Embedded Threat Intelligence Analyst Team Leader

Position Summary

The Threat Intelligence Analyst Team Leader is embedded within our client’s account as part of the Global Intelligence and Threat Monitoring (GITM) function. As Team Leader, you will lead one regional element of a 24/7 team of analysts operating globally as part of a tight-knit operation delivering actionable intelligence to support client decision makers.

You will be responsible for overseeing the collection, analysis, and dissemination of timely and accurate intelligence on threats and risks to the client globally. As the Threat Intelligence Analyst Team Leader, you will manage the analyst team on a day-to-day basis, ensure high-quality analytical outputs, drive continuous improvement of monitoring and assessment processes, and provide leadership during incidents and crisis situations.

Full support and guidance will be provided, including training and professional development.

This is an onsite role working from 9 am - 5 pm in the UK, 11 am – 7 pm in the US and 9 am – 5 pm in Singapore with five days a week based at the client’s office. There may be an occasional need to work out-of-hours, weekends, and public holidays during emergencies and time-sensitive matters.

Essential Functions / Responsibilities

  • Lead and supervise the team’s monitoring of open source, social media, and vendor feeds for global security threats.
  • Oversee the drafting and quality assurance of incident alerts and analytical reports, ensuring outputs are timely, credible, and provide actionable insight to internal stakeholders.
  • Provide leadership and direction during ongoing incidents, including senior management updates and crisis management briefings.
  • Ensure effective escalation, incident triage, and adherence to established procedures across the team.
  • Support threat monitoring requirements related to client operations, travel, and events, ensuring team readiness and coverage.
  • Drive optimisation of processes, SOPs, and analytical methodologies to improve delivery of intelligence products and notifications.
  • Provide mentorship, coaching, and performance oversight to analysts, fostering a high-performing and resilient team culture.
  • Collaborate with client stakeholders to ensure intelligence outputs align with operational needs and business priorities.
  • Support the growth of the intelligence function by developing and innovating assessment techniques in collaboration with other team leads.
  • Display creative thinking and consulting skills to deliver a continually improving service supporting the global business.
  • Collaborate with global Sibylline teams to share best practices, tools, and insights.
  • Other duties as assigned.

Knowledge, Skills, and Abilities

  • Expert knowledge of geopolitical issues, security threats, criminal trends, and their impact on private sector operations and business continuity.
  • Strong understanding of how global security incidents impact staff, assets, and operations, with the ability to rapidly assess business impact.
  • Advanced research and analytical skills, including the ability to synthesise complex information and generate actionable intelligence.
  • Experience using threat monitoring tools, open-source research techniques, and mass notification platforms (e.g. Everbridge).
  • Strong data analysis and visualisation capability, with experience handling large datasets.
  • Leadership capability with demonstrated ability to mentor, develop, and inspire team members.
  • Ability to work effectively in high-tempo environments, balancing independent work with team collaboration.
  • Strong communication skills, with the ability to deliver clear, concise, and impactful written and verbal briefings.
  • Ability to work flexibly to ensure client intelligence requirements are consistently met.
  • Preferred knowledge in environmental hazards, natural disasters, climate risk, crime data analysis, or GIS mapping tools (e.g. ESRI).
  • Preferred technical competency with analytical platforms (e.g. IBM i2, Tableau, Splunk, Recorded Future, Palantir).

Qualifications

  • Bachelor’s degree in security studies, international relations, business management, risk management, or related field; Master’s degree preferred.
  • 3–5 years of relevant experience in threat monitoring, intelligence analysis, or geopolitical risk roles.
  • 1–3 years of leadership or team management experience.
  • Experience within corporate intelligence, GSOC/SOC, or similar operational security environments.
  • Preferred additional languages competencies
  • Preferred professional network or engagement with industry bodies (e.g. OSAC, ASIS, AIRIP)

Interview Process

  • Initial call with our Talent Acquisition team member
  • Timed written assessment (arranged at a time that suits you) to test writing and analytical capability
  • Panel interview with some of the team members and hiring managers at Sibylline
  • Meet and Greet with the client

Research indicates that certain groups are less likely to apply for a position unless they meet every single requirement. If you feel you meet some of the requirements and can offer a unique perspective to this role, we strongly encourage you to apply—you might be the perfect fit we're looking for!

Sibylline is committed to the recruitment and selection of candidates without regard for sexual orientation, gender, ethnicity, age, political beliefs, culture, and lifestyle. We are committed to fostering a business culture that reflects these values and promotes equal opportunity.