Embedded Junior GSOC Intelligence Analyst

Sibylline Ltd

Toronto

On-site

CAD 65,000 - 85,000

Full time

8 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

20 days PTO
5 sick days

Job summary

Sibylline Ltd is seeking a Junior GSOC Intelligence Analyst to join a 24/7 Global Security Operations Centre for a multinational client. The role involves incident monitoring, triage, escalation, and threat assessment to support decision making.

You will perform OSINT/SOCMINT collection, produce intelligence briefings, and coordinate with business units. Onsite work in Toronto with rotating 5x8-hour shifts, including nights and weekends, is required.

Qualifications

  • Experience with current affairs, international security threats, and risk monitoring.
  • Strong written and spoken English with high attention to detail.
  • Experience using OSINT and SOCMINT platforms and methodologies.
  • Ability to absorb large data volumes and summarize clearly.

Responsibilities

  • Continuously monitor incidents, alerts, and systems within the GSOC.
  • Serve as central triage, verification, and event classification point.
  • Communicate and coordinate incidents with stakeholders per SOPs.
  • Follow GSOC SOPs and execute playbooks and escalation protocols.
  • Document incidents in real time and maintain logs.
  • Horizon scan geopolitical and security risks impacting the client.

Skills

OSINT/SOCMINT
English Fluent
Incident monitoring
Communications

Education

International Security
Intelligence Studies

Tools

GSOC tools
OSINT platforms
SOCMINT platforms
CCTV systems

Job description

Embedded Junior GSOC Intelligence Analyst
  • Full-time
  • Compensation: CAD 65000 - CAD 85000 - yearly

About Sibylline

Sibylline is the world's largest private intelligence firm, helping organisations manage risk, spot opportunity, and build resilience in an increasingly volatile world.

Our people provide the insight that leaders need to navigate today's complex geopolitical landscape. It's meaningful work, with high-profile clients and real-world stakes – and that's what makes it so rewarding.

We're innovative, entrepreneurial, and growing fast, which means genuine opportunities to take on complex challenges, work with cutting-edge technology, and build your career, whatever stage you're at.

Everyone brings something different to the table, and we want that reflected in how we operate. Our roles suit a wide range of working styles, personalities, and interests, and we invest heavily in our managers so that every person gets the support they need to do their best work.

We're looking for people who are ambitious, discreet, and sharp, with strong integrity and a genuine curiosity about the world. If you're comfortable with uncertainty, energised by complex problems, and passionate about global affairs, we'd love to hear from you.

Expected Compensation: C$65,000 – C$85,000 per year

Location: Onsite, Toronto, ON

PTO: 20 days per annum

Sick: 5 paid days per annum

Vacancy Status: Existing Vacancy

This role will close for applications at 0900 EDT on Monday 14 September 2026.

Position Summary

We are looking for aGSOCJuniorIntelligence Analyst to join a newly established 24/7 Global Security Operations Centre (GSOC) for a multinational e-commerce client. This role will focus on continuous monitoring of incidents, alerts, and systems, triage and escalation, and incident response. You will alsosupport horizon scanning tomonitorgeopolitical and security events that mayimpactthe client’s employees, assets, reputation, and operations, producingtimelyand actionable intelligence briefings to inform decision making where required.

You will act asa central pointfor escalation, coordination, and communication during times of crisis, and you will engage with various business functions, ensuringa holistic approachto addressing their needs, expectations, and concerns. The GSOC team will have some onsite physical security responsibilities, including alarm and CCTV monitoring, and access control.

This role would require you to work 5x8-hour shifts, rotating early, late and nights to cover 24/7 including weekends with flexibility to cover gaps whererequired. The role is fully onsite at the client’s Toronto office.

