Senior Incident Response Analyst

Hogan Lovells Cadwalader

Washington (District of Columbia)

On-site

USD 135,000 - 175,000

Full time

6 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental, and vision insurance
401(k) retirement plan
Paid time off

Job summary

Hogan Lovells Cadwalader seeks an experienced cybersecurity professional to join the Security Operations team, leading investigations, coordinating incident response, and advancing detection capabilities across the firm's global technology environment.

The role emphasizes collaboration with security, technology, legal, privacy, risk, and business teams to identify, contain, and mitigate threats while maturing the security program.

Qualifications

  • Six+ years in incident response, digital forensics, security operations, or related cybersecurity discipline.
  • Experience investigating threats across endpoint, cloud, identity, network, email, and SaaS environments.
  • Strong expertise in SIEM, log analysis, event correlation, threat hunting, and incident investigation.

Responsibilities

  • Lead incident response through triage, containment, remediation, and post-incident analysis.
  • Investigate security events across endpoint, cloud, identity, network, email, and SaaS environments.
  • Conduct threat hunting and forensic investigations to identify malicious activity.
  • Develop and enhance detection logic, alerting, playbooks, workflows, and automation.
  • Serve as senior escalation point for complex security incidents.
  • Assess emerging threats and support evolving security operations.
  • Prepare clear investigation reports and communicate findings to stakeholders.
  • Mentor team members and grow the incident response program.

Skills

Incident response
Threat hunting
Forensic investigations
Detection & automation
Communication & collaboration

Education

Bachelor's degree in information technology, computer science, cybersecurity, or equivalent experience
GCIH, GCIA, GCFA, GCFE, GNFA, or CISSP preferred

Tools

EDR/XDR platforms
SIEM technologies
SOAR platforms
PowerShell
Python
KQL

Job description

Hogan Lovells Cadwalader is looking for an experienced cybersecurity professional to join our Security Operations team and play a key role in protecting the firm's global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities, and helping strengthen the processes, technologies, and automation that support a mature and evolving security program. The successful candidate will combine strong technical expertise with sound judgment, partnering across security, technology, legal, privacy, risk, and business teams to identify, contain, and mitigate threats while continuously improving the firm's defensive capabilities.

Primary Responsibilities
  • Lead incident response activities through triage, investigation, containment, remediation, recovery, and post-incident analysis.
  • Investigate security events across endpoint, identity, network, cloud, email, and SaaS environments.
  • Conduct threat hunting and forensic investigations to identify malicious, suspicious, or unauthorized activity.
  • Develop and enhance detection logic, alerting, playbooks, workflows, and automation to improve operational effectiveness and response capabilities.
  • Serve as a senior escalation point for complex and high-priority security incidents.
  • Assess emerging threats, including risks associated with AI-enabled technologies, and support the continuous evolution of security operations.
  • Prepare clear and actionable investigation reports and communicate findings to both technical and non-technical stakeholders.
  • Mentor team members and contribute to the ongoing growth and maturity of the incident response and security operations program.
Qualifications
  • Six (6)+ years of experience in incident response, digital forensics, security operations, or a related cybersecurity discipline.
  • Experience investigating threats across enterprise endpoint, cloud, identity, network, email, and SaaS environments.
  • Strong expertise in SIEM technologies, log analysis, event correlation, threat hunting, and incident investigation.
  • Experience with EDR/XDR platforms and host-based investigation techniques across enterprise environments.
  • Demonstrated ability to improve detections, streamline response processes, and drive operational improvements.
  • Experience with security automation, SOAR platforms, PowerShell, Python, KQL, or similar scripting and query languages is preferred.
  • Strong communication, analytical, and problem-solving skills, with the ability to perform effectively during complex investigations and active incidents.
  • Bachelor's degree in information technology, computer science, cybersecurity, or equivalent experience.
  • Industry certifications such as GCIH, GCIA, GCFA, GCFE, GNFA, or CISSP preferred.
Additional Information

Core hours are Monday through Friday, 9:00 a.m. - 6:00 p.m., with one hour for lunch. This is an exempt position and requires flexibility to meet operational and business needs. Occasional evening, early morning, or after-hours support may be required to respond to security incidents, investigations, and other time-sensitive matters.

In Washington, D.C., the expected base salary range for this role is $135,000 to $175,000 per year.

In Baltimore, the expected base salary range for this role is $125,000 to $163,500 per year.

In Denver, the expected base salary range for this role is $123,00 to $161,500 per year.

This range reflects a good-faith estimate of pay at the time of posting; the actual compensation offered may vary depending on factors such as the candidate's qualifications. This position is eligible for additional forms of compensation, which may include annual discretionary bonuses. Employees in this role are also eligible for benefits offered by the firm, subject to applicable plan terms and conditions, which currently include medical, dental, and vision insurance; a 401(k) retirement plan; and paid time off. Please review this link for more information regarding employee benefits in the United States.

This job description sets forth the responsibilities of this position and may be changed from time to time as shall be determined.

Hogan Lovells Cadwalader is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, age, national origin, disability, sexual orientation, gender identity or expression, marital status, genetic information, protected Veteran status, or other factors protected by law.

Hogan Lovells Cadwalader complies with federal and state disability laws and makes reasonable accommodations for applicants and candidates with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, please contact our Benefits Department at LeaveofAbsence_US@hlc.com.

All vacancies are open to direct applicants. Recruitment agencies; please be advised that we have a preferred supplier list in place for all roles.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Response Analyst
Senior Incident Response Analyst

Hogan Lovells • Washington

On-site
USD 135,000 - 175,000
Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Senior Incident Response & Threat Hunter
Senior Incident Response & Threat Hunter

Hogan Lovells Cadwalader • Washington

On-site
USD 135,000 - 175,000
Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Senior Incident Response Lead - Detect, Contain & Recover
Senior Incident Response Lead - Detect, Contain & Recover

Hogan Lovells • Washington

On-site
USD 135,000 - 175,000
Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Incident Response Manager
Incident Response Manager

Crowe LLP • United States

On-site
USD 120,000 - 150,000
Senior Information Security Analyst (SecOps)
Senior Information Security Analyst (SecOps)

DLA Piper • Atlanta (GA)

Hybrid
USD 94,000 - 131,000
Medical/dental/vision insurance
401(k)
Hybrid work schedule
Senior Information Security Analyst (SecOps)
Senior Information Security Analyst (SecOps)

DLA Piper • Chicago (IL)

Hybrid
USD 94,000 - 131,000
Hybrid work arrangement
Medical/dental/vision insurance
401(k)
Vendor Security Analyst
Vendor Security Analyst

Hogan Lovells • Louisville (KY)

On-site
USD 121,000 - 146,000
Medical, dental, vision insurance
401(k) retirement plan
Paid time off
Senior Director, Security Operations
Senior Director, Security Operations

Gibson, Dunn & Crutcher • New York (NY)

On-site
USD 305,000 - 395,000
Health benefits
Paid time off
Parental leave
Vendor Security Analyst
Vendor Security Analyst

Hogan Lovells • Washington, Northern (KY)

Hybrid
USD 121,000 - 146,000
Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Senior Information Security Analyst (SecOps)
Senior Information Security Analyst (SecOps)

DLA Piper LLP (US) • Baltimore (MD)

On-site
USD 90,000 - 120,000