Skip to content

Open nowPosted 16 days agoWe saw it 98 min after it went up

Embedded Threat Intelligence Analyst

Sibylline Ltd11 open roles

Where
San Francisco, CA, United States
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowEmbedded Threat Intelligence AnalystSibylline Ltd · San Francisco, CA, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Sibylline Ltd's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. Sibylline Ltd postings stay open a median of 38 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.2%30 days
This job: posted 16 days ago

Sibylline Ltd median: 38 days open

The posting

Company Description

About Sibylline

Sibylline is the world's largest private intelligence firm, helping organisations manage risk, spot opportunity, and build resilience in an increasingly volatile world.

Our people provide the insight that leaders need to navigate today's complex geopolitical landscape. It's meaningful work, with high-profile clients and real-world stakes – and that's what makes it so rewarding.

We're innovative, entrepreneurial, and growing fast, which means genuine opportunities to take on complex challenges, work with cutting-edge technology, and build your career, whatever stage you're at.

Everyone brings something different to the table, and we want that reflected in how we operate. Our roles suit a wide range of working styles, personalities, and interests, and we invest heavily in our managers so that every person gets the support they need to do their best work.

We're looking for people who are ambitious, discreet, and sharp, with strong integrity and a genuine curiosity about the world. If you're comfortable with uncertainty, energised by complex problems, and passionate about global affairs, we'd love to hear from you.

Job Description

Position Summary

Sibylline is seeking a highly motivated and analytical Threat Intelligence Analyst to support a client's global security and risk management functions. Embedded within the client environment, the Threat Intelligence Analyst will identify, investigate, assess, and communicate threats and emerging risks impacting personnel, operations, assets, facilities, and brand reputation.

The successful candidate will possess a strong understanding of intelligence analysis, investigative methodologies, threat actor research, and open-source intelligence (OSINT) collection. This role requires the ability to transform complex information into actionable intelligence that enables decision-makers to mitigate risk, enhance security operations, and support informed security and business decisions.

The Threat Intelligence Analyst will work closely with stakeholders across corporate security, physical security, investigations, and business operations teams to deliver timely intelligence products, investigative findings, and operational support.

Location: San Francisco, CA with in-office requirements of at least two days a week. The team will work Monday to Friday, 8am-5pm.

Essential Functions / Responsibilities

  • Monitor, collect, and analyze information from a variety of sources to identify threats, risks, and emerging trends impacting personnel, operations, assets, facilities, and brand reputation.
  • Conduct online investigations and assess threat actors, online communities, suspicious activity, and emerging risks relevant to corporate and physical security operations.
  • Produce timely intelligence products, investigative reports, alerts, and briefings to support decision-making and risk mitigation efforts.
  • Leverage OSINT methodologies, social media analysis, public records research, and commercial intelligence platforms to support intelligence collection and investigative activities.
  • Develop investigative leads, conduct due diligence and attribution research, and synthesize findings from disparate information sources into actionable intelligence.
  • Triage and respond to requests for intelligence and investigative support, delivering timely and relevant insights to stakeholders.
  • Support critical incident response efforts through rapid research, analysis, and dissemination of relevant information.
  • Maintain intelligence records, analytical databases, and case management systems to support ongoing operations.
  • Collaborate with cross-functional stakeholders to enhance threat identification, risk mitigation, and security outcomes.

Knowledge, Skills, and Abilities

  • Experience supporting security, intelligence, investigations, trust and safety, or risk management programs within technology companies, government agencies, or private-sector intelligence organizations.
  • Strong understanding of threat intelligence, investigative methodologies, threat actor research, and intelligence collection and analysis practices.
  • Strong proficiency in OSINT collection, social media analysis, public records research, and online investigative techniques.
  • Experience utilizing commercial investigative and intelligence platforms such as LexisNexis, Dataminr, Flashpoint, or similar technologies.
  • Strong analytical and critical thinking skills with the ability to identify patterns, assess risk, and produce actionable intelligence from complex information.
  • Ability to communicate findings clearly and effectively through written products, briefings, and stakeholder engagement.
  • Demonstrated ability to manage multiple priorities in a dynamic environment while handling sensitive and confidential information with discretion.
  • Experience utilizing AI and emerging technologies to enhance research, information analysis, investigative workflows, and operational efficiency.
  • Commitment to objectivity, professional ethics, analytical rigor, and continuous learning.

Qualifications

  • Bachelor's degree or higher in Security Studies, International Relations, Criminal Justice, Political Science, Intelligence Studies, Business Management, Journalism, or a related discipline; or equivalent professional experience.
  • 3+ years of professional experience in threat intelligence, intelligence analysis, investigations, OSINT, corporate security, trust and safety, or a related field.
  • Demonstrated experience conducting investigative research, intelligence collection, and threat analysis.
  • Experience researching threat actors, online communities, or emerging security threats.
  • Proven ability to produce high-quality analytical reports and intelligence products.

Additional Information

Work Environment/Physical Requirements

This position is moderately self-directed and requires understanding and compliance with company policies, procedures, and values. While performing the duties of this job, the employee is regularly required to interact collaboratively with the team and stakeholders, and communicate via phone, videophone, or text messaging. The position may require travel up to 5%.

Benefits

  • 401(k) up to 5% matching
  • Medical/Dental/Vision
  • Basic Life and AD&D Insurance
  • Long Term/Short Term Disability
  • PTO: 160 hours (20 days) accrued per year
  • Sick: dependent on state (minimum 5)
  • 12 Public Holiday days

Interview Process

  • Initial call with our Talent Acquisition team member
  • Timed written assessment (arranged at a time that suits you) to test writing and analytical capability
  • Verbal Briefing during panel interview with team members and hiring managers at Sibylline
  • Meet and Greet with the client

Research indicates that certain groups are less likely to apply for a position unless they meet every single requirement. If you feel you meet some of the requirements and can offer a unique perspective to this role, we strongly encourage you to apply—you might be the perfect fit we're looking for!

Sibylline is committed to the recruitment and selection of candidates without regard for sexual orientation, gender, ethnicity, age, political beliefs, culture, and lifestyle. We are committed to fostering a business culture that reflects these values and promotes equal opportunity.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Sibylline Ltd's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Sibylline Ltd's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Sibylline Ltd's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.