Christopher Coffin

Christopher Coffin Email and Phone Number

Information Assurance at MITRE @ MITRE
mclean, virginia, united states
Christopher Coffin's Location
Katy, Texas, United States, United States
Christopher Coffin's Contact Details

Christopher Coffin work email

Christopher Coffin personal email

n/a
About Christopher Coffin

A highly experienced security and compliance analyst with a unique and diverse background. Known as a great team player with a strong work ethic, highly refined problem solving skills, and a laser-focused attention to detail. Demonstrated abilities as the “go to” individual for special projects. A pioneer in the field of security and compliance software development. Additional background in technical writing, IT administration, data manipulation/scripting, system troubleshooting and repair, software quality assurance, training and consulting, and technical support.

Christopher Coffin's Current Company Details
MITRE

Mitre

View
Information Assurance at MITRE
mclean, virginia, united states
Website:
mitre.org
Employees:
8134
Christopher Coffin Work Experience Details
  • Mitre
    Information Assurance
    Mitre Oct 2012 - Present
  • Symantec
    Principal Software Engineer
    Symantec 2006 - 2012
    Houston, Texas Area
    Assumed a leading role in development of the regulatory compliance knowledge content for the Symantec Control Compliance Suite (CCS) of products. The primary focus was research and analysis of industry regulations, standards, and best practices. The results of this research and analysis were included within the products and helped the users to effectively manage and monitor their compliance with external authorities.• Derived and developed a set of common controls from many government… Show more Assumed a leading role in development of the regulatory compliance knowledge content for the Symantec Control Compliance Suite (CCS) of products. The primary focus was research and analysis of industry regulations, standards, and best practices. The results of this research and analysis were included within the products and helped the users to effectively manage and monitor their compliance with external authorities.• Derived and developed a set of common controls from many government regulations, industry standards, and best practice documents (e.g., PCI DSS, NERC CIP, NIST SP 800-53, ISO 27000 family, HIPAA/HITECH, GLBA, FISMA, CSA CCM). The result of these derivations was product knowledge and functionality that allowed the user to demonstrate compliance with an authority.• Advised a group of developers and facilitated in the implementation of an SCAP (Security Content Automation Protocol - http://scap.nist.gov/) solution. Researched and validated that the solution would meet all of the requirements needed in order to pass the third-party validation process. The result of this project was a fully functional and validated SCAP implementation that was delivered to our customers in a very short time-frame.• Authored the Symantec SCAP vendor product information for validation. See http://nvd.nist.gov/validation_symantec_ccsft_10.5_docs.html• Developed numerous scripts (Perl and XSLT) for analyzing our knowledge content database. Resulting data was imported into Excel spreadsheets for easier consumption by internal consumers.• Developed a set of scripts (Perl and XSLT) that created regulatory views of system configuration benchmarks (mainly the Center for Internet Security benchmarks). The result was a new benchmark that was structured based on a regulation or industry standard. These benchmark views became extremely popular within our product and are still used today. The scripts themselves are also available for download for end user consumption. Show less
  • Bindview
    Software Engineer
    Bindview 2002 - 2006
    Houston, Texas Area
    Researched and developed system security configuration content for the Symantec Control Compliance Suite (CCS) of products. • Developed executable system configuration benchmarks within the product based on third-party benchmark documents (mainly Center for Internet Security benchmarks). The benchmarks contained documentation as well as the necessary algorithms to perform the documented system configuration tests. Many of these benchmarks are still being used by customers… Show more Researched and developed system security configuration content for the Symantec Control Compliance Suite (CCS) of products. • Developed executable system configuration benchmarks within the product based on third-party benchmark documents (mainly Center for Internet Security benchmarks). The benchmarks contained documentation as well as the necessary algorithms to perform the documented system configuration tests. Many of these benchmarks are still being used by customers today.• Developed system configuration benchmarks for both Windows and UNIX systems (Red Hat Linux, Solaris, HP-UX).• Managed technical aspects and acted as the main point of contact for the certification of our Center for Internet Security (CIS) benchmark implementations. Pioneered the process for CIS benchmark certifications.• Developed a number of special patch checks during Microsoft Patch Tuesday releases. These releases were in high demand and needed to be developed in short time frames (1-2 days).• Developed scripting (XSLT) that created a Windows system patch check library within the product.• Contributed expertise to the Center for Internet Security (CIS) benchmark consensus process and reviewed and critiqued many of their benchmarks. Show less
  • Bindview
    Security Analyst (Razor Team)
    Bindview 2000 - 2002
    Southborough, Ma
    Performed research and analysis as a member of the Bindview RAZOR security team. The RAZOR security team was credited with uncovering many new cyber security vulnerabilities and was always on the leading edge. • Developed system configuration and system vulnerability documentation and algorithms. The result of this work was automated checks within the products that would identify the configurations and vulnerabilities on systems in user environments.• Performed internal penetration… Show more Performed research and analysis as a member of the Bindview RAZOR security team. The RAZOR security team was credited with uncovering many new cyber security vulnerabilities and was always on the leading edge. • Developed system configuration and system vulnerability documentation and algorithms. The result of this work was automated checks within the products that would identify the configurations and vulnerabilities on systems in user environments.• Performed internal penetration testing to identify new vulnerabilities and harden the internal network.• Identified and documented a high profile security vulnerability in the Funk Proxy Remote Control software as part of an internal penetration test exercise. This software was rebranded by Bindview at that time and distributed to its customers as Netrc. It was also used extensively on the Bindview internal network for system administration. The vulnerability exposed the system and allowed it to be fully compromised using a remote desktop session. The software was removed from all internal servers and systems at that time until the issue was patched. The detailed security release can still be viewed here: http://www.wilderssecurity.com/showthread.php?t=988. • Maintained the security team lab environment which consisted of both Windows and UNIX systems. • Administered the security team website, including posting news and updates.• Co-presented a class on hacking at a Black Hat conference. Developed a fifteen minute slot that walked the class through a multi-part security breach. Show less
  • Bindview
    Technical Support Representative
    Bindview 1998 - 2000
    Houston, Texas Area
    Performed phone support for all of the Bindview products. Also performed many special tasks and projects that helped to propel advancement within the organization.• Performed phone support for all of the products. Obtained a significant amount of problem solving skills during this period.• Performed pre and post sales product walkthroughs. Many of these walkthroughs resulted in product sales.• Performed after-hours quality assurance testing of all new products. The results of which… Show more Performed phone support for all of the Bindview products. Also performed many special tasks and projects that helped to propel advancement within the organization.• Performed phone support for all of the products. Obtained a significant amount of problem solving skills during this period.• Performed pre and post sales product walkthroughs. Many of these walkthroughs resulted in product sales.• Performed after-hours quality assurance testing of all new products. The results of which identified many defects that were corrected before shipping the product or update to customers.• Developed a special training program for the Bindview bv-Lifeline product suite. Presented this training program to customers on multiple occasions. The results of this program allowed customers to be quickly brought up to speed on the use of this product suite.• Performed on-site consulting for the Bindview bv-Lifeline product suite. • Obtained a Microsoft Certified Systems Engineer (MCSE) certification for Windows NT 4.0 Show less
  • Compusa
    Master Technician
    Compusa 1994 - 1997
    Overland Park, Kansas And Houston, Texas
    The CompUSA technical department would perform any kind of repairs or upgrades that were requested by customers. A technician needed to be able to do just about everything.• Performed hardware and software troubleshooting for consumer systems.• Performed warranty repairs for both desktop and laptop computers.• Performed system upgrades• Performed onsite installation and training for consumers.• Obtained A+, Microsoft, Compaq, and Toshiba certifications.

