Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Security Program Specialist II image - Rise Careers
Job details

Security Program Specialist II

At WHOOP, we're on a mission to unlock human performance and healthspan. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives. Protecting our members’ privacy and ensuring the security of their data is core to this mission.


The Product Security group focuses on safeguarding the member experience by addressing vulnerabilities, supporting privacy requests, and ensuring compliance with industry standards. We bridge the gap between our engineering, product, and compliance teams to ensure members can trust WHOOP with their most personal data.


As a Security Program Specialist II, you will help triage and coordinate incoming security and privacy requests, perform first-line technical analysis, and ensure timely resolution of issues. This role is a great opportunity for someone who enjoys both the operational side of security and digging into technical details, with future growth paths into either security engineering or information security program management.


*This role is based in the WHOOP office located in Boston, MA. The successful candidate must be prepared to relocate if necessary to work out of the Boston, MA office.*


RESPONSIBILITIES:
  • Triage and evaluate bug bounty submissions, escalating valid vulnerabilities to engineering for remediation and coordinating response.
  • Perform level 1 troubleshooting for member-reported privacy or security concerns, ensuring issues are routed appropriately.
  • Coordinate responses to auditor and regulator requests, including gathering SOC and compliance evidence.
  • Partner with Product Security Engineers to organize and document threat modeling sessions, leaning on technical experts for deep technical details.
  • Track and communicate the status of security issues, ensuring timely follow-up and resolution.
  • Support process improvements to make WHOOP’s security and privacy operations more efficient.
  • Develop, maintain, and track KPIs that measure the effectiveness of product security programs and provide visibility into team performance and risk reduction.
  • Work closely with software teams across the department to adopt and rollout new tooling and security process changes.


QUALIFICATIONS:
  • 2–4 years of professional experience in a security, privacy, compliance, or technical support role.
  • Familiarity with security and privacy concepts such as vulnerability reporting, data protection, and regulatory compliance (SOC 2, GDPR, etc.).
  • Strong organizational skills with the ability to coordinate across multiple teams and stakeholders.
  • Technical aptitude to perform basic analysis of security reports (e.g., reviewing proof-of-concept exploits, testing reproduction steps).
  • Excellent written and verbal communication skills, with the ability to explain technical issues to non-technical stakeholders.
  • Interest in growing your career in either engineering (security/product) or information security (governance, risk, and compliance).


BONUS QUALIFICATIONS:
  • Experience with bug bounty platforms or security incident management.
  • Ability to interpret existing code to validate bug bounty submissions, reproduce issues, and improve triage efficiency.
  • Exposure to cloud environments (AWS preferred).


ABOUT YOU:
  • You’re passionate about security and privacy, with a curiosity to dig into technical details while keeping the bigger picture in mind.
  • You’re highly organized and thrive at coordinating across multiple teams to keep security and privacy programs running smoothly.
  • You communicate clearly with both technical and non-technical stakeholders, making complex issues understandable.
  • You take ownership of your work, ensuring issues are followed through to resolution and always keeping member trust front and center.
  • You see security not just as risk reduction, but as a way to enable innovation and protect the member experience.


Interested in the role, but don’t meet every qualification? We encourage you to still apply! At WHOOP, we believe there is much more to a candidate than what is written on paper, and we value character as much as experience. As we continue to build a diverse and inclusive environment, we encourage anyone who is interested in this role to apply.


WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility.  It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

WHOOP Glassdoor Company Review
3.4 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
WHOOP DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of WHOOP
WHOOP CEO photo
Will Ahmed
Approve of CEO

Average salary estimate

$95000 / YEARLY (est.)
min
max
$80000K
$110000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

WHOOP logo

What it's like to work at WHOOP

Read Reviews
Similar Jobs
Photo of the Rise User

Design and scale backend services on WHOOP's AI Platform using Java and AWS to enable safe, reusable Generative AI capabilities across the product.

Photo of the Rise User

WHOOP is hiring a Senior Manager, Controls & Compliance to build and scale a SOX and COSO-aligned control environment that enables secure, compliant growth from its Boston office.

Photo of the Rise User

Senior-level System/Application Analyst to lead, maintain, and troubleshoot Epic Resolute HB application and enterprise coding workflows at OHSU.

Dartmouth College is hiring a senior cybersecurity leader to shape enterprise security strategy, advise institutional leadership, and safeguard the College’s research and academic mission.

Photo of the Rise User
Posted 6 hours ago

A people-focused technology team is looking for a Help Desk Intern to provide hands-on hardware and software support, assist with deployments, and help maintain equipment inventory.

C4 Plans is hiring a Tier I Help Desk Analyst to provide frontline, 24/7 technical support and incident triage for Fleet Marine Forces and DoD personnel at Camp Pendleton.

Photo of the Rise User

Peraton is hiring an Onboarding Account Management Analyst in San Antonio to lead ICAM/Zero Trust onboarding, manage identity lifecycles, and ensure secure, compliant access for applications and users.

Posted 12 hours ago

Support and harden Hadrian’s factory IT infrastructure in Torrance by administering servers, networks, virtualization, and endpoints to enable secure, high-availability manufacturing operations.

Photo of the Rise User

Lead the enterprise architecture and operations for McKesson's global contact center and telephony platforms, driving CCaaS/UCaaS strategy, integrations, and reliability.

Photo of the Rise User
KIHOMAC Hybrid No location specified
Posted 4 hours ago

Lead the technical cybersecurity strategy and engineering teams to design, integrate, and maintain secure systems across complex on-prem and cloud environments.

Photo of the Rise User
Chainlink Labs Hybrid No location specified
Posted 4 hours ago

Chainlink Labs is hiring a Cyber Threat Analyst to hunt adversaries, reverse-engineer ARM malware, and build detections to safeguard Chainlink's on-chain infrastructure.

Photo of the Rise User
Posted 23 hours ago

Support Fort Worth city staff as an IT Help Desk Technician providing phone and email troubleshooting, ticket management, and Active Directory administration in a hybrid, public-sector environment.

Posted 12 hours ago

Experienced cybersecurity risk professional needed to lead risk assessment, vulnerability management, and control monitoring for USINDOPACOM operations at Ford Island.

Photo of the Rise User
Posted 15 hours ago

Murgado Automotive Group seeks an IT Help Desk Technician to provide first-line technical support across its Mercedes-Benz locations in Richmond and Midlothian, VA.

Photo of the Rise User
Posted 23 hours ago

Experienced TS/SCI-cleared vulnerability analyst needed to analyze and communicate vulnerability impacts to FCEB and CIKR stakeholders in support of a critical government cybersecurity mission.

Our mission at WHOOP is to unlock human performance. We believe that every individual has an inner potential that can be enhanced through continuous monitoring. As such we've built a system across hardware, software, and analytics designed to coll...

31 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, onsite
DATE POSTED
October 3, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!