Embedded GSOC Intelligence Team Leader

Sibylline

Toronto

On-site

CAD 100,000 - 125,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

PTO 20 days
Sick days 5 days
Onsite role

Job summary

Sibylline is seeking an experienced GSOC Intelligence Team Leader to establish and lead a 24/7/365 GSOC for a multinational client in Toronto. You will manage a team of analysts, guide threat monitoring, intelligence analysis, and physical security operations, and coordinate with Sibylline management and the client to deliver high-quality intelligence products.

You will oversee staffing, training, performance, and the development of standard operating procedures to ensure timely, accurate

Qualifications

  • Undergraduate or postgraduate qualifications in International Security, Intelligence, Risk, Geopolitics or related disciplines, or equivalent experience.
  • Experience with GSOC and intelligence tools, including threat monitoring, OSINT, and SOCMINT platforms.
  • At least 5+ years total experience in a corporate/public sector setting, with 2+ year line management experience.
  • Fluent written and spoken English.

Responsibilities

  • Drive the implementation of the new GSOC team and identify delivery needs.
  • Set team priorities, delegate tasks, manage deadlines and ensure high-quality service.
  • Manage 24/7/365 shift coverage and monitor security systems and tools.
  • Lead SOP adherence for incident response, triage and escalation.
  • Provide mentoring and training for the GSOC team.
  • Define intelligence priorities with security stakeholders and optimise output.

Skills

Leadership
Team management
Threat monitoring
OSINT
Analytics
Stakeholder engagement
English proficiency

Education

Security studies (International Security / Intelligence)

Tools

GSOC tools
OSINT platforms
SOCMINT platforms

Job description

Sibylline is a leading intelligence and strategic risk consultancy in the security sector. Since 2010 we have supported businesses, governments and NGOs through the provision of high-quality risk analysis, due diligence and consultancy services.

The firm provides an innovative, entrepreneurial and fast-growing working environment, offering employees ever greater exposure to high profile clients and challenges. Sibylline offers fantastic opportunities for career progression within a successful company, and we aim to help our employees to build their own personal profiles as well-regarded analysts within the broader industry.

Key attributes of Sibylline employees are:

  • Self-motivated, and auto-improving individuals who can couple initiative and boldness with good judgement
  • Excellent written and spoken English
  • Clarity of thought and analytical flair
  • Strong, demonstrable interest in security and intelligence
  • The ability to work under pressure, demonstrate leadership when required but also be able to collaborate effectively in teams
  • Excellent attention to detail

Sibylline is a leading intelligence and strategic risk consultancy in the security sector. Since 2010 we have supported businesses, governments and NGOs through the provision of high-quality risk analysis, due diligence and consultancy services.

The firm provides an innovative, entrepreneurial and fast-growing working environment, offering employees ever greater exposure to high profile clients and challenges. Sibylline offers fantastic opportunities for career progression within a successful company, and we aim to help our employees to build their own personal profiles as well-regarded analysts within the broader industry.

Key attributes of Sibylline employees are:

  • Self-motivated, and auto-improving individuals who can couple initiative and boldness with good judgement
  • Excellent written and spoken English
  • Clarity of thought and analytical flair
  • Strong, demonstrable interest in security and intelligence
  • The ability to work under pressure, demonstrate leadership when required but also be able to collaborate effectively in teams
  • Excellent attention to detail
Job Description

Expected Compensation: C$100,000 – C$125,000 per year

Location: Onsite, Toronto, ON

PTO: 20 days per annum

Sick: 5 paid days per annum

Vacancy Status: Existing Vacancy

This role will close for applications at 0900 EDT on Monday 14 September 2026.

Position Summary

We are looking for an experienced security and intelligence professional to join us as an embedded GSOC Intelligence Team Leader for a newly established Global Security Operations Centre (GSOC) at a multinational e-commerce client. The GSOC Manager will lead a 24/7/365 team of GSOC Intelligence Analysts providing threat monitoring, incident response, intelligence analysis, and physical security operations.

You will be responsible for leading, managing, and developing the GSOC team. This will include line management, scheduling, identifying training needs and delivering training, and performance management. The Team Leader will also be responsible for setting the standard for high-quality intelligence analysis work and as a power user for all tools and systems used by the GSOC. This role will also involve working closely with Sibylline management and the client to ensure a smooth transition as the new team comes online. You will proactively engage with the client and stakeholders on monitoring and intelligence needs and priorities, and help to scope the output and strategic deliverables of the team.

This is an onsite role at the client’s Toronto office, working Monday to Friday, 9am-5pm. There may be occasional need to work out-of-hours during emergencies and time sensitive matters.

