Open-Source Research Analyst-Cybersecurity
Job Description
The Opportunity (General Summary)
NTS is seeking an experienced Open-Source Research Analyst with a cybersecurity focus to support the delivery of Cybersecurity Open-source Research and Evaluation (CORE) reporting services for a Government of Canada customer. This position requires a skilled researcher and analyst capable of identifying, assessing, and articulating cybersecurity risks derived from publicly available and commercially accessible information sources.
The successful candidate will be comfortable operating in a fast-paced, production-oriented environment, delivering high-quality analytical reports on a regular cadence against customer-directed taskings. Candidates with backgrounds in cybersecurity, threat intelligence, or defence-related research are strongly encouraged to apply.
Key Responsibilities
Open-Source Research & Analysis
Conduct structured open-source and technical research on cybersecurity topics, software platforms, vendors, datasets, and IT infrastructure as directed by the customer
Identify outdated or vulnerable software versions, insufficient patch management practices, and exposed infrastructure components
Assess foreign infrastructure ownership, investment, or control risks associated with technology platforms and vendors
Evaluate third-party applications, cybersecurity tools, and vendor ecosystems for cyber risk indicators
Analytical Reporting
Author Cybersecurity Open-source Research and Evaluation (CORE) reports summarizing research findings, risk analysis, and technical observations
Produce a minimum of twelve (12) analytical reports per month based on customer-directed taskings
Ensure reports include clear methodology summaries, vulnerability findings, relevant technical details, and supporting open-source references
Collaboration & Coordination
Receive and action tasking directions from the customer's Technical Authority
Seek clarification on analytical requirements as needed to ensure reporting accuracy and relevance
Participate in coordination calls with NTS program management and customer stakeholders
Maintain a personal repository of recurring research sources, tools, and methodologies to support efficient delivery
Prepare additional reports as requested by the customer beyond the baseline monthly requirement
Requirements
Eligible to obtain and maintain a Government of Canada security clearance
Canadian citizenship required
Work Eligibility
Must be legally authorized to work in Canada
Language Requirement
English required
French considered an asset
Education
Bachelor's degree or higher in Cybersecurity, Computer Science, Information Technology, Intelligence Studies, or a related discipline; or equivalent combination of education and professional experience.
Relevant professional certifications (e.g., OSCP, CEH, Security+, GCTI, GREM) are a strong asset
Required Skills, Experience & Abilities
5 to 10 years of experience in cybersecurity research, threat intelligence, OSINT analysis, or a related analytical discipline
Demonstrated track record of producing structured analytical reports under recurring deadlines
Experience identifying cybersecurity vulnerabilities, exposed infrastructure, or technology supply chain risks using open-source methodologies
Prior experience supporting government, defence, or national security customers is a strong asset
Familiarity with the Canadian cybersecurity landscape and Government of Canada IT security policies (e.g., CCCS, ITSG-33) is an asset
Technical Skills
Proficiency with OSINT tools and platforms (e.g., Shodan, Maltego, VirusTotal, MISP, CVE/NVD databases, Censys)
Understanding of web application frameworks, software supply chains, patch management practices, and infrastructure exposure concepts
Familiarity with common vulnerability scoring frameworks (CVSS) and cybersecurity risk assessment methodologies
Strong written communication skills; ability to write clear, technically accurate reports for both technical and non-technical audiences
Experience with cybersecurity standards, frameworks, and threat classification models (e.g., MITRE ATT&CK, OWASP)
Physical Demands
The physical demands described here are representative of those that must be met to successfully perform the essential duties of this role. These requirements are considered bona fide occupational requirements. Reasonable accommodations are available upon request.
Prolonged periods of sitting at a desk and working on a computer.
Frequent use of hands and fingers for typing, writing, and handling documents.
Clear vision and hearing required for meetings, presentations, and communication.
Ability to travel up to 5% of the time, which may include extended periods of standing, walking, or navigating airports and government facilities.
Work Environment
Work Environment: Fully remote. Occasional travel to NTS offices or customer sites may be required.
Hours: Standard business hours. Must meet recurring monthly report delivery deadlines.
Output Requirement: Minimum 12 analytical reports per month. Candidates should be comfortable with production-oriented research and writing environments.
Security: All work performed in compliance with applicable Government of Canada security policies. Handling of sensitive material subject to applicable protocols.
Summary
Remote position - working hours are generally within standard daytime hours of operation Monday – Friday
Employment Equity & Accessibility
We are an equal opportunity employer and consider all qualified applicants without regard to race, colour, religion, sex, ****** orientation, gender identity or expression, age, national or ethnic origin, citizenship, marital or family status, disability, genetic characteristics, or any other protected ground under applicable law. In accordance with the principles of the Employment Equity Act, we encourage applications from women, Indigenous peoples, persons with disabilities, and members of visible minorities, and will consider qualified applicants with criminal records consistent with applicable laws and role requirements.
Accommodations are available throughout the recruitment process. Applicants requiring accommodation may contact recruiting@nextechsol.com.
Job Type: Full-time
Pay: $157,000.00-$208,000.00 per year
Experience:
cubersecurity research, threat intelligence, OSINT analysis : 5 years (required)
Licence/Certification:
OSCP, CEH, Security+, GCTI or GREM certification (preferred)
Location:
Ottawa, ON (preferred)
Work Location: Remote
