provide recommendations for remediation
  • Formulate and direct incident response efforts, prioritize those response efforts, and create legible incident reports that describe the compromise vector, attacker methodologies and artifacts
  • Ability to manage complicated global incidents
  • Ability to perform large-scale compromise assessments for customer environments
  • Build incident response plans and playbooks
  • Create attack scenarios for customer tabletop training exercises
  • Creation of detailed incident reports for customers and effective communication of findings to customers
  • Build and maintain sandbox/test lab environments to evaluate malicious code
  • Work within a team environment and will be responsible for coordinating work actions
Qualifications
  • This is not an entry level SOC role.
  • 7+ years of cybersecurity experience out of which 2-5 years are experience performing T3 incident response with an emphasis on system compromise analysis.
  • Experience of performing security reviews/vulnerability risk assessments of network environments using both manual procedures and automated analysis tools.
  • Experienced with Magnet Axiom
  • Experience with enterprise security solutions, incident crisis management.
  • Experience with performing attack simulation for training security teams.
  • Experience with creating procedures and documented plans for security teams.
  • Ability to participate in on-call rotation, including at least one weekend a month.
  • Domestic and International travel may be required
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Digital Forensics (DFIR) / Incident Response Analyst
Digital Forensics (DFIR) / Incident Response Analyst

Check Point Software Technologies • Sydney

On-site
AUD 140,000 - 190,000
Digital Forensics (DFIR) / Incident Response Analyst
Digital Forensics (DFIR) / Incident Response Analyst

Forensic Focus • Sydney

Hybrid
AUD 95,000 - 129,000
Senior Incident Response & Digital Forensics Lead
Senior Incident Response & Digital Forensics Lead

Check Point Software Technologies • Sydney

On-site
AUD 140,000 - 190,000
Professional Services Consultant
Professional Services Consultant

Check Point Software • Sydney

On-site
AUD 150,000 - 210,000
Professional Services Consultant
Professional Services Consultant

Check Point Software • City of Brisbane

On-site
AUD 120,000 - 160,000
Digital Forensic and Incident Response Investigator
Digital Forensic and Incident Response Investigator

Forensic Focus Limited • City of Melbourne

On-site
AUD 90,000 - 130,000
Senior DFIR & Incident Response Analyst (Global)
Senior DFIR & Incident Response Analyst (Global)

Check Point Software • Sydney

On-site
AUD 140,000 - 210,000
Professional Services Consultant
Professional Services Consultant

Check-Point-Software-Technologies-2 • Sydney

On-site
AUD 150,000 - 210,000
Senior Analyst
Senior Analyst

CrowdStrike • City of Hobart

On-site
AUD 150,000 - 210,000
Market-leading compensation
Equity awards
Wellness programs
+5
Senior Analyst
Senior Analyst

CrowdStrike • Adelaide

On-site
AUD 150,000 - 190,000
Market-leading compensation
Wellness programs
Generous vacation
+5