1,059,896open jobs
62,082companies
176,030added this week
Browse all
Salary
≈ $115k – $209k per year (Estimated)
Location
Remote (United States)
Seniority
Staff · 8+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 2, 2026. First seen by Alion on Oct 1, 2026.

Overview
Company
Impact
Profile match
PDI Technologies is an enterprise software company headquartered in Alpharetta, Georgia, and founded in 1983. The company sells back office, fuel pricing, logistics, loyalty, and payments software to convenience retailers, fuel wholesalers, and petroleum distributors. It serves a large share of the North American convenience store market and has expanded internationally through a long series of acquisitions.

Every day, millions of people buy fuel, coffee, and lunch at the businesses PDI protects. Convenience stores, fuel stations, quick-service restaurants, and automotive businesses run on payment systems, point-of-sale networks, and connected site equipment, and financially motivated attackers know it.

We're looking for an experienced leader to own threat intelligence, threat hunting, and detection engineering for our SOC. You'll build the clearest picture anywhere of who targets these industries and how, then turn it into detections, hunts, and guidance that protects 12,000+ customers.

This isn't an internal intel team serving one company. Your team's work ships to every customer we protect, and you'll have real room to build the program the way you think it should run.

Why this role stands out

  • A threat landscape you can own. Payment card theft, POS malware, ransomware against franchise networks, and attacks on connected forecourt and in-store systems. Few teams anywhere specialize here.
  • A straight line from intel to impact. Your team writes the intelligence and the detections. You'll see your work stop real attacks across many customer environments.
  • Room to build. Shape the methodology, tooling, and AI-assisted workflows rather than inheriting someone else's playbook.
  • Visibility. Brief customer executives, partner with SOC, product, and company leaders, and represent PDI in industry and intelligence-sharing communities.

What you'll own

    Lead and grow the team

    • Hire, coach, and develop a remote team of analysts, hunters, and detection engineers, with clear priorities and career paths.
    • With a team of four, you'll split your time between leading and doing: hunting, writing intelligence, and building detections alongside the team.
    • Partner with SOC, Incident Response, and Security Engineering leaders to improve detection, response, and customer outcomes.
    • Build the intelligence program

      • Define intelligence requirements with SOC leadership and customers and run the full intelligence lifecycle from collection through feedback.
      • Deliver strategic, operational, and tactical products: actor profiles, campaign analysis, industry threat briefs, and customer-specific reports.
      • Track the actors that matter most to our customers, including financially motivated groups, payment fraud operations, and ransomware crews targeting retail and hospitality.
      • Turn intelligence into detection

        • Own detection content strategy across SIEM and EDR/XDR, including development, testing, tuning, and coverage measured against MITRE ATT&CK.
        • Run hypothesis-driven threat hunts across customer environments and feed what you find back into new detections.
        • Use automation and AI to scale enrichment, triage support, and reporting so the team can focus on analysis, not busywork.
        • Step in when it matters

          • Provide intelligence context during major incidents and lead during complex escalations.
          • Be the voice of the team

            • Serve as a trusted advisor to customers through briefings, reports, and presentations for both technical and executive audiences.
            • Run the team on clear metrics such as detection coverage, hunt findings, reporting timeliness, and customer satisfaction, and contribute to service planning and new offerings.

What success looks like

    • First 90 days: Assess the team, tooling, and current detection coverage. Agree on intelligence requirements with SOC leadership and key customers.
    • By 6 months: A regular cadence of industry threat reporting, plus an ATT&CK coverage baseline and roadmap.
    • By 12 months: Measurable gains in detection coverage and hunt-driven findings, and a team customers see as the go-to source on threats to their industry.

What you bring

    Required

    • 8+ years in cybersecurity across threat intelligence, threat hunting, incident response, detection engineering, or security operations.
    • 3+ years managing technical security teams, including hiring and developing people.
    • Deep knowledge of adversary tactics and the frameworks used to analyze them, such as MITRE ATT&CK, the intelligence lifecycle, and the Diamond Model.
    • A track record of producing finished intelligence for both technical and executive audiences.
    • Hands-on experience with SIEM (FortiSIEM, Microsoft Sentinel, Splunk, Google Chronicle, or ArcSight) and EDR/XDR platforms and their query languages (KQL, SPL, or similar). Our environment includes FortiSIEM; equivalent experience is welcome.
    • Experience supporting complex investigations and incident response.
    • Excellent written, verbal, and presentation communication skills.
    • Clear writing and speaking skills, with the ability to translate technical findings into business risk.
    • Nice to have

