Operational Cyber Threat Intelligence Analyst cyber threat intelligence and incident response using
Remote / Online - Candidates ideally in
Toronto, Ontario, M5A, Canada
Listing for:
S.i. Systems
Contract, Remote/Work from Home
position
Listed on 2026-07-20
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, Data Security, Security Management & Operations
Job Description & How to Apply Below
Position: Operational Cyber Threat Intelligence Analyst to provide cyber threat intelligence and incident response support using
Duration:
Until Apr 30, (possibility of extension)
Location:
Downtown Toronto (Hybrid - 2x/week in office if located in the Toronto area – open to remote workers as well)
Provide tactical and operational cyber threat intelligence to support the organization's security, fraud prevention, incident response, and risk management objectives. Monitor the evolving cyber threat landscape, identify and assess threats relevant to the bank, its customers, and the financial services sector, and provide timely monitoring, escalation, and intelligence support to the Incident Response Centre. Analyze threat actors, emerging vulnerabilities, and adversary tactics, techniques, and procedures (TTPs) to determine potential business impact and enable proactive cyber defense.
Translate technical threat data into clear, actionable intelligence products, reports, and briefings for both technical and non-technical stakeholders, while collaborating with internal security teams, industry partners, and information-sharing organizations to strengthen cyber resilience and support informed decision-making.
Must Haves
At least 2 years of experience in cyber threat intelligence (primary) or cybersecurity operations, incident response, and other related fieldsStrong understanding of threat actors, attack trends, vulnerabilities, and the financial sector threat environment.Ability to analyze and contextualize cyber threat data from multiple sources.Excellent written, verbal, and presentation skills.Proven ability to produce clear, concise, and actionable intelligence products for diverse audiences.Strong analytical, critical thinking, and stakeholder engagement skills.Nice to Have
Splunk experienceExperience with threat intelligence platforms (TIPs)Previous FI experienceCybersecurity/critical infrastructure sector experienceRelevant postsecondaryResponsibilities
Monitor, triage, and assess incoming cyber threat intelligence emails, alerts, notifications, and reporting from internal and external sources.Conduct continuous cyber event monitoring and provide timely escalation of credible threats, indicators, and incidents to the Incident Response Centre (IRC) and relevant stakeholders.Monitor the cyber threat landscape to identify emerging threats, vulnerabilities, threat actors, campaigns, and trends that may impact the bank, its customers, or the financial services sector.Collect, correlate, and analyze threat intelligence to provide actionable insights supporting cyber defense, security operations, fraud prevention, and incident response activities.Assess threat actors, malware, ransomware activity, and adversary tactics, techniques, and procedures (TTPs) to determine potential business impact and risk exposure.Produce high-quality intelligence reports, threat advisories, alerts, briefings, and situational awareness products for technical and non-technical audiences.Support incident investigations by providing intelligence analysis, threat context, attribution insights, and indicators of compromise (IOCs).Develop and maintain threat actor profiles, attack trend analyses, and sector-specific intelligence assessments.Collaborate with Security Operations, Incident Response, Fraud, Vulnerability Management, and other cybersecurity teams to enhance detection, response, and mitigation capabilities.Participate in intelligence-driven investigations, threat hunting activities, and post-incident reviews to identify emerging risks and improve defensive measures.Engage with industry partners, information-sharing organizations, and external intelligence providers to gather and share relevant threat information.Brief stakeholders and leadership on significant cyber threats, risks, and recommended courses of action to support informed decision-making.Contribute to the ongoing improvement of cyber threat intelligence processes, intelligence requirements, monitoring practices, and reporting standards.Interviews:
2-3 30 minute rounds over teams. 1st round will be with the HM, and 2nd round will be with the HM and team members.
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: