Embedded GSOC Intelligence Analyst

Sibylline Canada

Toronto

On-site

CAD 85,000 - 100,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

20 days PTO per annum
5 paid sick days per annum

Job summary

Sibylline Canada is seeking a GSOC Intelligence Analyst to join a newly established 24/7 Global Security Operations Centre for a multinational e-commerce client. This role focuses on horizon scanning and producing timely intelligence briefs to inform decision-making.

You will monitor incidents, triage alerts, support crisis response, and engage with multiple business functions. Fully onsite in Toronto with 5x8-hour shifts, including nights and weekends.

Qualifications

  • Excellent written and spoken English with high attention to detail.
  • Experience in OSINT and SOCMINT platforms and methodologies.
  • Ability to absorb and analyse large amounts of data to summarise events.
  • Ability to work independently and as part of a collaborative team.
  • Ability to prioritise and manage multiple tasks and information sources.

Responsibilities

  • Monitor open source, social media, and vendor feeds for global security threats.
  • Draft incident alerts and analytical reports that are timely and actionable.
  • Support threat monitoring around travel, events, and operations, escalate incidents as needed.
  • Convey recommendations during ongoing incidents and crisis briefings.
  • Support growth of the intelligence function by developing assessment techniques.
  • Act as central point for initial triage, verification, and event classification.
  • Coordinate incidents with stakeholders per SOPs and escalation protocols.
  • Provide monitoring of security operations including CCTV and access control.
  • Other duties as assigned.

Skills

Communication
OSINT/SOCMINT experience
Data analysis
Independent work
Team collaboration
Multitasking

Education

International Security / Geopolitics degree
Equivalent professional experience

Tools

GSOC tools
OSINT platforms
SOCMINT platforms

Job description

  • Compensation: CAD 85000 - CAD 100000 - yearly
Company Description

Sibylline is a leading intelligence and strategic risk consultancy in the security sector. Since 2010 we have supported businesses, governments and NGOs through the provision of high-quality risk analysis, due diligence and consultancy services.

The firm provides an innovative, entrepreneurial and fast-growing working environment, offering employees ever greater exposure to high profile clients and challenges. Sibylline offers fantastic opportunities for career progression within a successful company, and we aim to help our employees to build their own personal profiles as well-regarded analysts within the broader industry.

Key attributes of Sibylline employees are:

  • Self-motivated, and auto-improving individuals who can couple initiative and boldness with good judgement
  • Excellent written and spoken English
  • Clarity of thought and analytical flair
  • Strong, demonstrable interest in security and intelligence
  • The ability to work under pressure, demonstrate leadership when required but also be able to collaborate effectively in teams
  • Excellent attention to detail
Job Description

Expected Compensation: C$85,000 – C$100,000 per year

Location: Onsite, Toronto, ON

PTO: 20 days per annum

Sick: 5 paid days per annum

Vacancy Status: Existing Vacancy

This role will close for applications at 0900 EDT on Monday 14 September 2026.

Position Summary

We are looking for aGSOCIntelligenceAnalyst to join a newly established24/7Global Security Operations Centre (GSOC)for a multinational e-commerce client.This role will focus onconductinghorizon scanning tomonitorgeopolitical and security events that mayimpactthe client’s employees, assets, reputation, and operations, producingtimelyandactionableintelligence briefingsto inform decision makingwhere required.You will also supportcontinuous monitoring of incidents, alerts, and systems, triage and escalation, and incident response.

You will act asa central pointfor escalation, coordination, and communication during times of crisis, and you will engage with various business functions, ensuringa holistic approachto addressing their needs, expectations, and concerns.TheGSOCteamwill have someonsitephysical security responsibilities, including alarm and CCTV monitoring, and access control.

This rolewould require you to work5x8-hour shifts, rotatingearly,late and nightsincluding weekendswith flexibility to cover gaps whererequired.The role is fully onsite at the client’s Toronto office.

