Incident Response Analyst

Check Point Software

Manila

On-site

PHP 1,500,000 - 2,100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Check Point Software Philippines is seeking a senior incident response professional to lead complex security engagements, drive post-incident remediation, and defend customer environments across borders. You will mentor junior staff and collaborate with global teams to streamline incident playbooks.

The role requires 10+ years in cybersecurity with 2–5 years in T3 incident response focusing on system compromise analysis, plus strong experience in forensics, threat assessment, and risk

Qualifications

  • 10+ years of cybersecurity experience with 2-5 years in T3 incident response focusing on system compromise.
  • Experience in security reviews and vulnerability risk assessments of networks using manual and automated tools.
  • Experience with enterprise security solutions and incident crisis management.
  • Experience with attack simulations for training security teams.
  • Ability to participate in on-call rotation, including at least one weekend per month.
  • Willingness to travel domestically and internationally; US work eligibility without sponsorship.

Responsibilities

  • Lead daily incident management of customer incidents.
  • Perform incident response and forensic analysis of compromised systems.
  • Create legible incident reports describing compromise vectors and attacker methods.
  • Manage complex global incidents.
  • Conduct large-scale compromise assessments for customer environments.
  • Build incident response plans and playbooks.
  • Develop attack scenarios for tabletop exercises.
  • Produce detailed incident reports and communicate findings to customers.
  • Collaborate in a team and coordinate work actions.

Skills

Incident response leadership
System compromise analysis
Risk assessments
Security crisis management
Attack simulations
Incident reporting & communication
Team coordination
On-call rotation
Travel willingness

Job description

Key Responsibilities
  • Responsible for daily incident management of customer incidents
  • Perform incident response and forensic analysis of compromised systems, identify and provide recommendations for remediation
  • Formulate and direct incident response efforts, prioritize those response efforts, and create legible incident reports that describe the compromise vector, attacker methodologies and artifacts
  • Ability to manage complicated global incidents
  • Ability to perform large-scale compromise assessments for customer environments
  • Build incident response plans and playbooks
  • Create attack scenarios for customer tabletop training exercises
  • Creation of detailed incident reports for customers and effective communication of findings to customers
  • Build and maintain sandbox/test lab environments to evaluate malicious code
  • Work within a team environment and will be responsible for coordinating work actions
Qualifications
  • This is not an entry level SOC role.
  • 10+ years of cybersecurity experience out of which 2-5 years are experience performing T3 incident response with an emphasis on system compromise analysis.
  • Experience of performing security reviews/vulnerability risk assessments of network environments using both manual procedures and automated analysis tools.
  • Experience with enterprise security solutions, incident crisis management.
  • Experience with performing attack simulation for training security teams.
  • Experience with creating procedures and documented plans for security teams.
  • Ability to participate in on-call rotation, including at least one weekend a month.
  • Domestic and International travel may be required.
  • Must be eligible to work in the US without sponsorship from an employer now or in the future.

EOE M/F/Veterans/Disabled

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Analyst
Incident Response Analyst

Dencom Consultancy and Manpower Services • Taguig

Hybrid
PHP 700,000 - 900,000
Consulting_Cyber Detection & Response IRR Senior
Consulting_Cyber Detection & Response IRR Senior

EY • Taguig

On-site
PHP 900,000 - 1,200,000
Health and wellness packages
Opportunities for continuous learning
Access to cutting-edge technologies
SOC Analyst
SOC Analyst

Astute Cybersecurity • Cebu City

On-site
PHP 360,000 - 600,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
Senior SOC Analyst
Senior SOC Analyst

Hammerjack Pty Ltd • Manila

On-site
PHP 900,000 - 1,300,000
Security Operations Center (SOC) - Head
Security Operations Center (SOC) - Head

SMITS, Inc. - IT Company of San Miguel Corporation • Mandaluyong

On-site
PHP 900,000 - 1,600,000
NSOC Analyst Tier 1
NSOC Analyst Tier 1

Astute Cybersecurity • Cebu City

On-site
PHP 420,000 - 900,000
NSOC Analyst Tier 1
NSOC Analyst Tier 1

Centrics Networks • Cebu City

On-site
PHP 420,000 - 660,000
IT Security Analyst
IT Security Analyst

Wisefund Finance Corporation Ortigas • Metro Manila

On-site
PHP 600,000 - 900,000