> Markdown version of [/jobs/ext/2844949-incident-response-analyst](https://www.wearedevelopers.com/jobs/ext/2844949-incident-response-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Incident Response Analyst - **Company:** Hogan Inc - **Location:** Baltimore, MD, United States - **Experience:** Expert - **Salary:** $135,000.0 - $175,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Software as a Service, Cloud Computing, Cyber Security, Information Systems, Databases, Computer Forensics, Query Languages, Digital Forensics, Internet Security, Information Systems Security Architecture Professional, Python (Programming Language), Log Analysis, Windows PowerShell, Kusto Query Language, Security Information and Event Management, Scripting, Information Technology, Cybercrime, ArcSight Event Correlation, Security Orchestration, Automation & Response - **Published:** September 11, 2026 - **Apply:** https://www.careerbuilder.com/job-details/senior-incident-response-analyst-baltimore-md--ef4caa39-657f-45a4-8d0a-012796747640 ## About the Role * Six (6)+ years of experience in incident response, digital forensics, security operations, or a related cybersecurity discipline. * Experience investigating threats across enterprise endpoint, cloud, identity, network, email, and SaaS environments. * Strong expertise in SIEM technologies, log analysis, event correlation, threat hunting, and incident investigation. * Experience with EDR/XDR platforms and host-based investigation techniques across enterprise environments. * Demonstrated ability to improve detections, streamline response processes, and drive operational improvements. * Experience with security automation, SOAR platforms, PowerShell, Python, KQL, or similar scripting and query languages is preferred. * Strong communication, analytical, and problem-solving skills, with the ability to perform effectively during complex investigations and active incidents. * Bachelor's degree in information technology, computer science, cybersecurity, or equivalent experience. * Industry certifications such as GCIH, GCIA, GCFA, GCFE, GNFA, or CISSP preferred., Analysis Skills, Artificial Intelligence (AI), Automation, CISSP - Certified Information Systems Security Professional, Cloud Computing, Communication Skills, Computer Forensics, Computer Hacking, Computer Science, Computer Security, Continuous Improvement, Database Programming Languages, Dental Insurance, Endpoint Security, Enterprise Endpoint, Event Correlation, GCFA - GIAC Certified Forensic Analyst, GCIA - GIAC Certified Intrusion Analyst, GCIH - GIAC Certified Incident Handler, Hunting, Incident Response, Information Technology & Information Systems, Internet Security, Investigative Reports, Legal, Mentoring, Operational Improvement, Operational Strategy, Problem Solving Skills, Process Development, Process Improvement, Python Programming/Scripting Language, Risk, Scripting (Scripting Languages), Security Attacks, Security Information and Event Management (SIEM), Software as a Service (SaaS), Technical Support, Technology Analysis, Vision Plan, Windows PowerShell ## Description Hogan Lovells Cadwalader is looking for an experienced cybersecurity professional to join our Security Operations team and play a key role in protecting the firm's global technology environment. This position is responsible for leading security investigations, coordinating incident response activities, advancing detection capabilities, and helping strengthen the processes, technologies, and automation that support a mature and evolving security program. The successful candidate will combine strong technical expertise with sound judgment, partnering across security, technology, legal, privacy, risk, and business teams to identify, contain, and mitigate threats while continuously improving the firm's defensive capabilities., * Lead incident response activities through triage, investigation, containment, remediation, recovery, and post-incident analysis. * Investigate security events across endpoint, identity, network, cloud, email, and SaaS environments. * Conduct threat hunting and forensic investigations to identify malicious, suspicious, or unauthorized activity. * Develop and enhance detection logic, alerting, playbooks, workflows, and automation to improve operational effectiveness and response capabilities. * Serve as a senior escalation point for complex and high-priority security incidents. * Assess emerging threats, including risks associated with AI-enabled technologies, and support the continuous evolution of security operations. * Prepare clear and actionable investigation reports and communicate findings to both technical and non-technical stakeholders. * Mentor team members and contribute to the ongoing growth and maturity of the incident response and security operations program. ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1146-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Geometry of Incidents: Connecting User Impact to Architecture](https://www.wearedevelopers.com/magazine/764-the-geometry-of-incidents-connecting-user-impact-to-architecture) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)