TRX International

Nuclear threat & risk analystSalary, qualifications, career path and hiring demand, 2026 edition

A nuclear threat & risk analyst turns controlled threat information into decisions about what a nuclear facility, material or programme must protect against. The role combines threat assessment, vulnerability analysis, program management, and protective-security challenge. It is narrower than a general nuclear security analyst and different from a cyber SOC role: the output is a defensible threat-and-risk picture that drives security requirements, nuclear industry design, and assurance.

Threat assessment · Vulnerability analysisPhysical protection · Insider riskSecurity-by-design · Cleared workHigh hiring demand
In short

There is no national wage series for this exact position, so TRX models the market from nuclear physical-security and risk management roles and live specialist postings. The 2026 US model centres near $133,000, reaching $175,000–$220,000 at lead/SME level; X-energy advertises $140,000–$195,000 for a senior nuclear physical-security/safeguards analyst. UK established analysts model at £46,000–£75,000, rising toward £110,000 at lead level.

There is no standalone licence. The gates are access to sensitive threat information, programme clearance, nuclear-security framework knowledge and evidence that you can separate intelligence, assumptions and uncertainty. UK roles commonly require BPSS with SC or DV; US roles may require commercial nuclear access/SGI controls or federal clearances. Candidates often need a bachelor's degree or related field education and experience required to work closely with departments such as human resources, health physics, and safety evaluations to ensure integrity and compliance with procedures.

live 2026 X-energy senior nuclear physical-security/safeguards analyst range
$0–$195k
current UK nuclear security consultancy anchor for threat/risk-capable specialists
£0–£60k
NRC maintains separate design-basis threats for radiological sabotage and theft/diversion
0DBTs
NRC formally reviews the threat environment on an annual cycle, with immediate escalation if material intelligence changes the basis
0months
Role snapshot

The role at a glance

Everything an employer will ask about in the first fifteen minutes of a screening call.

Nuclear Threat & Risk Analyst Jobs
Also called
Nuclear security risk analyst · threat assessment analyst · vulnerability assessment analyst · physical security analyst · security risk specialist · protective security analyst
Entry qualification
Security, intelligence, engineering, science or risk degree is common; experienced military, police, government-security and nuclear-security practitioners can enter without a conventional graduate route
Typical entry pay
$88,000–$108,000 US · £38,000–£48,000 UK in junior/transition appointments
Senior pay
$150,000–$220,000 US at principal/lead level · £70,000–£110,000 UK for principal, lead and management-track specialists
Contract day rates
£500–£750/day established analyst; £650–£950/day cleared principal/consulting work; specialist US support commonly prices above permanent hourly equivalents
Professional gate
No licence. The gate is authorised access to the threat evidence plus credibility in nuclear protective security
Security
UK BPSS baseline with SC or DV common on sensitive programmes; US SGI/access-authorisation controls for commercial nuclear and Secret/TS/Q requirements where federal or weapons work applies
Where the work sits
Licensees, reactor developers, fuel-cycle operators, decommissioning organisations, regulators, consultancies and national laboratories
Travel
Low to moderate in desk-based assessment roles; higher for site vulnerability surveys, design reviews, exercises and multi-site assurance
TRX segments
Large new build · New technology development · Operating fleet · Fuel cycle · Decommissioning & dismantling · Radioactive waste management · Defence-adjacent nuclear
What the job is

Six versions of the same job title

The job changes with who owns the threat picture and what decision it supports. The boundary is analytical judgement about hostile intent, capability, vulnerability and residual risk—not guarding or cyber monitoring. Bar shows relative hiring volume across TRX's 2026 desk activity.

Civil nuclear threat assessment

Interpreting authorised intelligence to identify threat characteristics that matter to a site, material or activity, then translating them into an actionable assessment.

ROLESNuclear threat analyst · threat assessment analyst · protective security analyst · security intelligence analyst

Vulnerability and protective-system risk

Testing credible threat scenarios against assets, barriers, detection, delay, response and insider controls to identify weak points.

ROLESVulnerability assessment analyst · physical security risk analyst · security assurance analyst · protection-system analyst

New-build security-by-design

Using threat and risk evidence to shape zoning, access concepts, physical protection and design before changes become expensive, especially on SMR and advanced-reactor programmes.

