Overview
Join to apply for the Senior Software Engineering Manager, Product Security role at WHOOP
At WHOOP, we're on a mission to unlock human performance and healthspan. WHOOP empowers members to perform at a higher level and live longer through a deeper understanding of their bodies and daily lives. Protecting our membersโ data and ensuring our systems scale securely and reliably is core to this mission.
Responsibilities
- Build, lead, and grow multiple engineering teams executing on WHOOPโs product security strategy, including member authentication, vulnerability management, cloud governance, privacy rights fulfillment, and threat modeling.
- Oversee and drive WHOOPโs engineering readiness for HIPAA compliance, coordinating technical implementation, evidence collection, and ongoing governance activities across teams.
- Define and communicate long-term security strategy, architecture, and design principles for product-facing systems.
- Partner with engineering and compliance leadership to embed security and privacy by design across the software development lifecycle.
- Establish and enforce best practices, standards, and processes for secure software development, testing, and deployment.
- Drive continuous improvement initiatives that enhance team productivity, quality, and overall business impact.
- Provide mentorship, guidance, and career development for engineering managers and individual contributors.
- Foster a culture of innovation, teamwork, psychological safety, and continuous learning within the Product Security organization.
Qualifications
- Proven experience as a technical leader managing multiple teams or a growing security engineering organization.
- Experience growing high level individual contributor career growth at the staff level or higher.
- Demonstrated success leading security or compliance initiatives in a regulated environment, preferably HIPAA or other health data compliance frameworks.
- Deep understanding of product security principles, including vulnerability management, data privacy, threat modeling, and secure software development.
- Experience building or integrating developer security tooling to improve secure-by-default practices.
- Strong technical background in software development, testing, and deployment processes.
- Excellent communication, interpersonal, and leadership skills with the ability to influence across teams and levels.
Bonus Qualifications
- Experience with AWS cloud environments and data-driven decision-making.
- Hands-on experience with infrastructure and cloud security in containerized environments (e.g., Docker, Kubernetes).
- Background in incident response and post-mortem analysis for security events.
- Familiarity with automation frameworks for vulnerability scanning, compliance checks, or infrastructure security.
- Prior experience scaling a product security or compliance engineering organization through major regulatory transitions (e.g., SOC 2 โ HIPAA, or HIPAA โ HITRUST).
About You
- Youโre a strategic and people-focused leader who thrives on balancing hands-on technical oversight with long-term organizational growth.
- You have experience building and scaling teams to meet new regulatory and business demands.
- Youโre passionate about creating secure, privacy-first systems that protect member data and enable innovation.
- You collaborate effectively across technical and non-technical teams and can operate confidently in both strategic and tactical domains.
- Above all, you believe that security and compliance are enablers of innovation, and you lead by fostering a culture that supports both speed and safety.
WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Location: Boston, MA. This role is based in the WHOOP office located in Boston, MA. The successful candidate must be prepared to relocate if necessary to work out of the Boston, MA office.