Whoop
Incident Response Lead
Boston, MA · Full-time
Sponsorship not specified$130k-$170kDetected 4 days ago
CybersecuritySIEMSOC OperationsDetection EngineeringIncident ResponseComplianceHIPAALeadershipCommunicationCISSP
About the role
- Our wearable technology provides personalized insights that help millions of members better understand their bodies and make smarter decisions about training, recovery, and lifestyle.
- This is a highly technical individual contributor role with significant ownership and visibility across Security, IT, GRC, and Legal.
- Interested in the role, but don't meet every qualification?
Responsibilities
- Lead hands-on incident response activities, serving as the primary internal escalation point for security events
- Partner with the SOC to validate alerts, guide investigations, and drive containment and eradication efforts
- Maintain and continuously improve incident response playbooks, escalation procedures, and communication workflows
- Lead post-incident reviews and root cause analysis, ensuring remediation actions are clearly defined and tracked
- Develop and execute tabletop exercises and incident simulations to test and strengthen response readiness
- Partner with GRC and Legal to support breach impact assessments and regulatory notification processes
- Drive continuous improvement of detection and response capabilities across SIEM, EDR, cloud monitoring, and identity systems
- Own incident metrics and reporting, including response times, trends, and systemic risk reduction initiatives
Requirements
- 7+ years of experience in incident response, digital forensics, threat detection, or SOC operations
- Proven experience leading incident investigations in complex, cloud-native environments
- Hands-on expertise with SIEM platforms, EDR tools, and cloud security monitoring
- Experience working with external SOC or MDR providers
- Strong understanding of attack frameworks (MITRE ATT&CK) and their application to detection and response
- Experience supporting breach response obligations under GDPR, HIPAA, PCI, or similar regulatory frameworks
- Excellent communication skills with the ability to coordinate cross-functional stakeholders under pressure
- Bachelor's degree or relevant certifications (GCIH, GCFA, CISSP, or equivalent)
- The successful candidate must be prepared to relocate if necessary to work out of the Boston, MA office.
- Participate in an on-call escalation rotation to provide after-hours incident leadership when required
- Strong experience conducting host, cloud, and log-based investigations
Compensation
- The WHOOP compensation philosophy is designed to attract, motivate, and retain exceptional talent by offering competitive base salaries, meaningful equity, and consistent pay practices that reflect our mission and core values.
Company info
- At WHOOP, we're on a mission to unlock human performance and healthspan.
- We are seeking a Incident Response Lead to drive security incident response across the enterprise.
This listing is sourced directly from Whoop's careers page and normalized into a canonical job model.