Police Digital Service
NMC Cyber Threat Intelligence Specialist

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Join Police Digital Service as an NMC Cyber Threat Intelligence Specialist
Permanent, Full-Time, Hybrid/Wigan
Starting salary £45,000 per annum.
About Police Digital Service
This is an opportunity to play your part and protect our company, our customers, and our communities from cyber attacks. Be part of a dedicated team and get ready to be challenged every day to make the most of your skills and experience. You'll learn from those around you, and from training and development resources to become even better at what you do. With the best technology at your fingertips, you'll be part of a friendly and flexible working environment where your contribution is always valued.
The National Management Centre provides visibility and control of information risks for Policing. It supports the 24x7x365 nature of the police operations, providing a threat detection and response capability for digital services before, during, and after cyber attacks, enabling stakeholders to understand and proactively manage risk across the technology estate at both the national and force level.
Key Responsibilities
As a member of the Threat Intelligence team, you'll be involved with:
- Developing awareness for the policing community of the cyber risks to critical services by continually assessing the threat landscape and informing stakeholders.
- Reporting cyber risks to service, executive, and operational stakeholders for mitigation decisions.
- Limiting the impact of known cyber risks by engaging forces in pre-incident planning and preparatory activities.
- Constraining attack surfaces through proactive threat intelligence working directly alongside the threat hunting and malware service.
Key Responsibilities
- Provide expertise and support through the use of analytical products to assist mitigation practices at a tactical and operational level.
- Analysis of advanced persistent threats including the tactics, techniques, and procedures (TTPs) of attackers.
- Conduct analysis at a tactical and/or operational level, identifying and using appropriate analytical tools and techniques to interpret gaps, patterns and trends, assess threat, risk, and harm and make recommendations in support of decision making, prioritization, and resource allocation.
- Ability to correlate intelligence from a variety of sources, to develop and lead understanding and analysis of contextually relevant threats.
- To lead independent analysis of projects and the development of materials for specific subjects of concern.
- Ability to work proactively to serve the policing community with limited direct oversight or guidance.
- Perform a broad range of tasks, bringing together output from stakeholders within Cyber SOC, Malware, Threat Hunting, and Vulnerability teams.
- Preparing and delivering analytical alerts, reports, and briefings to stakeholders to provide a clear and concise evidence-based understanding of the subject matter, including providing advice and guidance.
- Provide analysis of threat data from a variety of sources resulting in the generation of actionable threat intelligence.
- Responsible for developing an understanding of the cyber risks facing policing, performing core intelligence tasks focusing on social, cultural, and geopolitical context of cyber intelligence analysis.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
What you need to succeed in the role
- Knowledge of current threat landscape including specific awareness of adversarial cyber actors, including their TTPs.
- Experience in utilising open-source intelligence and the development of tools to assist with this.
- Experience in conducting malware, phishing, and SIEM log analysis.
- Knowledge of relevant cyber threat intelligence sources.
- Demonstrated ability to manage customer relationships.
- Proven ability to translate cyber threats to the relevant audience, both verbally and written.
- Ability to generate clear and concise reports and presentations for stakeholders, from technical analysts to management and senior leadership teams.
- Experience in internal and external stakeholder management and engagement.
- Experience of working in an intelligence environment, ideally as an intelligence researcher or analyst.
- Ability to work independently within a cyber environment with limited oversight and/or guidance.
- Experience within an active cyber incident.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Desirable Experience
- 3+ years of experience in an analytical role with a specific focus on cyber threats (experience in intelligence and research from other areas specifically military or law enforcement encouraged to apply).
- CREST Registered Threat Intelligence Analyst.
- Demonstrated experience in developing and delivering cybercrime or risk reduction recommendations and/or strategies.
- Completed Intelligence Analysis course (e.g. NIAT, RISC UK or similar).
Benefits
You can find out more here: Benefits - Police Digital Service
Diversity, Equity, and Inclusion
We are committed to equal opportunity for all and will not discriminate on any grounds. We encourage applications from people from the widest possible span of experience. We particularly welcome applications from Black, Asian, and Minority Ethnic (BAME) candidates and people with disabilities.
Working Arrangements
At the NMC, you will benefit from hybrid working, getting the advantages of both face-to-face team engagement and home working. NMC employees have the opportunity to work in our new modern office environment for in-person collaboration, however you will also get the opportunity to work from home 2 days a week.
All applicants must be eligible for NPPV3 and SC clearances. Successful applicants will require NPPV3 clearance to have been approved before starting with PDS.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills