Security Architect at Whoop

Boston, Massachusetts, United States

Whoop Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Technology, Wearable Technology, Health TechIndustries

Requirements

  • 7–10 years of experience in security architecture, security engineering, or technical security leadership roles supporting complex, distributed systems
  • Certifications such as AWS Security Specialty, CCSK, OSCP, or CISSP are strongly valued, but not required
  • Demonstrated expertise in cloud security, particularly in AWS environments and modern cloud-native architectures
  • Ability to operate across technical depths, from threat modeling and system design to secure implementation guidance and risk tradeoff discussions
  • Proven success collaborating with Engineering, Product, and Infrastructure teams to drive secure outcomes in fast-paced, product-led environments
  • Direct experience with AI/ML security and governance, including secure implementation of third-party AI services, protection of sensitive data across internal models and AI-powered features, and support for policy development, auditability, and control across enterprise and SaaS AI tools, including MCP infrastructure, model access, and responsible use
  • Experience aligning security programs and architecture with industry frameworks and compliance obligations such as GDPR, SOC 2, ISO 27001, PCI, and NIST
  • Strong written and verbal communication skills

Responsibilities

  • Design and document secure, scalable architectures across cloud, application, endpoint, and SaaS environments to support growth and innovation
  • Lead the implementation and continuous improvement of security capabilities across areas such as threat detection, identity and access management, data protection, and vulnerability management
  • Drive secure deployment practices through automation, documentation, and process standardization
  • Lead security architecture and control design for WHOOP AI initiatives, including the secure use of third-party AI APIs, protection of sensitive data in AI-powered product features, governance of in-house models and MCP infrastructure, and responsible use of AI capabilities across internal and SaaS platforms
  • Partner with Engineering, Product Security, and IT to review new systems and features, advise on tradeoffs, and deliver secure-by-default outcomes
  • Serve as a trusted technical leader and mentor across the security and engineering organization
  • Drive the architecture and evolution of vulnerability management capabilities, ensuring integration with development pipelines, infrastructure, and program-level visibility
  • Align architectural decisions with applicable regulatory requirements and security standards, including GDPR, SOC 2, ISO 27001, PCI, NIST, laws governing health and biometric data, and emerging AI risk and governance frameworks
  • Help integrate frameworks like NIST into secure development and operational practices
  • Define technical success criteria and partner on security metrics and dashboards that drive accountability and visibility across the organization

Skills

Security Architecture
Cloud Security
Threat Detection
Identity and Access Management
Data Protection
Vulnerability Management
Automation
AI Security
SaaS Security
Endpoint Security

Whoop

Wearable fitness tracker with personalized insights

About Whoop

WHOOP offers a fitness membership that focuses on improving personal health and performance through a wearable device called the WHOOP Strap 3.0. This device continuously collects physiological data, including heart rate, sleep patterns, and recovery levels, to provide users with personalized recommendations on their daily activity, sleep needs, and readiness for performance. Unlike many competitors, WHOOP operates on a subscription model, where users pay a fee to access the membership, which includes the device and continuous insights through the WHOOP app. This model not only provides a steady revenue stream but also fosters a strong community among users, encouraging engagement through teams, challenges, and social features. The goal of WHOOP is to help users optimize their health and performance while minimizing injury risk.

Boston, MassachusettsHeadquarters
2012Year Founded
$393.7MTotal Funding
SERIES_FCompany Stage
Data & Analytics, HealthcareIndustries
501-1,000Employees

Benefits

Take Time Off: Time outside of the office is important for sleep, strain and recovery! Our PTO plan encourages members to take time off in order to come back refreshed.
Live a Healthy Lifestyle: Our competitive benefits package includes premium medical, dental, and vision coverage for employees and their dependents. Life and disability insurance are also available.
Feel Invested: In addition to a competitive base salary and 401k, you're eligible to receive stock options to share in the future of WHOOP. Work means more when you have personal stake. You have ownership in what we are building.
Eat Well: Keep hunger at bay with endless snacks in our fully stocked kitchen. Enjoy catered team lunches on Friday, and even a cold brew keg.
Know The Product: We want you to understand and experience the product firsthand. We offer you a WHOOP strap and membership at no cost.
Be Active: Take advantage of our office gym and on-site showers! WHOOP also offers a $500 yearly wellness perk for fitness classes and memberships.
Be Present: It’s important to be present when bringing home a new family member. Take care of your loved ones with 12 weeks paid parental leave, plus an additional 2 weeks to gradually return to work.
Love Where You Work: Sitting in the heart of Fenway, our beautiful office overlooks Fenway Park. A prime location for great food, not to mention catching a Sox game, too!
Work Hard, Play Harder: If we don't already have a club here that fits your lifestyle and interests, you're encouraged to start one. Share your passions with others at work, or discover new ones!

Risks

Increased competition from brands like Oura and Fitbit threatens market share.
Privacy concerns over data collection could lead to regulatory challenges.
Economic downturns may affect consumer willingness to pay subscription fees.

Differentiation

WHOOP offers 24/7 physiological data tracking with its WHOOP Strap 3.0.
The company provides personalized health insights for athletes and fitness enthusiasts.
WHOOP's subscription model includes a community aspect for user engagement.

Upsides

WHOOP's partnership with Cristiano Ronaldo boosts brand visibility and credibility.
Expansion into 56 markets enhances WHOOP's global presence and growth potential.
Collaborations with brands like Assos strengthen WHOOP's position in sports technology.

Land your dream remote job 3x faster with AI