Incident Response Analyst

Check Point Software

Greater London

On-site

GBP 90,000 - 120,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Check Point Software is seeking an experienced cybersecurity professional to lead advanced incident response and forensic analysis for a global customer base in London. You will manage complex incidents, develop response playbooks, and simulate attacks to strengthen defense capabilities.

Role requires 5+ years in cybersecurity with 2-5 years as T3 incident response, plus travel and on-call availability. You will work within a collaborative team protecting diverse environments against evolving

Qualifications

  • 5+ years in cybersecurity with 2-5 years in T3 incident response and system compromise analysis.
  • Experience with security reviews and vulnerability risk assessments.
  • Experience with enterprise security solutions and incident crisis management.
  • Willingness to participate in on-call rotation including weekends.
  • Domestic and international travel may be required.

Responsibilities

  • Responsible for daily incident management of customer incidents.
  • Perform incident response and forensic analysis of compromised systems; provide remediation recommendations.
  • Formulate and direct incident response efforts; create legible incident reports describing compromise vector and attacker methods.
  • Ability to manage complicated global incidents.
  • Ability to perform large-scale compromise assessments for customer environments.
  • Build incident response plans and playbooks.
  • Create attack scenarios for customer tabletop training exercises.
  • Create detailed incident reports for customers and communicate findings clearly.
  • Build and maintain sandbox/test lab environments to evaluate malicious code.
  • Work within a team environment and coordinate work actions.

Skills

Cybersecurity
Incident response
T3 incident response
Security assessments
Attack simulations

Job description

Why Join Us?

At Check Point, what you do matters. Every day, we protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.

Our prevention-first approach safeguards hybrid networks, cloud environments, digital workspaces, and AI systems, stopping attacks before they happen.

This is where innovation meets real-world impact. You’ll help customers across industries operate with confidence in a rapidly changing digital world, working alongside smart, curious people who take ownership, challenge assumptions, and solve complex problems.

We’re proud to be recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.

What really sets Check Point apart is the opportunity to grow, contribute, and help companies navigate their AI transformation securely.

If you’re excited to work at the forefront of AI-driven security on a global scale, this is the place to do it.

Key Responsibilities
  • Responsible for daily incident management of customer incidents
  • Perform incident response and forensic analysis of compromised systems, identify and provide recommendations for remediation
  • Formulate and direct incident response efforts, prioritize those response efforts, and create legible incident reports that describe the compromise vector, attacker methodologies and artifacts
  • Ability to manage complicated global incidents
  • Ability to perform large-scale compromise assessments for customer environments
  • Build incident response plans and playbooks
  • Create attack scenarios for customer tabletop training exercises
  • Creation of detailed incident reports for customers and effective communication of findings to customers
  • Build and maintain sandbox/test lab environments to evaluate malicious code
  • Work within a team environment and will be responsible for coordinating work actions
Qualifications
  • This is not an entry level SOC role.
  • 5+ years of cybersecurity experience out of which 2-5 years are experience performing T3 incident response with an emphasis on system compromise analysis.
  • Experience of performing security reviews/vulnerability risk assessments of network environments using both manual procedures and automated analysis tools.
  • Experience with enterprise security solutions, incident crisis management.
  • Experience with performing attack simulation for training security teams.
  • Experience with creating procedures and documented plans for security teams.
  • Ability to participate in on-call rotation, including at least one weekend a month.
  • Domestic and International travel may be required.

This position is posted in multiple territories and your ability to work without sponsorship from an employer now or in the future in the country for which you apply is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Analyst
Incident Response Analyst

Check Point Software Technologies • City Of London

On-site
GBP 90,000 - 120,000
null
Incident Response Analyst
Incident Response Analyst

Check-Point-Software-Technologies-2 • Greater London

On-site
GBP 70,000 - 100,000
Incident Response Analyst
Incident Response Analyst

Check Point Software Technologies • Greater London

On-site
GBP 60,000 - 90,000
Senior Incident Response Analyst – Global IR & Forensics
Senior Incident Response Analyst – Global IR & Forensics

Check Point Software • Greater London

On-site
GBP 90,000 - 120,000
Senior Incident Response Analyst – Global, On-Call
Senior Incident Response Analyst – Global, On-Call

Check Point Software Technologies • City Of London

On-site
GBP 90,000 - 120,000
null
Senior Incident Response & Forensics Analyst
Senior Incident Response & Forensics Analyst

Check-Point-Software-Technologies-2 • Greater London

On-site
GBP 70,000 - 100,000
Professional Services Consultant
Professional Services Consultant

Check Point Software • Greater London

Hybrid
GBP 85,000 - 130,000
Incident Response Consultant - Systems Integrator
Incident Response Consultant - Systems Integrator

Hamilton Barnes Associates Limited • England

Hybrid
GBP 40,000 - 50,000
Mentorship
Exposure to advanced tools
Flexible working arrangement
Regional Partner Manager
Regional Partner Manager

Check-Point-Software-Technologies-2 • Greater London

On-site
GBP 65,000 - 90,000
Senior Detection and Response Engineer
Senior Detection and Response Engineer

Jobtailor • Cambridge

On-site
GBP 65,000 - 95,000