Essential Functions / Responsibilities

  • Continuous monitoring of incidents, alerts, and systems
  • Act ascentral pointforinitialtriage, verification, and classification of events
  • Communicate, elevate, and coordinate incidents with relevant stakeholders as per established Standard Operating Procedures (SOPs)
  • Adhere strongly to GSOC SOPs, and execute response playbooks and escalation protocols
  • Complete incident logging and real-time documentation
  • Horizon scan for geopolitical, security, reputational, and operational risks that mayimpactthe client
  • Conduct open-source intelligence (OSINT) collection and analysis toidentifyearly warningindicatorsand proactively warn of threats to the client’s operations
  • Support incident response through production ofintelligence products,threatassessmentsand impact analysis
  • Producetimelyand actional intelligence reports and briefings whererequired
  • Provide monitoring and management of security operations, including CCTV feeds, accesscontroland door alarms
  • Other duties as assigned

Knowledge, Skills, and Abilities

  • Experience, knowledge, and interest in current affairs, international relations, and emerging security threats
  • Excellent written and spoken communication with a high attention to detail
  • Experience in utilising OSINT and social media intelligence (SOCMINT) platforms, tools, and methodologies
  • Ability to absorb and analyselarge amountsof data to summarise events accurately and concisely
  • Ability to work independently and as part of a collaborative team
  • Ability to prioritize and manage multiple scheduled tasks, requests, and sources of information in an organised way
  • Eagerness to learn and support all aspects of GSOC operations, including following SOPs related to physical and asset security, securing access points and alarm response
  • At least1+years of experience working in a corporate setting or similar public or private sector environments
  • Fluent written and spoken English
  • Preferred experience withGSOC tools, includingthreat monitoring, OSINT, and SOCMINTplatforms
  • Preferred Undergraduate or Postgraduate qualifications in International Security, Intelligence, Risk, Geopolitics or other related disciplines, or equivalent professional experience

Work Environment/Physical Requirements

This position is moderately self-directed and requires understanding and compliance with company policies, procedures, and values. While performing the duties of this job, the employeeis regularly required tointeract collaboratively with the team and stakeholders, and communicate via phone, videophone, or textmessaging.The position may require travel up to5%.

Interview Process

  • Initial call with our Talent Acquisition team member
  • Timed written assessment (arranged at a time that suits you) to test writing and analytical capability
  • Panel interview with some of the team members and hiring managers at Sibylline
  • Meet and Greet with the client

Artificial Intelligence: Not used in candidate screening

Researchindicatesthat certain groups are less likely to apply for a position unless they meet every single requirement. If you feel you meet some of the requirements and can offer a unique perspective to this role, we strongly encourage you to apply—you might be the perfect fitwe'relooking for!

Sibylline is committed to the recruitment and selection of candidates without regard for sexual orientation, gender, ethnicity, age, political beliefs, culture,and lifestyle. We are committed to fostering a business culture that reflects these values and promotes equal opportunity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Embedded GSOC Junior Intelligence Analyst
Embedded GSOC Junior Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 65,000 - 85,000
20 days PTO
5 sick days
Embedded GSOC Intelligence Team Leader
Embedded GSOC Intelligence Team Leader

Sibylline • Toronto

On-site
CAD 100,000 - 125,000
PTO 20 days
Sick days 5 days
Onsite role
Embedded GSOC Intelligence Analyst
Embedded GSOC Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 85,000 - 100,000
20 days PTO per annum
5 paid sick days per annum
Embedded GSOC Intelligence Team Leader
Embedded GSOC Intelligence Team Leader

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Analyst, Global Physical Security Operations Center (Global Security)
Analyst, Global Physical Security Operations Center (Global Security)

Socket.dev • Vancouver

Hybrid
CAD 90,000 - 120,000
Bonuses
Stock where applicable
Flexible benefits
+1
Intermediate Security Operations Center Analyst *Future Opportunity*
Intermediate Security Operations Center Analyst *Future Opportunity*

Long View Systems • Calgary

On-site
CAD 61,000 - 80,000
RSP plan
Senior Cyber Security Specialist - Cyber Incident Management
Senior Cyber Security Specialist - Cyber Incident Management

Sobeys • Mississauga

On-site
CAD 110,000 - 150,000
Senior Cyber Security Specialist - Cyber Incident Management
Senior Cyber Security Specialist - Cyber Incident Management

Socket.dev • Burnaby

On-site
CAD 110,000 - 140,000
Health and dental benefits
Employee Share Ownership Plan
10% in-store discount
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Senior Cyber Security Specialist
Senior Cyber Security Specialist

Sobeys • Mississauga

On-site
CAD 120,000 - 160,000
Health & dental
ESOP (Employee Stock Ownership Plan)
Discount at banners
+5