Manager, Threat Intelligence
Listed on 2026-10-04
-
IT/Tech
Cybersecurity
At PDI Technologies, we empower some of the world's leading convenience retail and petroleum brands with cutting-edge technology solutions that drive growth and operational efficiency.
By “Connecting Convenience” across the globe, we empower businesses to increase productivity, make more informed decisions, and engage faster with customers through loyalty programs, shopper insights, and unmatched real-time market intelligence via mobile applications, such as Gas Buddy. We’re a global team committed to excellence, collaboration, and driving real impact. Explore our opportunities and become part of a company that values diversity, integrity, and growth.
Every day, millions of people buy fuel, coffee, and lunch at the businesses PDI protects. Convenience stores, fuel stations, quick-service restaurants, and automotive businesses run on payment systems, point-of-sale networks, and connected site equipment, and financially motivated attackers know it.
We're looking for an experienced leader to own threat intelligence, threat hunting, and detection engineering for our SOC. You'll build the clearest picture anywhere of who targets these industries and how, then turn it into detections, hunts, and guidance that protects 12,000+ customers.
This isn't an internal intel team serving one company. Your team's work ships to every customer we protect, and you'll have real room to build the program the way you think it should run.
Why this role stands out- A threat landscape you can own. Payment card theft, POS malware, ransomware against franchise networks, and attacks on connected forecourt and in-store systems. Few teams anywhere specialize here.
- A straight line from intel to impact. Your team writes the intelligence and the detections. You'll see your work stop real attacks across many customer environments.
- Room to build. Shape the methodology, tooling, and AI-assisted workflows rather than inheriting someone else's playbook.
- Visibility. Brief customer executives, partner with SOC, product, and company leaders, and represent PDI in industry and intelligence-sharing communities.
- Hire, coach, and develop a remote team of analysts, hunters, and detection engineers, with clear priorities and career paths.
- With a team of four, you'll split your time between leading and doing: hunting, writing intelligence, and building detections alongside the team.
- Partner with SOC, Incident Response, and Security Engineering leaders to improve detection, response, and customer outcomes.
- Define intelligence requirements with SOC leadership and customers and run the full intelligence lifecycle from collection through feedback.
- Deliver strategic, operational, and tactical products: actor profiles, campaign analysis, industry threat briefs, and customer-specific reports.
- Track the actors that matter most to our customers, including financially motivated groups, payment fraud operations, and ransomware crews targeting retail and hospitality.
- Own detection content strategy across SIEM and EDR/XDR, including development, testing, tuning, and coverage measured against MITRE ATT&CK.
- Run hypothesis-driven threat hunts across customer environments and feed what you find back into new detections.
- Use automation and AI to scale enrichment, triage support, and reporting so the team can focus on analysis, not busywork.
- Provide intelligence context during major incidents and lead during complex escalations.
- Serve as a trusted advisor to customers through briefings, reports, and presentations for both technical and executive audiences.
- Run the team on clear metrics such as detection coverage,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).