Digital Forensics (DFIR) / Incident Response Analyst

Check Point Software Technologies

Sydney

On-site

AUD 140,000 - 190,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Check Point Software Technologies in Sydney, NSW is seeking a senior SOC incident responder. You will manage daily incidents, perform forensic analysis, and direct response efforts for globally distributed customers.

The role requires 7+ years in cybersecurity, including 2–5 years in T3 incident response, with experience in vulnerability assessments and enterprise security solutions. Magnet AXIOM experience is preferred, and there is an expectation of participating in on-call rotations

Qualifications

  • 7+ years in cybersecurity with 2–5 years in T3 incident response.
  • Experience in security reviews and vulnerability risk assessments.
  • Experienced with Magnet AXIOM.
  • Experience with enterprise security solutions and incident crisis management.
  • Ability to participate in on-call rotation, including weekends.
  • Willingness to travel domestically and internationally.

Responsibilities

  • Manage daily incident management of customer incidents.
  • Perform incident response and forensic analysis; recommend remediation.
  • Direct incident response efforts and produce clear reports.
  • Manage global incidents.
  • Perform large-scale compromise assessments.
  • Build incident response plans and playbooks.
  • Create attack scenarios for tabletop exercises.
  • Prepare detailed incident reports and communicate findings to customers.
  • Build sandbox/test lab environments to evaluate malware.
  • Coordinate work actions within a team.

Skills

Cybersecurity
Incident response
Forensic analysis
Team coordination
On-call readiness

Tools

Magnet AXIOM

Job description

Check Point Software Technologies – Sydney NSW

At Check Point, what you do matters. Every day, we protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.

Our prevention-first approach safeguards hybrid networks, cloud environments, digital workspaces, and AI systems, stopping attacks before they happen.

This is where innovation meets real-world impact. You’ll help customers across industries operate with confidence in a rapidly changing digital world, working alongside smart, curious people who take ownership, challenge assumptions, and solve complex problems.

We’re proud to be recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.

What really sets Check Point apart is the opportunity to grow, contribute, and help companies navigate their AI transformation securely.

If you’re excited to work at the forefront of AI-driven security on a global scale, this is the place to do it.

Company Description
Why Join Us

At Check Point, what you do matters. Every day, we protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.

Our prevention-first approach safeguards hybrid networks, cloud environments, digital workspaces, and AI systems, stopping attacks before they happen.

This is where innovation meets real-world impact. You’ll help customers across industries operate with confidence in a rapidly changing digital world, working alongside smart, curious people who take ownership, challenge assumptions, and solve complex problems.

We’re proud to be recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.

What really sets Check Point apart is the opportunity to grow, contribute, and help companies navigate their AI transformation securely.

If you’re excited to work at the forefront of AI-driven security on a global scale, this is the place to do it.

Job Description
  • Responsible for daily incident management of customer incidents
  • Perform incident response and forensic analysis of compromised systems, identify and provide recommendations for remediation
  • Formulate and direct incident response efforts, prioritize those response efforts, and create legible incident reports that describe the compromise vector, attacker methodologies and artifacts
  • Ability to manage complicated global incidents
  • Ability to perform large-scale compromise assessments for customer environments
  • Build incident response plans and playbooks
  • Create attack scenarios for customer tabletop training exercises
  • Creation of detailed incident reports for customers and effective communication of findings to customers
  • Build and maintain sandbox/test lab environments to evaluate malicious code
  • Work within a team environment and will be responsible for coordinating work actions
Qualifications
  • This is not an entry level SOC role.
  • 7+ years of cybersecurity experience out of which 2-5 years are experience performing T3 incident response with an emphasis on system compromise analysis.
  • Experience of performing security reviews/vulnerability risk assessments of network environments using both manual procedures and automated analysis tools.
  • Experienced with Magnet Axiom
  • Experience with enterprise security solutions, incident crisis management.
  • Experience with performing attack simulation for training security teams.
  • Experience with creating procedures and documented plans for security teams.
  • Ability to participate in on-call rotation, including at least one weekend a month.
  • Domestic and International travel may be required
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Digital Forensics (DFIR) / Incident Response Analyst
Digital Forensics (DFIR) / Incident Response Analyst

Check Point Software • Sydney

On-site
AUD 140,000 - 210,000
Digital Forensics (DFIR) / Incident Response Analyst
Digital Forensics (DFIR) / Incident Response Analyst

Forensic Focus • Sydney

Hybrid
AUD 95,000 - 129,000
Senior Incident Response & Digital Forensics Lead
Senior Incident Response & Digital Forensics Lead

Check Point Software Technologies • Sydney

On-site
AUD 140,000 - 190,000
Senior DFIR & Incident Response Analyst (Global)
Senior DFIR & Incident Response Analyst (Global)

Check Point Software • Sydney

On-site
AUD 140,000 - 210,000
Incident Response Sr. Consultant
Incident Response Sr. Consultant

CrowdStrike • City of Melbourne

On-site
AUD 150,000 - 190,000
Market-leading compensation
Wellness programs
Paid vacation and holidays
+5
Senior Cybersecurity Incident Responder
Senior Cybersecurity Incident Responder

Datacom • Sydney

On-site
AUD 140,000 - 190,000
Social events
Remote working
Flexi-hours
+1
Professional Services Consultant
Professional Services Consultant

Check Point Software • Sydney

On-site
AUD 150,000 - 210,000
Professional Services Consultant
Professional Services Consultant

Check Point Software • City of Brisbane

On-site
AUD 120,000 - 160,000
Incident Response Sr. Consultant
Incident Response Sr. Consultant

CrowdStrike Inc. • Adelaide

On-site
AUD 140,000 - 190,000
Competitive compensation
Wellness programs
Parental leave
+1
Incident Response Sr. Consultant
Incident Response Sr. Consultant

CrowdStrike • Rockhampton Regional

On-site
AUD 150,000 - 230,000
Equity awards
Wellness programs
Vacation & holidays
+3