ROLESSecurity-by-design analyst · nuclear security risk engineer · physical protection analyst · security requirements specialist

Insider and personnel threat

Analysing trusted-access risk, role opportunity and control weaknesses to test whether the security system is resilient to authorised insiders.

ROLESInsider-risk analyst · personnel security risk analyst · protective security analyst · trustworthiness-risk specialist

Transport and material threat analysis

Assessing threat exposure during nuclear-material movement, temporary storage and transfer, with interfaces to carriers, police and site security teams.

ROLESTransport security risk analyst · nuclear material threat analyst · journey security analyst · protective security adviser

National laboratory / defence nuclear risk

Supporting classified programmes involving nuclear infrastructure, special nuclear material and adversary capabilities. The analytical discipline transfers; the information environment and clearance threshold do not.

ROLESNuclear security analyst · threat analyst · vulnerability analyst · security specialist · national-security analyst
A working day

What the week actually looks like

A composite day for an established analyst on a civil nuclear new-build or operating programme, working with controlled threat information and assurance teams.

Security programme · typical TuesdayOffice-based with controlled-information handling
08:00
Threat picture reviewCheck authorised intelligence, regulator notices and internal reporting for changes that could alter assumptions, scenario credibility or protective posture.
09:00
Risk model updateUpdate a threat-vulnerability-consequence assessment for a facility, material movement or design change, recording assumptions, confidence and residual risk.
10:30
Security-by-design reviewChallenge a proposed layout, access route or operating concept for new attack pathways, insider opportunity or dependency on a single protective measure.
12:00
Intelligence / stakeholder interfaceDiscuss a threat issue with authorised government, regulator, police or site-security contacts, separating confirmed information, assessment and plausibility.
13:30
Vulnerability workshopRun a cross-functional session with security, operations, cyber and engineering to find where one team's assumption creates another team's exposure.
15:00
Decision paperDraft or peer-review a threat/risk assessment or security-case input. Senior readers need the conclusion, evidence quality, uncertainty, consequence and action.
16:30
Assurance and recordsClose review comments, protect sensitive working papers and keep assumptions/actions traceable to the authorised threat basis.
The day changes when the threat changes. Most work is planned, but a credible new threat, security event or national posture change can collapse the schedule. During exercises or incidents the analyst shifts to rapid judgement: what is known, what matters, what action is proportionate and what must remain restricted. Strong analysts do this without turning uncertainty into a worst-case scenario.
Pay, 2026

What nuclear threat & risk analysts are paid in 2026

No official US or UK wage series isolates this role. These ladders are a TRX market model anchored to current nuclear physical-security vacancies, consultancy ranges and broader analyst data; live senior ranges are anchors, not national percentiles.

Base salary by level · TRX market model anchored to live nuclear security postings
$0$60k$120k$180k$240k
Junior nuclear threat / risk analyst0–3 yrs
$98k
Nuclear threat & risk analyst3–6 yrs
$120k
Senior nuclear threat & risk analyst6–10 yrs
$143k
Principal threat & vulnerability analyst9–15 yrs
$170k
Lead threat & risk SME / manager12+ yrs
$195k
25th–90th percentileMedianTRX market analysis, Q3 2026

How nuclear threat & risk analysis compares to adjacent roles

The nuclear rows are TRX models or live-job anchors because these specialisms are not separately coded. The broader physical-security figure is a 2026 market benchmark, not nuclear-specific pay.

OccupationMedianP10P90What moves the number
Nuclear threat & risk analyst$133,000$88,000$195,000Clearance, DBT/threat-basis work, vulnerability assessment, security-by-design, regulator interface
Nuclear security analyst$127,000$78,000$195,000Breadth across physical, personnel, information and assurance work
Physical security analyst, broader market$121,653$103,471$140,830Sector, location, critical-infrastructure exposure and seniority
Senior nuclear physical-security / safeguards analyst, live anchor$167,500 midpoint——X-energy 2026 advertised range of $140,000–$195,000

The nuclear rows are TRX models or live-job anchors because these specialisms are not separately coded. The broader physical-security figure is a 2026 market benchmark, not nuclear-specific pay.

Premium 01

Authorised threat-basis / DBT experience

Experience with the controlled threat basis moves the candidate beyond generic risk language and into decisions that survive scrutiny.

