Director, Security Engineering & Operations

WhoopBoston, MA
$220,000 - $245,000Onsite

About The Position

WHOOP is seeking a Director, Security Engineering & Operations to lead the teams responsible for enterprise security engineering and security operations. This leader will shape strategy, lead a growing team of managers, engineers, and analysts, and drive measurable security outcomes across a fast-moving technology environment. This is a leadership role for someone who has successfully scaled security operations in complex, high-growth environments and brings strong security engineering experience. The right leader combines strategic judgment with strong technical depth, staying close enough to the work to set a high bar for engineering quality, guide critical technical decisions, and lead effectively through significant security events. This leader will play a significant role in shaping the team, operating model, and technical roadmap as WHOOP scales, advancing capabilities across security engineering, detection and response, incident management, security automation, identity, cloud, endpoint, SaaS, data protection, and other enterprise security domains. As WHOOP expands its use of AI across member-facing products, internal technology, and engineering, and continues to evolve its capabilities in health, this leader will help ensure security scales alongside the company's technology, data, regulatory, and threat landscape.

Requirements

  • 10+ years of experience in information security, with deep experience in Security Operations and meaningful experience across Security Engineering in complex technology environments.
  • 5+ years of people leadership experience, including multiple years managing managers and senior technical individual contributors. This is not a first-time people leadership role. Demonstrated strength in hiring, coaching, performance management, organizational design, and raising the bar for team quality and execution.
  • Deep technical expertise in detection engineering, SIEM and telemetry strategy, incident response, and modern security operations, including experience leading significant security incidents.
  • Proven ability to drive disciplined execution across priorities, roadmaps, backlogs, metrics, and ownership, while maximizing existing capabilities before introducing additional technology.
  • Experience managing MDR, MSSP, or similar security partners and holding them accountable to measurable operational outcomes.
  • Experience securing AI-enabled products, enterprise AI adoption, or AI development environments, including risks related to sensitive data, models, agents, third-party services, access, and monitoring.
  • Strong judgment and relationship-building skills, with a track record of working effectively across technical, product, risk, legal, and senior leadership teams.

Nice To Haves

  • Experience in health technology or another sensitive-data environment is a plus.

Responsibilities

  • Lead Security Engineering and Security Operations, defining strategy, priorities, technical standards, performance expectations, and measurable outcomes across both functions.
  • Advance a risk and threat-informed detection and response program that connects priority threat scenarios to the telemetry, detections, investigation capabilities, response procedures, and operational controls required to address them, including identity-centric, data protection, and insider risk scenarios.
  • Lead security incident readiness and response, including escalation, incident command for significant events, cross-functional coordination, post-incident review, and accountability for follow-up actions.
  • Guide the engineering and operationalization of preventive and detective security controls across identity, endpoint, cloud, SaaS, infrastructure, data, AI-enabled systems, and other high-value enterprise environments, while setting a high bar for technical design, testing, documentation, maintainability, and lifecycle management.
  • Lead the security strategy and engineering approach for AI-enabled products and enterprise AI adoption, including access controls, sensitive data handling, model and application security, third-party integrations, tool and agent permissions, monitoring, auditability, and secure use of AI across the company.
  • Drive an outcome-oriented approach to security technology and managed services, maximizing the effectiveness of existing capabilities, making disciplined decisions about when to automate, build, buy, or use external partners, and holding security partners accountable to measurable outcomes.
  • Drive disciplined execution across the security engineering and operations portfolio through effective prioritization, roadmap and backlog management, capacity planning, metrics, ownership, and operating cadence.
  • Lead, coach, and develop managers, engineers, and analysts, setting clear expectations for technical quality, judgment, ownership, execution, and professional growth.
  • Strengthen collaboration across Product Security, Security Architecture, Platform, Fraud, Engineering, IT, GRC, Legal, Privacy, and other business functions, creating clear ownership and effective operating relationships across organizational boundaries.
  • Partner with the CISO on organizational design, workforce planning, hiring, and development of the capabilities required as the Security organization evolves, while providing clear, data-driven communication on security posture, operational performance, significant risks, and strategic priorities.

Benefits

  • competitive base salaries
  • meaningful equity
  • consistent pay practices
  • generous equity package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service