Source description
About the role
Lead hands-on incident response activities, serving as the primary internal escalation point for security events
Serve as the central incident commander across Security, IT, GRC, and Legal during active incidents
Partner with the SOC to validate alerts, guide investigations, and drive containment and eradication efforts
Conduct host, cloud, and log-based investigations, and coordinate with external forensic firms when needed
Maintain and continuously improve incident response playbooks, escalation procedures, and communication workflows
Lead post-incident reviews and root cause analysis, ensuring remediation actions are clearly defined and tracked
Develop and execute tabletop exercises and incident simulations to test and strengthen response readiness
Partner with GRC and Legal to support breach impact assessments and regulatory notification processes
Drive continuous improvement of detection and response capabilities across SIEM, EDR, cloud monitoring, and identity systems
Own incident metrics and reporting, including response times, trends, and systemic risk reduction initiatives
Participate in an on-call escalation rotation to provide after-hours incident leadership when required
More at WHOOP
Related open roles
NPI Quality Engineer II, Accessories
United States · Onsite
Security Analyst
United States · Onsite
Security Detection Engineer
Boston · Onsite
Senior Risk & Compliance Analyst
Boston · Onsite
Director, Information Security
United States · Onsite
Senior Software Engineering Manager, Product Security
United States · Onsite
