Senior Information Security Engineer

1 Day ago • 6 Years + • Cyber Security

Job Summary

Job Description

WHOOP is seeking a Senior Information Security Engineer to design, implement, and monitor security measures to protect its systems, networks, and data. The role involves serving as a technical lead on security initiatives, collaborating with various teams to reduce risk, and improving security controls and automation. Responsibilities include leading complex security assessments, vulnerability testing, and incident response efforts. The engineer will also lead cloud security governance, focusing on AWS best practices, and collaborate on secure software development. Key tasks include overseeing IAM architecture, securing applications, guiding the deployment of security tools, and leading vulnerability remediation. Additionally, the role involves mentoring team members, promoting a security-first culture, tracking emerging threats, and continuously improving security operations. This position requires continuous learning and adaptation to evolving security threats.
Must have:
  • Technical lead for security initiatives
  • Design, implement, and improve security controls
  • Lead security assessments and vulnerability testing
  • Drive incident response efforts
  • Lead cloud security governance (AWS)
  • Oversee IAM architecture and policies
  • Guide security tool deployment
  • Lead vulnerability remediation
  • Mentor team members
  • Promote security-first culture
  • Track emerging threats and strategies
  • Bachelor's degree in CS or related field
  • 6+ years in Information Security
  • 2+ years in senior/lead capacity
  • Experience with advanced security technologies
  • Strong cloud security architecture understanding
  • Demonstrated leadership in incident response
  • Excellent communication and interpersonal skills
  • Strong project management skills
Good to have:
  • Experience with CASB, CNAPP, CSPM, SIEM, SOAR, DLP, SWG
  • Experience with Azure, GCP
  • Experience performing threat modeling
  • Experience in a fast-paced environment
  • Familiarity with ticketing systems like Jira
  • Solid documentation and operational tracking skills

Job Details

At WHOOP, we're on a mission to unlock human performance. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.

WHOOP is seeking a Senior Information Security Engineer to join our team, reporting to our Information Security Manager. In this role you will design, implement, administer, and monitor security measures to protect WHOOP systems, networks, and data from security threats. Success in this role requires continuous learning and adaptation to guard against ever-evolving security threats.

RESPONSIBILITIES:

    • Serve as a technical lead and subject matter expert on key security initiatives and cross-functional projects, collaborating with IT, GRC, Software, and other stakeholders to reduce risk across the organization.
    • Design, implement, and continuously improve security controls, automation, and monitoring solutions to protect WHOOP systems, infrastructure, and data at scale.
    • Lead and execute complex security assessments, vulnerability testing, and risk analysis efforts, providing recommendations and driving remediation plans.
    • Drive incident response efforts, including investigation, coordination, containment, remediation, root cause analysis, and post-incident reviews.
    • Lead cloud security governance, focusing on AWS security best practices including IAM, networking, encryption, and threat detection.
    • Collaborate on secure software development practices in partnership with Product Security and Software teams.
    • Oversee and enhance IAM architecture and policies, including SSO, SCIM, MFA, RBAC, and user lifecycle management.
    • Provide technical leadership in securing IaaS/PaaS and SaaS applications by defining best practices, conducting reviews, and hardening security controls.
    • Guide the deployment, integration, and tuning of security tools such as CASB, EDR, DLP, SIEM, CNAPP, and MDM solutions to maximize effectiveness and coverage.
    • Lead efforts to identify, triage, prioritize, and support the remediation of vulnerabilities across cloud environments, infrastructure, and SaaS platforms.
    • Lead and mentor team members by providing guidance on security best practices, project execution, work review, and knowledge sharing.
    • Promote a culture of security-first thinking across engineering, IT, and product teams by driving awareness, training, and secure development practices.
    • Track emerging threats, technologies, and regulatory changes; propose and drive forward-looking security strategies to ensure WHOOP maintains a resilient security posture.
    • Continuously assess and improve security operations, workflows, and tooling to meet evolving business and security requirements.
    • Participate in and help improve the on-call rotation to support critical security incidents, offering guidance and escalation support as needed.

QUALIFICATIONS:

    • Bachelor’s degree in Computer Science, Information Security, or a related technical field.
    • 6+ years of hands-on experience in Information Security, IT Security, or a related role, including at least 2 years in a senior or lead capacity.
    • Proven track record implementing and managing advanced security technologies (e.g., CASB, CNAPP, CSPM, SIEM, SOAR, DLP, SWG).
    • Strong understanding of modern cloud security architecture (AWS, Azure, GCP) and experience performing threat modeling and risk assessments on cloud-based systems.
    • Demonstrated leadership in security incident response, investigations, and root cause analysis.
    • Excellent communication and interpersonal skills with the ability to influence stakeholders and explain security concepts to technical and non-technical audiences.
    • Strong project management skills and the ability to drive initiatives to completion in a fast-paced environment.
    • Experience mentoring junior engineers and promoting best practices across teams.
    • Solid documentation and operational tracking skills with familiarity with ticketing systems such as Jira.

