Director, Information Security

Whoop
Boston
Workplace: OnsiteFull timeUSD 190,000 - 220,000 annuallyFunction: CybersecurityExperience: 10+ yearsSkills: ["Leadership","Incident response","Crisis management","Prioritization","Execution"]

Lead the execution of security engineering and day-to-day security operations, managing an existing security team and evolving the security operating model as WHOOP scales. Translate regulatory, privacy, and risk requirements into auditable technical controls aligned with secure-by-design architecture. Own incident response and operational readiness, drive SOPs/metrics/automation to scale reliability, and set the security posture for enterprise AI use.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Whoop
Whoop
3 weeks ago

Director, Information Security

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Lead the execution of security engineering and day-to-day security operations, managing an existing security team and evolving the security operating model as WHOOP scales. Translate regulatory, privacy, and risk requirements into auditable technical controls aligned with secure-by-design architecture. Own incident response and operational readiness, drive SOPs/metrics/automation to scale reliability, and set the security posture for enterprise AI use.
Location: Boston
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Director level

Key Responsibilities

  • •Lead the Information Security function, accountable for security engineering delivery, day-to-day security operations, and the evolving operating model.
  • •Translate regulatory, privacy, and risk requirements into effective, auditable technical controls aligned with secure-by-design principles.
  • •Own security operations including detection, response, escalation, incident follow-up, and operational readiness as Incident Commander.
  • •Establish and maintain SOPs, metrics, automation, and process improvements to measure effectiveness, reduce risk, and scale operations.
  • •Own the security posture for enterprise AI technologies, including access/data guardrails, monitoring, auditability, and secure adoption of AI-enabled workflows.

Pay and Benefits

Salary: USD 190,000 - 220,000 annually
Equity and Bonus:Equity

Key Requirements

  • •10+ years of experience in information security, security engineering, or security operations, including 5+ years managing managers and senior individual contributors.
  • •Experience hiring, developing, and holding security teams accountable using measurable goals, repeatable processes, and clear documentation.
  • •Proven leadership during high-impact security incidents and crisis situations, coordinating internal teams and external partners.
  • •Experience designing, building, or scaling security programs grounded in metrics, automation, and operational rigor.
  • •Familiarity with regulatory frameworks including HIPAA, GDPR, PCI, and emerging AI-related compliance requirements.
Experience:10+ yearsHealthcareRegulated technology
Skills:LeadershipIncident responseCrisis managementPrioritizationExecution
Certifications:CISSPCISM
Tech Stack:HIPAAGDPRPCI

Company Brief

Whoop
Whoop designs and sells a subscription-based wearable fitness tracker and analytics platform that monitors recovery, strain, and sleep to optimize athletic performance and daily health for consumers and professional athletes.
Industry: Wearables
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: Boston, United States
Founded: 2012
WebsiteLinkedIn