      • Experience at an MSSP or MDR provider serving many customers.
      • Background in retail, hospitality, or payments environments, including POS systems or PCI DSS.
      • Detection-as-code, Sigma, SOAR, or scripting (e.g., Python).
      • Experience with threat intelligence platforms and feeds, such as MISP or Recorded Future.
      • Cloud and SaaS investigations across Azure, AWS, or Microsoft 365.
      • Active involvement in intelligence-sharing communities such as RH-ISAC.
      • Certifications such as GCTI, GCFA, GCIH, GREM, or CISSP are welcome but not required.
      • A bachelor's degree in a related field or equivalent experience. If you're close on the requirements and excited about the work, we'd still like to hear from you.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,059,896 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
≈ $106k – $208k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Little Rock
DevOps
Splunk
GCP
Azure
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
Microsoft Sentinel
NIST CSF
SIEM
Apply
≈ $148k – $263k per year (Estimated) • Remote (United States) • 10+ years exp • Bachelor's Degree
DevOps
Azure
AWS
Cybersecurity
Zero Trust
Apply
≈ $108k – $211k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Tampa
Cybersecurity
ISO 27001
PCI DSS
GDPR
HIPAA
Management
ITIL
Apply
$90k – $185k per year • In office • Secret • 7+ years exp • High School Diploma • Bedford
DevOps
CI/CD
Cybersecurity
PKI
Management
Agile
Apply
$101k – $168k per year • Equity • In office • Full-Time • 5+ years exp • Bachelor's Degree • Charlotte • New York • San Diego • Austin • Tempe
JavaScript
Java
TypeScript
C#
Frontend
Angular
React.js
DevOps
Rest API
CI/CD
Cybersecurity
OWASP Top 10
QA
Postman
Apply
≈ $114k – $224k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Austin
DevOps
GCP
PagerDuty
Azure
AWS
Cybersecurity
Zscaler
MITRE ATT&CK
Zero Trust
Apply
$130k – $180k per year • In office • 7+ years exp • Bachelor's Degree • McLean
Python
Ruby
PowerShell
DevOps
Rest API
Terraform
Ansible
Chef
CloudFormation
Git
AWS
Bitbucket
GitHub
GitLab
Cybersecurity
Zero Trust
Threat Modeling
SIEM
Management
Agile
Apply
$110k – $155k per year • In office • 5+ years exp • Bachelor's Degree • McLean
Python
Ruby
PowerShell
DevOps
Rest API
Terraform
Ansible
GCP
Chef
CloudFormation
Azure
Git
AWS
Concourse
Bitbucket
GitHub
GitLab
Cybersecurity
Zero Trust
Threat Modeling
SIEM
Management
Agile
Apply
$140k – $170k per year • In office • 5+ years exp • Bachelor's Degree • McLean
DevOps
Splunk
CI/CD
Git
Management
Agile
Apply
$85k – $170k per year • In office • 5+ years exp • Bachelor's Degree • McLean
DevOps
Splunk
IAM
Cybersecurity
Crowdstrike
Wiz
Least Privilege
Tanium
Apply
Senior Counsel 2 days ago
≈ $103k – $234k per year (Estimated) • Hybrid • Full-Time • 6+ years exp • Alpharetta
Apply
≈ $91k – $190k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Alpharetta
SQL
C#
Apex
C#
ASP.NET Core
Apex
Lightning Web Components
Visualforce
DevOps
Rest API
CI/CD
SOAP
Analytics
ETL/ELT
Management
Agile
Apply
≈ $17k – $39k per year (Estimated) • In office • Full-Time • 10+ years exp • PhD • Chennai
Databases
Apache Kafka
DevOps
Terraform
Helm
OpenTofu
Rancher
Datadog
Azure
CI/CD
GitOps
ArgoCD
Jenkins
AWS
Kubernetes
Blue-Green Deployment
Argo Workflows
Progressive Delivery
Cybersecurity
PCI DSS
Apply
DevOps Engineer IV 4 days ago
≈ $17k – $37k per year (Estimated) • In office • Full-Time • 10+ years exp • PhD • Hyderabad
Python
Go
TypeScript
PowerShell
AI/ML
AI Agents
AWS Bedrock
OpenAI
Human-in-the-Loop
LLM Guardrails
DevOps
Terraform
OpenTofu
Azure
CI/CD
GitOps
ArgoCD
AWS
Kubernetes
Platform Engineering
Amazon EKS
Azure AKS
Progressive Delivery
FinOps
IAM
Cybersecurity
Least Privilege
Apply
DevOps Engineer III 4 days ago
≈ $11k – $29k per year (Estimated) • In office • Full-Time • 7+ years exp • PhD • Hyderabad
Python
Go
TypeScript
PowerShell
AI/ML
AI Agents
AWS Bedrock
LLM
OpenAI
Human-in-the-Loop
LLM Guardrails
DevOps
Terraform
Ansible
Helm
Azure DevOps
GitHub Actions
OpenTofu
Datadog
Prometheus
Azure
CI/CD
GitOps
ArgoCD
Jenkins
Git
AWS
Docker
Kubernetes
Grafana
Platform Engineering
Configuration Management
Amazon EKS
Azure AKS
AWS Lambda
Amazon EC2
Progressive Delivery
FinOps
Amazon S3
IAM
Amazon ECS
Amazon CloudWatch
DNS
Cybersecurity
SonarQube
Trivy
Management
Agile
Scrum
Apply
See all jobs
This is one of many
1,059,896 more open roles from verified company boards, updated every day.