Premium 02

FOAK security-by-design

Advanced-reactor programmes value people who convert threat assumptions into requirements early enough to avoid redesign and licensing delay.

Premium 03

Cleared vulnerability and regulator-facing work

Clearance helps mobilisation; the real premium comes with completed assessments and evidence accepted by a regulator or accountable dutyholder.

Routes in

Three ways in, and only one of them starts with a nuclear degree

There is no single graduate pipeline. Most analysts arrive through nuclear security, intelligence/protective security, engineering risk or defence/law-enforcement work, then build nuclear-specific credibility.

Route A

Nuclear security / physical protection

Ten or more years to principal / threat-risk lead.

Year 0–2Security operations or analyst entryLearn access control, physical protection, security plans, incident reporting and the difference between operational evidence and assumptions.
Year 2–5Security assurance / risk workSupport vulnerability reviews, change assessments, exercises and corrective actions while learning the applicable regulator framework.
Year 4–7Threat & risk analystOwn bounded assessments and present conclusions to security managers, design teams and assurance functions.
Year 7–10Senior analystLead complex vulnerability work, integrate insider and cross-domain risks, and challenge programme decisions.
Year 10+Principal / threat-risk leadOwn methodology, peer review and high-consequence decisions across a site, fleet or programme.
Route B

Intelligence, police, military or government protective security

Five steps from analytical discipline to principal adviser.

Step 1Build analytical disciplineThreat intelligence, counter-terrorism, policing, defence or military security develops source evaluation and adversary understanding.
Step 2Enter a nuclear programmeMove into licensee, regulator, consultancy, laboratory or government nuclear-security work and learn nuclear consequence and regulatory context.
Step 3Learn the security basisUnderstand DBT or national threat-basis processes, security plans, sensitive-information controls and how nuclear operators convert threat into protection.
Step 4Lead nuclear assessmentsTake ownership of vulnerability studies, insider-risk analysis, threat scenarios and security-design challenge.
Step 5Progress to principal adviserThe strongest transfers can explain adversary behaviour and its implications for nuclear assets.
Route C

Engineering, safety or risk transfer

Ten or more years to security risk authority / principal.

Year 0–3Technical foundationWork in engineering, safety, reliability, risk or nuclear operations and learn how plant functions and consequences are analysed.
Year 2–5Security interface workSupport security-by-design, vital-area work, modification reviews or resilience studies where engineering decisions affect protection.
Year 4–7Formal threat/risk trainingAdd recognised security-risk methodology, nuclear-security regulation and controlled-information competence; obtain clearance where the role requires it.
Year 6–10Senior security-risk analystCombine plant understanding with adversary/vulnerability reasoning on new build.
Year 10+Security risk authority / principalLead integrated assessments where safety, security, cyber, operations and programme constraints collide.
Before you apply

Are you actually ready to compete for a nuclear threat & risk analyst role?

A CV that says "risk assessments" is not enough. The shortlist wants the asset or programme, threat basis, methodology, information controls, who accepted the output and what changed. If that evidence is buried in generic security language, a strong candidate can still look junior.

Free resume scoring on avua. Your score is yours; it is not shared with employers.
Example scorecardIllustrative
68out of 100

The difference is completed nuclear assessments, controlled threat-basis work and decisions influenced—not the number of courses listed.

A typical physical-security / intelligence CV
68
Average of shortlisted candidates
79
Top decile for nuclear threat & risk roles
91

Illustrative TRX shortlisting pattern only.

Gates

The credentials that actually gate the work

The role is gated more by trusted access, nuclear-security knowledge and safe handling of sensitive threat material than by certificates.

CredentialJurisdictionRequired forTimeNotes
Relevant degree or equivalent experienceAllCommon entry route3–4 yrsSecurity/intelligence, engineering, science, risk or equivalent experience can work
Nuclear security framework competenceUK / USIndependent analysis6–24 moNISR/SyAPs in the UK; NRC Part 73 and related requirements in US commercial nuclear
BPSSUKBaseline identity/employment checksDays–weeksCommon starting gate before higher vetting
SC / DVUKSensitive threat, government or defence-linked workWeeks–monthsRole-specific; DV is not a universal nuclear requirement
Safeguards Information / need-to-know authorisationUSProtected commercial nuclear security informationRole-specificHandling SGI is controlled; access depends on eligibility and need-to-know
Unescorted access / site authorisationUSSite-based commercial nuclear workWeeks–monthsIncludes trustworthiness/reliability and site processes where applicable
Secret / Top Secret / DOE QUSFederal, laboratory, NNSA or weapons-related programmesMonthsProgramme-specific; do not assume Q for commercial nuclear
Professional security / risk certificationAllDifferentiator, not universal gateMonthsCPP, security management or risk credentials can help but do not replace nuclear evidence

Clearance permits access; it does not prove competence. Hiring managers still want sound, reviewable threat and vulnerability judgements.