Christopher Coffin Skills

Security Computer Security Information Security Pci Dss Information Security Management Enterprise Software Cloud Computing Vulnerability Management Vulnerability Assessment Virtualization Vmware Saas Endpoint Security Intrusion Detection Ips Iso 27001 Disaster Recovery Messaging Perforce Comptia Network+ Comptia Security+ Isc2 Sscp

Christopher Coffin Education Details

Frequently Asked Questions about Christopher Coffin

What company does Christopher Coffin work for?

Christopher Coffin works for Mitre

What is Christopher Coffin's role at the current company?

Christopher Coffin's current role is Information Assurance at MITRE.

What is Christopher Coffin's email address?

Christopher Coffin's email address is ro****@****bal.net

What schools did Christopher Coffin attend?

Christopher Coffin attended Johnson County Community College.

What are some of Christopher Coffin's interests?

Christopher Coffin has interest in Model Rocketry, R/c Aircraft, Personal Finances, Real Estate Investing.

What skills is Christopher Coffin known for?

Christopher Coffin has skills like Security, Computer Security, Information Security, Pci Dss, Information Security Management, Enterprise Software, Cloud Computing, Vulnerability Management, Vulnerability Assessment, Virtualization, Vmware, Saas.

Who are Christopher Coffin's colleagues?

Christopher Coffin's colleagues are Evelyn Gibbs, Jaimie Reiff, Alicia C., John Tant, Mba, Larry Hughes, Brian Downey, Cecilia Sequeira.

Not the Christopher Coffin you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.