Lowe’s

Lead Analyst, Information Security

Lowe’s • $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7-10+ years of experience in cybersecurity, particularly in Security Operations and Incident Response.
  • Strong understanding of SIEM, SOAR, EDR/XDR, IAM, and network/cloud security.
  • Experience managing high-severity security incidents across technical and business teams.
  • Knowledge of incident response frameworks like NIST, SANS, and MITRE ATT&CK.
  • Familiarity with cloud environments such as AWS, Azure, or GCP.
  • Excellent crisis leadership and communication skills, with the ability to convey technical findings to executives.
  • Strong documentation and analytical skills, capable of problem-solving under pressure.

Responsibilities

  • Lead and coordinate responses to high-severity cybersecurity incidents.
  • Own the entire security incident management lifecycle from identification to recovery.
  • Establish incident severity and escalation paths, ensuring stakeholder engagement.
  • Act as Incident Commander during major incidents, coordinating response teams.
  • Maintain clear documentation and timelines throughout incidents.
  • Provide executive-level incident reporting and briefings to senior leadership.
  • Coordinate with various teams on incidents with regulatory or reputational implications.
  • Facilitate incident war rooms and maintain command-and-control practices.
  • Identify recurring incident patterns and recommend improvements to security processes.
  • Develop and maintain incident response plans and communication templates.

Benefits

  • Opportunity to lead high-impact cybersecurity initiatives.
  • Engagement with cross-functional teams across the organization.
  • Access to continuous improvement through automation and AI.
  • Involvement in shaping incident response strategies and frameworks.
  • Professional development opportunities through certifications and training.
Full Job Description
The Lead Analyst is responsible for leading the end-to-end management of cybersecurity incidents, ensuring rapid containment, effective coordination, clear executive communication, and timely recovery. The role serves as the central point of coordination during major security incidents and works across Security Operations, Threat Intelligence, Digital Forensics, Infrastructure, Cloud, Application Security, Legal, Privacy, Communications, and business teams.
Key Responsibilities
  • Lead and coordinate response to high-severity cybersecurity incidents, including ransomware, account compromise, data exposure, cloud incidents, malware, insider threats, and third-party or supply-chain events.
  • Own the security incident management lifecycle from identification, triage, containment, eradication, and recovery through post-incident review.
  • Establish incident severity, business impact, escalation paths, response priorities, and appropriate stakeholder engagement.
  • Act as the Incident Commander for major cybersecurity incidents and coordinate technical and business response teams.
  • Maintain clear timelines, decision logs, action items, evidence, and incident documentation throughout an event.
  • Provide concise, timely executive-level incident reporting and briefings to senior leadership, including business impact and risk, incident severity and scope, response and containment status, key decisions or support required, recovery outlook, and material changes throughout the incident lifecycle.
  • Coordinate with Legal, Privacy, Risk, HR, Communications, and other teams when incidents have regulatory, customer, associate, or reputational implications.
  • Facilitate incident war rooms and bridge calls and maintain disciplined command-and-control practices.
  • Ensure appropriate handoffs between SOC analysts, threat hunters, DFIR, engineering, infrastructure, identity, cloud, and application teams.
  • Lead post-incident reviews and root-cause discussions and track corrective actions through closure. Deliver executive post-incident summaries covering root cause, business impact, lessons learned, residual risk, remediation priorities, and accountable action owners.
  • Identify recurring incident patterns and recommend improvements to security controls, detection capabilities, processes, and automation.
  • Develop and maintain incident response plans, playbooks, escalation matrices, communication templates, and tabletop exercises.
  • Track operational metrics such as MTTD, MTTA, MTTC, MTTR, incident severity, recurrence, SLA adherence, and corrective-action closure.
  • Support regulatory, audit, cyber insurance, and compliance requirements related to incident response.
  • Drive continuous improvement through automation, orchestration, AI-enabled investigation, and incident enrichment where appropriate.