Skills screened

What appears on a 2026 nuclear threat & risk analyst shortlist

Employers are screening for whether you can convert incomplete, sensitive threat information into proportionate decisions while keeping assumptions and uncertainty visible. Ordered by how often a hiring manager treats it as a hard filter rather than a nice-to-have.

Hard filters

Named on the specification

  • Threat assessment and source evaluation — Distinguishing reporting, judgement, assumptions and confidence rather than treating every input as fact
  • Security risk / vulnerability assessment — Structured analysis of threat, assets, vulnerabilities, consequence, controls and residual risk
  • Nuclear physical-protection frameworks — NRC Part 73 / DBT concepts or UK NISR, ONR SyAPs and the applicable security case/plan environment
  • Scenario and adversary analysis — Building credible attack or insider scenarios without speculative storytelling or unnecessary sensitive detail
  • Security-by-design / change assessment — Tracing threat/vulnerability implications into design, modifications, zoning, access and operations
  • Sensitive-information handling and technical writing — Producing decision-quality assessments under classification, SGI/SNI and need-to-know controls
Differentiators

What decides between two shortlisted candidates

  • Current cleared threat-basis experience — Direct work with authorised threat information, not only open sources
  • Completed vulnerability assessments — Findings that were accepted, mitigated, tested or incorporated
  • Advanced-reactor / FOAK security work — Shaping protection while plant design and licensing assumptions are still moving
  • Insider-risk depth — Understanding how authorised access, opportunity and collusion change scenario credibility
  • Regulator / government interface — Presenting assessments and defending uncertainty with ONR, NRC, DOE/NNSA or equivalent stakeholders
  • Cross-domain integration — Understanding where physical, cyber, personnel, transport and safety/security interfaces change risk
One thing candidates consistently underweight. Judgement under uncertainty beats dramatic threat language. A common interview test gives the candidate concerning but incomplete intelligence and asks whether posture should change. Weak answers either dismiss it or escalate immediately. Strong analysts explain what is known, what would change the assessment, which actions are reversible and proportionate, and who must be consulted.
Where the jobs are

The 2026 demand map

Demand follows programmes where the threat basis must become a defensible security design and be re-tested as facilities, workforce and threats change.

ProgrammeLocationPhase in 2026Engineering demand
Rolls-Royce SMRUKStep 3 Generic Design Assessment; selected as preferred UK SMR technologyHigh; security assessment and security-by-design remain embedded in design maturity
Sizewell CSuffolk, UKConstruction following 2025 final investment decisionHigh; major construction and future operating security require evolving threat/risk analysis
Hinkley Point CSomerset, UKInstallation and commissioning preparationHigh; changing assets, access and contractors alter security assumptions
Sellafield / NDA groupCumbria and UK estateDecommissioning and hazard reductionSustained; NDA strategy explicitly ties security posture to a government-reviewed threat and risk assessment
EDF UK operating / defuelling fleetUKOperation and fleet transitionSustained; changing plant states and workforce models require continued security-risk review
X-energy / Long Mott Generating StationTexas / Maryland, USNRC construction-permit review; advanced safety review reached in 2026Very high specialist value; live senior physical-security/safeguards hiring supports the demand signal
TerraPower Natrium, Kemmerer Unit 1Wyoming / Washington, USConstruction permit issued March 2026; nuclear construction progressingHigh; FOAK design and construction create security-by-design and threat-assessment demand
US operating reactor fleetNationwide, USOperation, oversight and licence renewalSustained; licensees must maintain physical protection against the NRC design-basis threat
DOE / NNSA nuclear-security enterpriseUS laboratories and production sitesOperations and modernisationHigh but clearance-heavy; vulnerability, insider and physical-protection analysis remain core

Programme phases move. Confirm current status before making a relocation decision; TRX tracks these weekly.

Read the market this way

New build pays for analysts who influence design, not just review it

The strongest demand is where analysis can change the plant: SMRs, advanced reactors and major construction. Late security findings can force costly layout, barrier, access or operating changes. Candidates who show analysis that prevented redesign or narrowed a protection requirement beat candidates limited to risk registers.

The scarcity

People who can handle both intelligence uncertainty and nuclear engineering reality

Government threat analysts may understand adversaries but not plant consequence or licence obligations; nuclear engineers may understand the facility but not hostile intent or intelligence confidence. The scarce profile sits between those worlds and can explain threat judgement to engineers, plant constraints to intelligence professionals and residual risk to security leaders.

Where it leads

Adjacent and onward roles

Threat & risk analysis sits inside nuclear protective security and can progress toward technical authority, assurance or leadership.

Nuclear security analystBroader security-analysis role spanning physical, personnel, information and compliance work.
Nuclear security managerOwns the security programme, resources, assurance and regulator relationship rather than one analytical discipline.
Nuclear transport security adviserApplies threat and protective-security judgement to nuclear and radioactive-material movements.
Security-by-design specialistConverts threat and risk into plant, facility and project design requirements.
Vulnerability assessment leadLeads structured assessment of protective-system effectiveness and residual exposure.
Insider threat / personnel security specialistFocuses on trusted-access, behavioural and personnel-security risk.
Protective security consultant (nuclear)Cross-programme advisory route for experienced analysts with regulator and client credibility.
Questions

Questions we get asked every week

How much does a nuclear threat & risk analyst earn in 2026?

TRX models US base pay at $88,000–$108,000 junior, $105,000–$160,000 analyst/senior and $175,000–$220,000 lead/SME.

UK bands run from £38,000–£48,000 junior to £58,000–£90,000 senior/principal and around £110,000 at lead level. These are market-model bands anchored to nuclear security roles and reflect the demand for talent with strong communication skills and familiarity with nuclear threat risk analysis tools.

Do you need security clearance before applying?

Not always. Employers can sponsor vetting where eligible, although an existing clearance can shorten mobilisation. UK roles may require SC or DV; US commercial nuclear uses its own access/protected-information arrangements, while federal work may require Secret, Top Secret or DOE Q.

Clearance never substitutes for assessment experience, research, or collaboration with cross-functional teams including business, finance, and accounting departments.

Do you need a nuclear engineering degree?

No. Security, intelligence, risk, engineering, science, military, police, government-security, or computer science backgrounds can all lead in. You must understand nuclear consequence and facility constraints well enough to make useful threat judgements.

Candidates without nuclear experience normally need supervised work before leading site or design-basis assessments. Mechanical engineering or related disciplines can also provide a strong foundation.

What is the difference between a nuclear threat & risk analyst and a nuclear security analyst?

The threat & risk analyst role is narrower: threat picture, scenario credibility, vulnerabilities, consequences, and residual risk.

A nuclear security analyst covers broader assurance, compliance, personnel security, physical protection, and security-plan work. Smaller teams may combine both, but the hiring filters differ. Both roles encourage innovation and require strong communication skills to file clear reports on investigations and risk assessments.

Is demand strong in 2026?

Yes, particularly in advanced reactors, UK new build, the US operating fleet, and national-security programmes. NRC continues to maintain and review its design-basis threats, while UK nuclear security remains risk-based and informed by government-reviewed threat assessment.

The tightest market combines cleared threat work with nuclear facility knowledge, research capabilities, and the ability to collaborate effectively with employees across departments including supply, business, and finance.

What skill matters most on a nuclear threat & risk analyst CV?

Show a completed assessment and the decision it changed. At a safe level, name the asset/programme, method, stakeholders, information controls, and mitigation or design action.

Recruiters can teach a risk template; judgement about evidence quality, uncertainty, and proportionate response is harder to teach. Applicants seeking roles should also highlight their talent for communication and their familiarity with explosives, space security considerations, and disabilities accommodations where relevant.

Nuclear only

We only recruit in nuclear. That is the whole point.

TRX can separate a genuine nuclear threat/risk profile from a general intelligence, cyber-threat or corporate-security CV, then assess which nuclear security path your evidence fits and what it is worth.