Senior Information Security Engineer

1 Month ago • 6 Years + • Cyber Security

Job Summary

Job Description

WHOOP is seeking a Senior Information Security Engineer to design, implement, and monitor security measures to protect its systems, networks, and data. The role involves serving as a technical lead on security initiatives, collaborating with various teams to reduce risk, and improving security controls and automation. Responsibilities include leading complex security assessments, vulnerability testing, and incident response efforts. The engineer will also lead cloud security governance, focusing on AWS best practices, and collaborate on secure software development. Key tasks include overseeing IAM architecture, securing applications, guiding the deployment of security tools, and leading vulnerability remediation. Additionally, the role involves mentoring team members, promoting a security-first culture, tracking emerging threats, and continuously improving security operations. This position requires continuous learning and adaptation to evolving security threats.
Must have:
  • Technical lead for security initiatives
  • Design, implement, and improve security controls
  • Lead security assessments and vulnerability testing
  • Drive incident response efforts
  • Lead cloud security governance (AWS)
  • Oversee IAM architecture and policies
  • Guide security tool deployment
  • Lead vulnerability remediation
  • Mentor team members
  • Promote security-first culture
  • Track emerging threats and strategies
  • Bachelor's degree in CS or related field
  • 6+ years in Information Security
  • 2+ years in senior/lead capacity
  • Experience with advanced security technologies
  • Strong cloud security architecture understanding
  • Demonstrated leadership in incident response
  • Excellent communication and interpersonal skills
  • Strong project management skills
Good to have:
  • Experience with CASB, CNAPP, CSPM, SIEM, SOAR, DLP, SWG
  • Experience with Azure, GCP
  • Experience performing threat modeling
  • Experience in a fast-paced environment
  • Familiarity with ticketing systems like Jira
  • Solid documentation and operational tracking skills

Job Details

At WHOOP, we're on a mission to unlock human performance. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.

WHOOP is seeking a Senior Information Security Engineer to join our team, reporting to our Information Security Manager. In this role you will design, implement, administer, and monitor security measures to protect WHOOP systems, networks, and data from security threats. Success in this role requires continuous learning and adaptation to guard against ever-evolving security threats.

RESPONSIBILITIES:

    • Serve as a technical lead and subject matter expert on key security initiatives and cross-functional projects, collaborating with IT, GRC, Software, and other stakeholders to reduce risk across the organization.
    • Design, implement, and continuously improve security controls, automation, and monitoring solutions to protect WHOOP systems, infrastructure, and data at scale.
    • Lead and execute complex security assessments, vulnerability testing, and risk analysis efforts, providing recommendations and driving remediation plans.
    • Drive incident response efforts, including investigation, coordination, containment, remediation, root cause analysis, and post-incident reviews.
    • Lead cloud security governance, focusing on AWS security best practices including IAM, networking, encryption, and threat detection.
    • Collaborate on secure software development practices in partnership with Product Security and Software teams.
    • Oversee and enhance IAM architecture and policies, including SSO, SCIM, MFA, RBAC, and user lifecycle management.
    • Provide technical leadership in securing IaaS/PaaS and SaaS applications by defining best practices, conducting reviews, and hardening security controls.
    • Guide the deployment, integration, and tuning of security tools such as CASB, EDR, DLP, SIEM, CNAPP, and MDM solutions to maximize effectiveness and coverage.
    • Lead efforts to identify, triage, prioritize, and support the remediation of vulnerabilities across cloud environments, infrastructure, and SaaS platforms.
    • Lead and mentor team members by providing guidance on security best practices, project execution, work review, and knowledge sharing.
    • Promote a culture of security-first thinking across engineering, IT, and product teams by driving awareness, training, and secure development practices.
    • Track emerging threats, technologies, and regulatory changes; propose and drive forward-looking security strategies to ensure WHOOP maintains a resilient security posture.
    • Continuously assess and improve security operations, workflows, and tooling to meet evolving business and security requirements.
    • Participate in and help improve the on-call rotation to support critical security incidents, offering guidance and escalation support as needed.

QUALIFICATIONS:

    • Bachelor’s degree in Computer Science, Information Security, or a related technical field.
    • 6+ years of hands-on experience in Information Security, IT Security, or a related role, including at least 2 years in a senior or lead capacity.
    • Proven track record implementing and managing advanced security technologies (e.g., CASB, CNAPP, CSPM, SIEM, SOAR, DLP, SWG).
    • Strong understanding of modern cloud security architecture (AWS, Azure, GCP) and experience performing threat modeling and risk assessments on cloud-based systems.
    • Demonstrated leadership in security incident response, investigations, and root cause analysis.
    • Excellent communication and interpersonal skills with the ability to influence stakeholders and explain security concepts to technical and non-technical audiences.
    • Strong project management skills and the ability to drive initiatives to completion in a fast-paced environment.
    • Experience mentoring junior engineers and promoting best practices across teams.
    • Solid documentation and operational tracking skills with familiarity with ticketing systems such as Jira.

Interested in the role, but don’t meet every qualification? We encourage you to still apply! At WHOOP, we believe there is much more to a candidate than what is written on paper, and we value character as much as experience. As we continue to build a diverse and inclusive environment, we encourage anyone who is interested in this role to apply.

WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility.  It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Similar Jobs

Optery - Senior Product Marketing Manager

Optery

United States (Remote)
1 Month ago
Cognite - Senior Solution Architect

Cognite

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (Remote)
3 Months ago
HHA Exchange - Customer Success Manager, Enterprise

HHA Exchange

Minneapolis, Minnesota, United States (Hybrid)
1 Month ago
DataVisor - Senior Technical Account Manager (TAM)

DataVisor

Ireland (On-Site)
3 Weeks ago
Rippling - Account Manager - Mid-Market, Growth & Retention (Partner Referred Business)

Rippling

San Francisco, California, United States (On-Site)
2 Months ago
HP - AI Security Research Engineer

HP

Bristol, England, United Kingdom (On-Site)
1 Year ago
Aera Technology - Lead Security Operations Engineer

Aera Technology

Bucharest, Bucharest, Romania (Hybrid)
7 Months ago
Imanage - Sales Information Security & Compliance Specialist

Imanage

Chicago, Illinois, United States (Remote)
3 Weeks ago
Alation - Cybersecurity Engineer

Alation

Chennai, Tamil Nadu, India (Hybrid)
1 Month ago
Morning Star - Senior Security Engineer

Morning Star

Chicago, Illinois, United States (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

bytedance - [JP] Partnership Manager - BytePlus

bytedance

Tokyo, Japan (On-Site)
9 Months ago
BigID - GSI Alliances Manager

BigID

London, England, United Kingdom (Remote)
1 Month ago
EveryMatrix - Senior Account Manager - Africa

EveryMatrix

Cape Town, Western Cape, South Africa (Hybrid)
3 Months ago
Nightfall AI - Backend Software Engineer

Nightfall AI

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Sailpoint - Senior SDET

Sailpoint

Mexico (Remote)
1 Year ago
 Many Chat  Inc  - Director of Partnerships

Many Chat Inc

Austin, Texas, United States (Hybrid)
3 Weeks ago
Cognite - Principal Product Designer

Cognite

Oslo, Oslo, Norway (Hybrid)
1 Month ago
EvenUp - Customer Success Manager, SMB

EvenUp

United States (Remote)
3 Weeks ago
Trueplay - Partnership Manager

Trueplay

(Remote)
1 Month ago
ISS Stoxx - Executive Compensation Analyst (Equity Plan Review & Analysis)

ISS Stoxx

Makati City, Metro Manila, Philippines (Hybrid)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Boston, Massachusetts, United States

Apollo - Go To Market Business Systems Engineer

Apollo

United States (Remote)
1 Month ago
160over90 - Director, Strategy

160over90

Beverly Hills, California, United States (On-Site)
2 Months ago
Shield AI - Senior Staff Autonomy Engineer, Planning (R2879)

Shield AI

San Diego, California, United States (Remote)
3 Weeks ago
Apple - Senior Creative Gameplay Engineer

Apple

Cupertino, California, United States (On-Site)
1 Month ago
rivos - Silicon Verification - Intern

rivos

Santa Clara, California, United States (On-Site)
10 Months ago
Internet Brands - Digital Marketing Solution Consultant

Internet Brands

United States (On-Site)
3 Months ago
Apple - Security Server Application Engineer

Apple

Sunnyvale, California, United States (On-Site)
2 Months ago
Google - Program Manager II, Demand Planning, Cloud Supply Chain

Google

Atlanta, Georgia, United States (On-Site)
3 Months ago
bytedance - Experienced Enterprise Internal Control Partner - E-commerce

bytedance

Seattle, Washington, United States (On-Site)
3 Months ago
Pattern - Security Architect

Pattern

Lehi, Utah, United States (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Loft Orbital - Senior Security Engineer

Loft Orbital

Golden, Colorado, United States (Remote)
1 Month ago
Epic Games - Backend Security Engineer (Asset Integrity)

Epic Games

Porto Alegre, State Of Rio Grande Do Sul, Brazil (On-Site)
4 Months ago
Varonis  - Junior Security Analyst

Varonis

Morrisville, North Carolina, United States (On-Site)
3 Months ago
Epic Games - Senior Security Engineer - Asset Integrity

Epic Games

Porto Alegre, State Of Rio Grande Do Sul, Brazil (On-Site)
4 Months ago
Yodlee - Security Analyst

Yodlee

Berwyn, Pennsylvania, United States (Hybrid)
3 Weeks ago
Uniswap Labs - Application Security Engineer

Uniswap Labs

New York, United States (Hybrid)
3 Months ago
Kavalirio - Cyber Security Architect

Kavalirio

Orlando, Florida, United States (On-Site)
2 Months ago
Adobe - Senior Cyber Defense Analyst

Adobe

Sydney, New South Wales, Australia (On-Site)
3 Months ago
Twitch - Senior Security Engineer

Twitch

Irvine, California, United States (On-Site)
1 Month ago
Take-Two Interactive - Senior Application Security Engineer

Take-Two Interactive

Texas, United States (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Berlin, Berlin, Germany (Remote)

Boston, Massachusetts, United States (On-Site)

View All Jobs

Get notified when new jobs are added by whoop

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug