2 months ago
Boston, MA, USAMid Level
H1B sponsor
Base Salary
$130k - $170k/yr
Responsibilities
- Design, build, and scale high-signal detections across cloud, identity, endpoint, network, and application layers.
- Develop and maintain detections aligned with attacker behavior and frameworks such as MITRE ATT&CK.
- Translate threat intelligence into actionable detections and validate them through adversary emulation and testing.
- Build behavioral detections for account takeover, credential abuse, API misuse, automation attacks, privilege escalation, and data exfiltration.
- Tune alerts, reduce false positives, and automate enrichment and triage.
- Define detection KPIs and improve detection health, coverage, and signal quality.
- Support and lead incident investigations, including containment, root cause analysis, and post-incident improvements.
- Participate in on-call rotations and reduce operational overhead through automation.
- Partner with Engineering, IT, Infrastructure, Product, and GRC teams to ensure strong monitoring and detection coverage.
- Apply analytics and machine learning techniques to improve detection fidelity and investigation workflows.
Requirements
- 4+ years of hands-on information security experience focused on detection engineering, threat detection, or security operations.
- Experience writing and tuning detections across cloud, identity, endpoint, or application environments.
- Familiarity with YARA, SIGMA, Suricata, or similar rule-based detection methodologies.
- Strong understanding of identity compromise, cloud abuse, lateral movement, and data exfiltration techniques.
- Expertise analyzing cloud and SaaS telemetry, including authentication events, API activity, and system logs.
- Strong scripting skills in Python, Go, or PowerShell.
- Experience supporting incident response investigations and participating in on-call rotations.
- Strong analytical, systems-thinking, communication, and collaboration skills.
- Experience building detective controls for consumer-facing platforms or detecting authentication and API abuse at scale is preferred.
- Familiarity with data analysis or machine learning for security detection or alert triage is preferred.
- A bachelor's degree in Computer Science, Information Security, or a related technical field, and/or relevant security certifications, is a plus.
Benefits
- U.S. base salary range is $130,000–$170,000, with additional equity and benefits.
- The full-time role includes a generous equity package and benefits.
- WHOOP is an Equal Opportunity Employer and participates in E-Verify.
About WHOOP
Solving problems that sit at a unique intersection of hardware, tech, health, fitness and design.