Essential Functions / Responsibilities
  • Monitor open source, social media,and vendor feeds for global security threats.
  • Draft incident alerts and analytical reports that aretimely, credible, andprovideactionableinsightsto internal stakeholders.
  • Support threat monitoring around client travel, events and operations, escalating incidents asappropriate usingrehearsed procedures.
  • Convey draft recommendations for internal stakeholders during ongoing incidents, senior managementupdates,and crisis management briefings.
  • Support the growth of the intelligence function within the client company by working in collaboration with team leads todevelopandinnovateassessment techniques
  • Act ascentral pointforinitialtriage, verification, and classification of events
  • Communicate, elevate, and coordinate incidents with relevant stakeholders as per established Standard Operating Procedures (SOPs)
  • Adhere strongly toGSOCSOPs, and execute response playbooks and escalation protocols
  • Provide monitoring and management of security operations, including CCTV feeds, accesscontroland door alarms
  • Other duties as assigned
Knowledge, Skills, and Abilities
  • Experience and interest in current affairs, international relations, and emerging security threats
  • Excellent written and spoken communication with a high attention to detail
  • Experience in utilising OSINT and social media intelligence (SOCMINT) platforms, tools, and methodologies
  • Ability to absorb and analyselarge amountsof data to summarise events accurately and concisely
  • Ability to work independently and as part of a collaborative team
  • Ability to prioritise and manage multiple scheduled tasks, requests, and sources of information in an organised way
  • Eagerness to learn and support all aspects ofGSOC operations, including following SOPs related to physical and asset security, securing access points and alarm response
Qualifications

Undergraduate or Postgraduate qualifications in International Security, Intelligence, Risk, Geopolitics or other related disciplines, or equivalent professional experience

At least 2-4 years of experience working in a corporate setting or similar public or private sector environments

Fluent written and spoken English

Preferred experience withGSOCandIntelligencetools, includingthreat monitoring, OSINT, and SOCMINTplatforms

Work Environment/Physical Requirements

This position is moderately self-directed and requires understanding and compliance with company policies, procedures, and values. While performing the duties of this job, the employeeis regularly required tointeract collaboratively with the team and stakeholders, and communicate via phone, videophone, or textmessaging.The position may require travel up to5%.

Additional Information
Interview Process
  • Initial call with our Talent Acquisition team member
  • Timed written assessment (arranged at a time that suits you) to test writing and analytical capability
  • Panel interview with some of the team members and hiring managers at Sibylline
  • Meet and Greet with the client
Artificial Intelligence:

Not used in candidate screening

Sibylline is committed to the recruitment and selection of candidates without regard for sexual orientation, gender, ethnicity, age, political beliefs, culture,and lifestyle. We are committed to fostering a business culture that reflects these values and promotes equal opportunity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Embedded GSOC Junior Intelligence Analyst
Embedded GSOC Junior Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 65,000 - 85,000
20 days PTO
5 sick days
Embedded GSOC Intelligence Team Leader
Embedded GSOC Intelligence Team Leader

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Embedded GSOC Intelligence Team Leader
Embedded GSOC Intelligence Team Leader

Sibylline • Toronto

On-site
CAD 100,000 - 125,000
PTO 20 days
Sick days 5 days
Onsite role
Embedded GSOC Intelligence Analyst
Embedded GSOC Intelligence Analyst

Sibylline Ltd • Toronto

On-site
CAD 85,000 - 100,000
20 days PTO per annum
5 paid sick days per annum
Onsite Toronto office
Embedded GSOC Junior Intelligence Analyst
Embedded GSOC Junior Intelligence Analyst

Sibylline Ltd • Toronto

On-site
CAD 65,000 - 85,000
PTO 20 days
Sick leave 5 days
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Senior SOC Analyst
Senior SOC Analyst

Exchange Technology Services • Winnipeg

On-site
CAD 90,000 - 120,000
Competitive salary
RRSP matching
Employee Share Purchase Plan
+4
JSOC - Cybersecurity Specialist - Incident Response
JSOC - Cybersecurity Specialist - Incident Response

Community Trust Company • Canada

Hybrid
CAD 81,000 - 101,000
Senior SOC Analyst
Senior SOC Analyst

Exchange Technology Services Inc. • Winnipeg

On-site
CAD 90,000 - 120,000
Onsite Gym
Employee Share Purchase Plan
RRSP with Company Matching
+1
CIT Information Security & GRC, Lead
CIT Information Security & GRC, Lead

Perseus Group, Constellation Software • Markham

On-site
CAD 104,000 - 127,000