Required Qualifications
  • 7-10+ years of experience in cybersecurity, with significant experience in Security Operations, Incident Response, DFIR, Threat Management, or Cyber Crisis Management.
  • Strong understanding of SIEM, SOAR, EDR/XDR, IAM, network security, cloud security, threat intelligence, and vulnerability management.
  • Experience managing high-severity, enterprise-scale security incidents involving multiple technical and business teams.
  • Strong knowledge of incident response frameworks such as NIST, SANS, and MITRE ATT&CK.
  • Working knowledge of cloud environments such as AWS, Azure, or GCP.
  • Excellent crisis leadership, stakeholder management, decision-making, and communication skills.
  • Ability to translate complex technical findings into clear business-risk and executive-level communications.
  • Strong documentation, analytical, and problem-solving capabilities.
  • Ability to operate effectively under pressure and manage multiple priorities during critical incidents.

Preferred Certifications

CISSP, GCIH, GCFA, GCFE, CISM, Security+, or equivalent incident response/security certifications.

Key Success Measures

Success in this role would typically be demonstrated through reduced incident response and recovery times, consistent execution of major-incident procedures, effective executive communication, high-quality post-incident reviews, timely closure of remediation actions, improved incident readiness, and measurable reduction in repeat incidents.

Key Partners

Security Engineering, SOC, DFIR, Threat Intelligence, Threat Hunting, IAM, Cloud Security, Application Security, Infrastructure, Legal, Privacy, Risk, HR, and Corporate Communications.

Enterprise / Retail Environment Considerations

For a large retail enterprise environment, the role should emphasize 24x7 incident coordination, third-party and supply-chain incidents, payment and e-commerce environments, customer data protection, cloud incidents, and executive crisis management.

About Lowe’s

Lowe's Careers

Joining Lowe's means becoming part of a team that is committed to fostering an environment of growth, innovation, and leadership. As one of the leading home improvement companies, Lowe's offers unparalleled job opportunities and a culture that values diversity and professional development. Work You'll Do At Lowe's, your work will directly impact our mission to help people love where they live. Whether you're involved in the direct sales process, product development, or customer service, your role will contribute to our industry-leading standards. Transform Your Career Leverage your skills and drive in a position that empowers you to lead projects and initiatives that redefine the retail experience. Lowe's is at the forefront of the industry, combining retail, technology, and customer service to create unique experiences for consumers. Join a team of dedicated professionals who are there to support your career aspirations and help you grow both personally and professionally. With over 300,000 team members, Lowe's is a place where you can cultivate a career filled with innovation and opportunities. Lowe's Professional Growth and Opportunities We are committed to the professional growth of every team member. Lowe's offers a variety of career paths and opportunities for advancement, including leadership roles in numerous departments. Whether you're seeking a part-time position or a full-time career, Lowe's provides the training and resources needed to advance and excel. Internship Programs Start your career with Lowe's through our dynamic internship programs. These opportunities provide hands-on experience and a chance to engage in meaningful work that impacts our business. Interns at Lowe's gain invaluable skills, work alongside experienced professionals, and are considered for full-time positions upon successful completion of the program. Benefits and Culture Lowe's is dedicated to maintaining a culture that promotes diversity and inclusion. We offer a comprehensive benefits package that supports the health, well-being, and financial security of our employees and their families. Benefits include health insurance, retirement plans, and employee discounts, among others. Networking and Innovation Stay connected and ahead in your career through Lowe's commitment to innovation and networking. Our team members have access to cutting-edge technology and are encouraged to think outside the box to solve challenges. Networking within the company is supported through various groups and initiatives, fostering connections that can lead to career advancement. Join Our Team Explore the job opportunities at Lowe's that match your skills and interests. We are always looking for passionate, curious, and solution-driven team players. Start your journey with Lowe's today and be part of a company that values hard work and dedication. Stay Up to Date Keep informed with the latest in career tips, company news, and industry insights—all from the people who work at Lowe's. Our careers blog provides valuable content that can help you navigate your professional journey. Job Alert Emails Customize your subscription to receive job alerts and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Lowe's. SEARCH LOWE'S JOBS At Lowe's, your career is in your hands. Build it with us and be part of a team that is changing the future of retail.
Learn more about Lowe’s
Size
200,000 employees
Market Cap
$120.3 billion
Industry
Net Income
$5.8 billion
Founded
1946
5 Year Trend
+8.2%
Revenue
$89.5 billion
NASDAQ

Similar Jobs

More Jobs at Lowe’s

More Information Technology Jobs

Find similar Lead Analyst, Information Security jobs: