Jobs Companies Hogan Lovells Cadwalader Vendor Security Analyst

About this Vendor Security Analyst role at Hogan Lovells Cadwalader

Hogan Lovells Cadwalader · Onsite · Louisville GBC

Hogan Lovells Cadwalader delivers decisive counsel at the intersection of finance, business, and regulation, helping clients succeed when it matters most. We are a leading global law firm trusted to advise on complex, high stakes matters, combining global scale with local intelligence to help clients move markets, shape industries, define new opportunities, and succeed. With more than 3,100 lawyers worldwide, we bring sharp thinking, deep commercial understanding, and an uncompromising commitment to delivering exceptional outcomes for clients.

The Vendor Security Analyst performs evaluation of third party and vendor engagements to identify and manage vendor risk which may include completion of risk assessments. They will also conduct the technical security reviews of our suppliers and partners. This role reports to the Head of Information Risk.

KEY RESPONSIBILITIES

  • Evaluate third party risk and steer vendor relationships
  • Evaluate vendor responses to security questionnaires
  • Make recommendations on ways to mitigate vendor risk
  • Maintain vendor risk repository of artifacts including regular third party vendor certifications and assign risk scores to firm suppliers and partners
  • Conduct onsite audits of high risk vendors reviewing security and controls
  • Actively support and engage in the firm's Responsible Business initiatives, contributing to our commitments to our people, clients, communities, and the environment.
  • Provide support on emerging priorities and undertake additional responsibilities as needed to meet evolving business requirements.

QUALIFICATIONS

EDUCATION & EXPERIENCE

  • Strong and demonstration information security risk identification (including Cloud services), assessment, and risk ranking experience
  • Working experience with the following documents used in a risk assessment preferred:
  • SIG (Standardized Information Gathering) questionnaire
  • Penetration test
  • Vulnerability test
  • SOC (Service Organization Control) 1 and 2, Type 2
  • ISO 27001
  • Bachelor's degree preferred.

SKILLS & ABILITIES

  • Possess a sufficient understanding of technical concepts including systems, networks, and security architecture best practices in order to effectively evaluate risk and assess the effectiveness of controls
  • Confident to make independent decisions
  • Ability to explain technical concepts in layman terms
  • Ability to interact effectively and influence external vendors
  • Keen attention to detail and accuracy in order to analyze documents
  • Broad knowledge of risk management, vulnerability management, and third party risk

WORK SCHEDULES/HOURS EXPECTATION

Core hours are generally Monday through Friday, 9:00 a.m. to 5:30 p.m., including an unpaid meal period. This position is based on a standard 37.5-hour workweek. Additional or adjusted hours may be required to meet business needs and must be worked in accordance with applicable overtime requirements and firm policies.

In Washington, D.C., the expected base salary range for this role is $120,500 to $146,200 per year.

This range reflects a good-faith estimate of pay at the time of posting; the actual compensation offered may vary depending on factors such as the candidate’s qualifications. This position is eligible for additional forms of compensation, which may include annual discretionary bonuses.  Employees in this role are also eligible for benefits offered by the firm, subject to applicable plan terms and conditions, which currently include medical, dental, and vision insurance; a 401(k)-retirement plan; and paid time off. Please review this link for more information regarding employee benefits in the United States.

This job description sets forth the responsibilities of this position and may be changed from time to time as shall be determined.


Hogan Lovells Cadwalader is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, age, national origin, disability, sexual orientation, gender identity or expression, marital status, genetic information, protected Veteran status, or other factors protected by law.


Hogan Lovells Cadwalader complies with federal and state disability laws and makes reasonable accommodations for applicants and candidates with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, please contact our Benefits Department at [email protected].

Ready to apply to Hogan Lovells Cadwalader?
Apply to Hogan Lovells Cadwalader

How this Cybersecurity salary compares

This role pays $133,350/yrin line with the typical range for Cybersecurity roles.

$81,080 median $125,000 $186,480

Typical range $99,325–$151,494/yr, from 494 comparable Cybersecurity listings on JobsRadar (pay annualized to USD). See Cybersecurity salary insights →

About Hogan Lovells Cadwalader

Hogan Lovells Cadwalader brings together more than 3,100 lawyers across 36+ worldwide offices, combining global reach with deep sector expertise. Strategically placed at the intersection of business, finance, and government. Working seamlessly across practice areas and borders. Our combination marks a new chapter. Prepare to join teams of people that want you to succeed, where ideas move quickly, support is shared freely, and colleagues help each other grow, creating an inclusive culture where everyone can belong. You’ll be challenged to perform at the highest level in an environment shaped by precision, judgement, and exceptional standards. It’s a culture that expects excellence and gives y

See all jobs at Hogan Lovells Cadwalader →

Similar jobs

XBOW
Information Security Analyst, GRC
XBOW
⚡ Apply early Europe (Remote) · location restricted
● New 👁 Seen ✓ Applied 8h ago
Referral Board
Principal Security Compliance Analyst - Public Sector - InfoSec
Referral Board
⚡ Apply early United States Onsite $159,800–$252,800
● New 👁 Seen ✓ Applied 11h ago
Elastic
Principal Security Compliance Analyst - Public Sector - InfoSec
Elastic
⚡ Apply early United States Onsite $159,800–$252,800
● New 👁 Seen ✓ Applied 11h ago
SpaceX
Industrial Security Analyst (PERSEC)
SpaceX
⚡ Apply early Redmond, WA Onsite $85,000–$115,000
● New 👁 Seen ✓ Applied 11h ago
SpaceX
Industrial Security Analyst (PERSEC)
SpaceX
⚡ Apply early Hawthorne, CA Onsite $85,000–$115,000
● New 👁 Seen ✓ Applied 11h ago
Success Academy Charter Schools
Senior Security Analyst
Success Academy Charter Schools
⚡ Apply early New York Hybrid $160,000–$170,000
● New 👁 Seen ✓ Applied 15h ago
HU
Security Operations Analyst - Weekend 4x10 Shift
Huntress
⚡ Apply early Remote US · location restricted
● New 👁 Seen ✓ Applied 15h ago
HU
Security Operations Analyst
Huntress
⚡ Apply early Remote US · location restricted
● New 👁 Seen ✓ Applied 15h ago
CA
Business Analyst - Dallas - Cyber Security - CyberArk/Privileged Access Management
Capco
⚡ Apply early US - Dallas Onsite
● New 👁 Seen ✓ Applied 15h ago

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at Hogan Lovells Cadwalader

See all jobs at Hogan Lovells Cadwalader →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free