Essential Functions / Responsibilities
  • Drive the implementation of the new GSOC team, identifying the client’s immediate delivery needs and any team training requirements

  • Set team priorities, delegate tasks, manage deadlines, provide feedback, and ensure high-quality service delivery

  • Manage the 24/7/365 shift schedule and ensure full shift coverage

  • Monitor and direct the team’s use of security systems, intelligence and open-source tools

  • Lead oversight of GSOC’s adherence to incident response, triage, and escalation Standard Operating Procedures (SOPs)

  • Provide continuous editorial and mentoring support for the GSOC team

  • Define and agree on key intelligence priorities with security stakeholders to optimise the production and delivery of intelligence products and briefings

  • Build and maintain cross-functional stakeholder relationships

  • Identify process gaps, training gaps, configuration issues, or workflow friction, and implement corrective actions in a timely manner

  • Display creating thinking and consulting skills to deliver a continually improving service for the client

  • Other duties as assigned

Knowledge, Skills, and Abilities
  • Experience, knowledge, and interest in current affairs, international relations and emerging security threats

  • Advanced research, intelligence gathering and analytical skills, and the ability to write high-quality products and deliver high-impact briefings for a senior security audience

  • Excellent English written and verbal communication skills, with a high attention to detail and strong ability to quality assure (peer review) intelligence products

  • Excellent time management and prioritisation skills, with the ability to set and meet deadlines and manage own / team’s workload accordingly

  • Ability to solve complex problems with patience and precision, whilst retaining focus on customer needs

  • Ability to build rapport, strong and sustainable relationships, and interact within all levels of the client

  • Ability to develop and deliver training and support direct reports’ professional development

Qualifications
  • Undergraduate or Postgraduate qualifications in International Security, Intelligence, Risk, Geopolitics or other related disciplines, or equivalent professional experience

  • Experience with GSOC and intelligence tools, including threat monitoring, OSINT, and SOCMINT platforms

  • At least 5+ years total experience working in a corporate setting or similar public or private sector environments, with at least 2+ year line management experience

  • Fluent written and spoken English

  • Preferred cross-functional experience within a global security team (e.g. threat monitoring, travel security, business continuity, crisis management), particularly in a leadership role

Work Environment/Physical Requirements

This position is moderately self-directed and requires understanding and compliance with company policies, procedures, and values. While performing the duties of this job, the employee is regularly required to interact collaboratively with the team and stakeholders, and communicate via phone, videophone, or text messaging. The position may require travel up to 5%.

Additional Information
Interview Process
  • Initial call with our Talent Acquisition team member
  • Timed written assessment (arranged at a time that suits you) to test writing and analytical capability
  • Panel interview with some of the team members and hiring managers at Sibylline
  • Meet and Greet with the client

Artificial Intelligence: Not used in candidate screening

Research indicates that certain groups are less likely to apply for a position unless they meet every single requirement. If you feel you meet some of the requirements and can offer a unique perspective to this role, we strongly encourage you to apply—you might be the perfect fit we're looking for!

Sibylline is committed to the recruitment and selection of candidates without regard for sexual orientation, gender, ethnicity, age, political beliefs, culture, and lifestyle. We are committed to fostering a business culture that reflects these values and promotes equal opportunity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Embedded GSOC Intelligence Team Leader
Embedded GSOC Intelligence Team Leader

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Embedded GSOC Junior Intelligence Analyst
Embedded GSOC Junior Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 65,000 - 85,000
20 days PTO
5 sick days
Embedded GSOC Intelligence Analyst
Embedded GSOC Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 85,000 - 100,000
20 days PTO per annum
5 paid sick days per annum
Embedded GSOC Intelligence Analyst
Embedded GSOC Intelligence Analyst

Sibylline Ltd • Toronto

On-site
CAD 85,000 - 100,000
20 days PTO per annum
5 paid sick days per annum
Onsite Toronto office
Embedded GSOC Junior Intelligence Analyst
Embedded GSOC Junior Intelligence Analyst

Sibylline Ltd • Toronto

On-site
CAD 65,000 - 85,000
PTO 20 days
Sick leave 5 days
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Cybersecurity Incident Response Commander
Cybersecurity Incident Response Commander

ISA Cybersecurity Inc • Toronto

On-site
CAD 135,000 - 180,000
Flexible sick and personal days
Generous health plan
RRSP matching and bonus programs
+1
Incident Response Analyst, Digital Forensics & Incident Response
Incident Response Analyst, Digital Forensics & Incident Response

ISA Cybersecurity Inc • Toronto

Hybrid
CAD 75,000 - 105,000
Flexible sick days
Health plan
Education reimbursement
+5
Enhanced Security Operative – Full-Time / Part-Time / On-Call
Enhanced Security Operative – Full-Time / Part-Time / On-Call

SSRG • Calgary

On-site
CAD 55,000 - 103,000
Hourly pay
Health & dental benefits
Paid training
+5
Enhanced Security Operative – Full-Time / Part-Time / On-Call
Enhanced Security Operative – Full-Time / Part-Time / On-Call

SSRG • Burnaby

On-site
CAD 55,000 - 103,000
Hourly rate $40-$75/hour
Health & dental benefits
Paid training
+5