Interested in the role, but don’t meet every qualification? We encourage you to still apply! At WHOOP, we believe there is much more to a candidate than what is written on paper, and we value character as much as experience. As we continue to build a diverse and inclusive environment, we encourage anyone who is interested in this role to apply.

WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility.  It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Similar Jobs

adictiz - Data engineering | Data scientist

adictiz

Lille, Hauts-de-France, France (On-Site)
2 Months ago
Globalization Partners - Software Engineering Manager

Globalization Partners

Ireland (Remote)
1 Month ago
NCR Voyix - SAS Level 1 Support

NCR Voyix

Cebu City, Central Visayas, Philippines (On-Site)
1 Month ago
EvenUp - Lead Technical Support Analyst

EvenUp

United States (Remote)
1 Week ago
Nagarro - Senior Cloud Consultant

Nagarro

Germany (Remote)
3 Months ago
PayPal - Staff Software Security Engineer

PayPal

Chicago, Illinois, United States (On-Site)
2 Days ago
Yodlee - Information Security Analyst/ Analyst – Identity Governance and Compliance

Yodlee

Thiruvananthapuram, Kerala, India (On-Site)
5 Days ago
Survay Monkey - Software Engineer II - Security Engineering

Survay Monkey

Ottawa, Ontario, Canada (Hybrid)
1 Week ago
Nintendo - Intern - IT Security

Nintendo

Redmond, Washington, United States (On-Site)
8 Months ago
Motorola solutions - Senior Sales Engineer - Gulf States - Video Security & Access Control (VS&A)

Motorola solutions

United States (On-Site)
1 Week ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Rackner - Cloud Architect

Rackner

Washington, District Of Columbia, United States (Remote)
2 Months ago
Sumo logic - Talent Pipeline - Sales

Sumo logic

United States (Remote)
2 Weeks ago
Palo Alto Networks - AR Accountant

Palo Alto Networks

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago
entrata - Team Lead

entrata

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
5 Months ago
ClimateCamp - Software Engineering Internship

ClimateCamp

Belgium (Hybrid)
5 Days ago
Eve  - RevOps & GTM Systems Engineer

Eve

United States (Remote)
3 Months ago
attentive - Manager, Solutions Marketing

attentive

United States (Remote)
3 Weeks ago
Miro - Senior Strategic Customer Success Manager

Miro

Los Angeles, California, United States (On-Site)
4 Days ago
Coupa - Change Management Consultant

Coupa

Bogota, Colombia (Hybrid)
1 Month ago
USE Insider - Field Marketing Manager - Brazil

USE Insider

State Of São Paulo, Brazil (Hybrid)
6 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Boston, Massachusetts, United States

Motorola solutions - Presale Engineer

Motorola solutions

Linthicum Heights, Maryland, United States (On-Site)
1 Day ago
SimpliSafe - Outdoor Security Monitoring Specialist Evening/Overnight Shifts

SimpliSafe

Richmond, Virginia, United States (On-Site)
2 Months ago
Visa - Senior Product Manager

Visa

Ashburn, Virginia, United States (Hybrid)
3 Days ago
Postman - Technical Enterprise Customer Success Manager - Spanish Speaking

Postman

San Francisco, California, United States (Hybrid)
3 Weeks ago
Apple - AC/DC Design Engineer – Power Electronics

Apple

Austin, Texas, United States (On-Site)
1 Month ago
Square - Certified Medical Assistant

Square

Warrenville, Illinois, United States (On-Site)
2 Days ago
Ziff Davis - Director of Technical SEO

Ziff Davis

Los Angeles, California, United States (Remote)
3 Days ago
Google - Software Engineer, Embedded Systems, Debug and Trace

Google

Mountain View, California, United States (On-Site)
3 Days ago
Car Gurus - Senior JavaScript Engineer, React Native

Car Gurus

Boston, Massachusetts, United States (Hybrid)
1 Month ago
Moloco - Senior Software Engineer, Ads Infrastructure - Supply

Moloco

Seattle, Washington, United States (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

bytedance - Senior Software Engineer, Anti-DDoS - Network Security

bytedance

San Jose, California, United States (On-Site)
3 Months ago
Aledade - Staff Security Engineer (IAM)

Aledade

United States (Remote)
4 Months ago
Ion - Junior Cyber Security Analyst

Ion

Pisa, Tuscany, Italy (Hybrid)
9 Months ago
Ion - Vulnerability Management Analyst

Ion

London, England, United Kingdom (On-Site)
3 Weeks ago
Canonical - Security Software Engineer

Canonical

(Remote)
2 Months ago
FICO - Cyber Security Engineer II (Vulnerability Management/ Qualys)

FICO

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Cadence - Sr. Software Security Engineer

Cadence

Cork, County Cork, Ireland (On-Site)
1 Month ago
Veeam Software - Application Security Engineer

Veeam Software

Prague, Czechia (Remote)
2 Months ago
rivos - Security Infrastructure Engineer

rivos

Santa Clara, California, United States (Hybrid)
2 Years ago
kaizen gaming  - Senior Information Security Engineer

kaizen gaming

Athens, Greece (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

View All Jobs

Get notified when new jobs are added by whoop

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug