Security Engineer, IAM

Whoop
Boston
Workplace: OnsiteFull timeUSD 130,000 - 170,000 annuallyFunction: CybersecurityExperience: 3+ yearsEducation: bachelorsSkills: []

Design, implement, and continuously improve identity and access management controls that secure WHOOP’s SaaS platforms, production cloud environments, and internal applications. Own authentication/authorization patterns including SSO, MFA, conditional access, RBAC/ABAC, and SCIM provisioning, while partnering with Engineering and GRC to harden identity integrations. Support AWS IAM security, privileged access and identity lifecycle controls, identity monitoring, and incident response for credential or access events.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Whoop
Whoop
1 week ago

Security Engineer, IAM

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Design, implement, and continuously improve identity and access management controls that secure WHOOP’s SaaS platforms, production cloud environments, and internal applications. Own authentication/authorization patterns including SSO, MFA, conditional access, RBAC/ABAC, and SCIM provisioning, while partnering with Engineering and GRC to harden identity integrations. Support AWS IAM security, privileged access and identity lifecycle controls, identity monitoring, and incident response for credential or access events.
Location: Boston
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Implement authentication and authorization controls across SaaS platforms, cloud infrastructure, and internal applications.
  • •Configure and maintain SSO, MFA, conditional access, and federation integrations; evolve zero trust access models.
  • •Design and enforce RBAC/ABAC access control models across cloud and SaaS systems.
  • •Validate identity provider integrations including application onboarding and SCIM provisioning.
  • •Support AWS IAM security, privileged access and identity lifecycle controls, identity monitoring/detection, and identity-related incident response.

Pay and Benefits

Salary: USD 130,000 - 170,000 annually
Equity and Bonus:Equity

Key Requirements

  • •3+ years of experience in IAM engineering or identity architecture.
  • •Hands-on experience with enterprise identity providers such as Okta or Azure AD.
  • •Strong understanding of authentication/authorization protocols including SAML, OAuth 2.0, OIDC, SCIM, and JWT.
  • •Experience designing and implementing RBAC and/or ABAC models in cloud-native environments.
  • •Bachelor’s degree in Computer Science/Cybersecurity (or equivalent practical experience), with relevant certifications (e.g., CISSP, CISM, GIAC, AWS Security Specialty, Okta Certified Professional).
Experience:3+ yearsIdentityCloud-nativeSaaSEnterprise IAM
Education:Bachelor's in Computer Science, Cybersecurity, or related field
Certifications:CISSPCISMGIACAWS Security SpecialtyOkta Certified Professional
Tech Stack:AWS IAMOktaAzure ADSAMLOAuth 2.0OIDCSCIMJWTRBACABACPythonTerraformISO 27001SOC 2PCI DSSGDPRSCIM provisioningCI/CD

Company Brief

Whoop
Whoop designs and sells a subscription-based wearable fitness tracker and analytics platform that monitors recovery, strain, and sleep to optimize athletic performance and daily health for consumers and professional athletes.
Industry: Wearables
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: Boston, United States
Founded: 2012
WebsiteLinkedIn