Senior Incident Response Analyst

Hogan Lovells

Washington, Northern (District of Columbia, KY)

Hybrid

USD 135,000 - 175,000

Full time

45 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
401(k) retirement plan
Paid time off

Job summary

Hogan Lovells Cadwalader seeks an experienced cybersecurity professional to join the Security Operations team in Washington, D.C. You will lead incident response, investigation, threat hunting, and the continuous improvement of detection and automation across endpoint, cloud, identity, and network environments.

The role requires strong technical judgment, a track record of handling high-priority incidents, and the ability to communicate findings to technical and non-technical stakeholders; count

Qualifications

  • Six (6)+ years of incident response, forensics, or security operations experience.
  • Experience investigating threats across endpoint, cloud, identity, network, email, and SaaS environments.
  • Strong expertise in SIEM, log analysis, event correlation, threat hunting, and incident investigation.

Responsibilities

  • Lead incident response activities across triage, containment, remediation, and post-incident analysis.
  • Investigate security events in endpoint, cloud, identity, network, email, and SaaS environments.
  • Conduct threat hunting and forensic investigations to identify malicious activity.
  • Develop and optimize detection logic, alerting, playbooks, and automation.
  • Serve as senior escalation point for high-priority security incidents.

Skills

Incident response
Digital forensics
SIEM analysis
EDR/XDR
PowerShell
Python
KQL
Communication

Education

Bachelor's degree in IT / CS / cybersecurity
GCIH / GCIA / GCFA / GCFE / GNFA / CISSP certifications (preferred)

Tools

SIEM tools
EDR/XDR
PowerShell
Python
KQL

Job description

Hogan Lovells Cadwalader is looking for an experienced cybersecurity professional to join our Security Operations team and play a key role in protecting the firm's global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities, and helping strengthen the processes, technologies, and automation that support a mature and evolving security program. The successful candidate will combine strong technical expertise with sound judgment, partnering across security, technology, legal, privacy, risk, and business teams to identify, contain, and mitigate threats while continuously improving the firm's defensive capabilities.

PRIMARY RESPONSIBILITIES
  • Lead incident response activities through triage, investigation, containment, remediation, recovery, and post-incident analysis.
  • Investigate security events across endpoint, identity, network, cloud, email, and SaaS environments.
  • Conduct threat hunting and forensic investigations to identify malicious, suspicious, or unauthorized activity.
  • Develop and enhance detection logic, alerting, playbooks, workflows, and automation to improve operational effectiveness and response capabilities.
  • Serve as a senior escalation point for complex and high-priority security incidents.
  • Assess emerging threats, including risks associated with AI-enabled technologies, and support the continuous evolution of security operations.
  • Prepare clear and actionable investigation reports and communicate findings to both technical and non-technical stakeholders.
  • Mentor team members and contribute to the ongoing growth and maturity of the incident response and security operations program.
QUALIFICATIONS
  • Six (6)+ years of experience in incident response, digital forensics, security operations, or a related cybersecurity discipline.
  • Experience investigating threats across enterprise endpoint, cloud, identity, network, email, and SaaS environments.
  • Strong expertise in SIEM technologies, log analysis, event correlation, threat hunting, and incident investigation.
  • Experience with EDR/XDR platforms and host-based investigation techniques across enterprise environments.
  • Demonstrated ability to improve detections, streamline response processes, and drive operational improvements.
  • Experience with security automation, SOAR platforms, PowerShell, Python, KQL, or similar scripting and query languages is preferred.
  • Strong communication, analytical, and problem-solving skills, with the ability to perform effectively during complex investigations and active incidents.
  • Bachelor's degree in information technology, computer science, cybersecurity, or equivalent experience.
  • Industry certifications such as GCIH, GCIA, GCFA, GCFE, GNFA, or CISSP preferred.
ADDITIONAL INFORMATION

Core hours are Monday through Friday, 9:00 a.m. - 6:00 p.m., with one hour for lunch.

This is an exempt position and requires flexibility to meet operational and business needs. Occasional evening, early morning, or after-hours support may be required to respond to security incidents, investigations, and other time-sensitive matters.

In Washington, D.C., the expected base salary range for this role is $135,000 to $175,000 per year. In Baltimore, the expected base salary range for this role is $125,000 to $163,500 per year. In Denver, the expected base salary range for this role is $123,00 to $161,500 per year. This range reflects a good-faith estimate of pay at the time of posting; the actual compensation offered may vary depending on factors such as the candidate's qualifications.

This position is eligible for additional forms of compensation, which may include annual discretionary bonuses. Employees in this role are also eligible for benefits offered by the firm, subject to applicable plan terms and conditions, which currently include medical, dental, and vision insurance; a 401(k) retirement plan; and paid time off.

Please review this link for more information regarding employee benefits in the United States.

This job description sets forth the responsibilities of this position and may be changed from time to time as shall be determined.

Hogan Lovells Cadwalader is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, age, national origin, disability, sexual orientation, gender identity or expression, marital status, genetic information, protected Veteran status, or other factors protected by law.

Hogan Lovells Cadwalader complies with federal and state disability laws and makes reasonable accommodations for applicants and candidates with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, please contact our Benefits Department at LeaveofAbsence_US@hlc.com.

Hogan Lovells Cadwalader brings together more than 3,100 lawyers across 36+ worldwide offices, combining global reach with deep sector expertise. Strategically placed at the intersection of business, finance, and government. Working seamlessly across practice areas and borders. Our combination marks a new chapter. Prepare to join teams of people that want you to succeed, where ideas move quickly, support is shared freely, and colleagues help each other grow, creating an inclusive culture where everyone can belong. You'll be challenged to perform at the highest level in an environment shaped by precision, judgement, and exceptional standards. It's a culture that expects excellence and gives you the opportunity to develop in every moment.

Hogan Lovells Cadwalader is a global law firm with offices in many jurisdictions and countries. Some of the information displayed may not be applicable to the region in which you are applying, your individual situation or the local legal framework. The system uses standard terminology that applies irrespective of whether you are/will be an employee, partner or self-employed.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vendor Security Analyst
Vendor Security Analyst

Hogan Lovells • Washington, Northern (KY)

Hybrid
USD 121,000 - 146,000
Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Vendor Security Analyst
Vendor Security Analyst

Hogan Lovells • Louisville (KY)

On-site
USD 121,000 - 146,000
Medical, dental, vision insurance
401(k) retirement plan
Paid time off
Director, Business Operations - Global Regulatory & IP
Director, Business Operations - Global Regulatory & IP

Hogan Lovells • Washington

On-site
USD 202,000 - 242,000
Medical insurance
Dental insurance
Vision insurance
+2
Audit Letter Research Assistant
Audit Letter Research Assistant

Hogan Lovells • Washington

On-site
USD 48,000 - 55,000
Finance Systems Analyst
Finance Systems Analyst

Hogan Lovells • Washington, Northern (KY)

Hybrid
USD 100,000 - 125,000
Client Operations & Strategic Growth Manager
Client Operations & Strategic Growth Manager

Hogan Lovells • Washington

On-site
USD 136,000 - 199,000
Medical insurance
Dental insurance
Vision insurance
+2
Finance Manager - Strategic Projects
Finance Manager - Strategic Projects

Hogan Lovells • Washington, Northern (KY)

Hybrid
USD 151,000 - 214,000
Medical, dental, vision insurance
401(k) retirement plan
Paid time off
Corporate & Finance, Mergers & Acquisitions, Mid-Senior Level Associate
Corporate & Finance, Mergers & Acquisitions, Mid-Senior Level Associate

Hogan Lovells • Palo Alto (CA)

On-site
USD 260,000 - 390,000
Medical insurance
Dental insurance
Vision insurance
+3
Director of Associate Recruitment
Director of Associate Recruitment

Hogan Lovells • Washington

On-site
USD 254,000 - 358,000
Medical, dental, and vision insurance
401(k) retirement plan
Paid time off
Marketing & Business Development Manager - Life Sciences and Health Care
Marketing & Business Development Manager - Life Sciences and Health Care

Hogan Lovells • Washington, Northern (KY)

Hybrid
USD 136,000 - 199,000
Medical Insurance
Dental Insurance
Vision Insurance
+2