Philip Cox

Philip Cox Email and Phone Number

Deputy Chief Information Security Officer @ Coupa Software
Philip Cox's Location
Auburn, California, United States, United States
About Philip Cox

Information technology and security leader with extensive experience in all facets of information systems design, integration and security. Proven expertise in building security programs from the ground up, and developing strong teams to support those programs. Expertise in designing, implementing, and securing global and enterprise networks. Strong ability to analyze, plan, set goals, coordinate and deliver on key business level objectives. Adept in providing excellent management while prioritizing improvements that maximize immediate business focused results. Outstanding written and verbal skills from both business operations and client base perspectives. Excellent written and verbal skills; able to communicate and collaborate effectively with all levels within a company, from C-level executives to technical co-workers, and externally with clients at all levels.Specialties: Information System Architectures; Compliance Program Development (SOC, PCI, ISO 2700X, HIPAA, FedRAMP, TUV CCS, GDPR); Risk Assessments; Virtualization Technologies; Cloud Security; Security in DevOps and Agile Environments; Application Vulnerability Testing; Network and System Penetration Testing; Security Information Event Monitoring (SIEM) design and implementation; Threat Management; Enterprise Vulnerability Management; Policies Development; Repeatable Services Delivery; Teaching/Lecturing

Philip Cox's Current Company Details
Coupa Software

Coupa Software

View
Deputy Chief Information Security Officer
Website:
coupa.com
Philip Cox Work Experience Details
  • Coupa Software
    Deputy Chief Information Security Officer, Federal
    Coupa Software Mar 2022 - Present
    Foster City, California, Us
  • Coupa Software
    Vp, Security & Compliance
    Coupa Software Jul 2015 - Mar 2022
    Foster City, California, Us
    Provide security leadership and vision in transition from startup to a public multi-billion dollar valued company. This transition included building a GRC program and team to manage ISO27001, PCI, SOC1/2, ITAR, HIPAA, TUV CCS, and GDPR compliance initiatives, establishing a dedicated Corporate IT security function, and transitioning platform operations security team from outsourced SOC to in house team. Provided industry thought leadership on transitioning security programs from old school "walled castle" focus to include everywhere connected "SaaS-backed" environments. Responsibilities include building a comprehensive and robust security and compliance program that covers all aspects of Coupa "Security". Working with cross organizational stakeholders to implement a “business risk” driven security program that ensures security is a business enabler, not blocker. Scope of role is all security aspects (program, policies, procedures, design, development, operations, etc.) of our SaaS product offering, corporate back office, and physical offices. Key goal is defined and operating strategy and security program that is consistent with Coupa core values: Focus on Results, Ensuring Customer Success, and Striving for Excellence. All the while ensuring continued adherence to and success of Coupa's current compliance programs. Provide leadership and oversight to the Security Operations Center, GRC (Governance, Risk and Compliance) team, Threat Management team, SecOps and Sec Dev teams. Work closely with, and support, corporate IT, Legal & HR, Sales, Marketing, and Engineering teams.
  • Digital Insight
    Director Of Security
    Digital Insight Jul 2014 - Jun 2015
    Redwood City, California, Us
    Responsible for leading all components of Digital Insight’s (a NCR Company) information security posture. The position is a 3-legged stool involving: 1. Acting in the role of the Information Security Officer, responsible for the security and protection of Digital Insight’s corporate and customer ecosystem. 2. Developing an information security program that will be seen as best of breed in the retail banking industry. 3. Designing and execution of an information security consulting offering aimed at providing information security services to Digital Insight’s customers in the retail banking industry.Effectively "responsible" for any and all aspects related to securing our applications and our customer’s data.
  • The Lubrizol Corporation
    Senior Solutions Architect, Innovation & Security
    The Lubrizol Corporation Sep 2013 - Jul 2014
    Wickliffe, Ohio, Us
    Brought to Lubrizol to provide leadership in the the move to Office 365, Azure, and AWS cloud services. Goal was to increase productivity, while decreasing overall cost, of a global manufacturing company through the use of innovative IT solutions in a secure manner. Work cross-functionally to educate, collaborate, and identify use cases that would best benefit from new technology capabilities. Implement pilot programs, then help develop transition plans as needed.
  • Rightscale
    Director Of Security And Compliance
    Rightscale Jun 2011 - Aug 2013
    Itasca, Illinois, Us
    "Security Driver". Responsible for establishing and maintaining the strategy and program to ensure RightScale and its customer information assets are adequately protected. Be the driving force behind compliance initiatives in the engineering, operations, and corporate environments. Drive the implementation of a governance, risk, and compliance program (e.g., PCI DSS and SSAE 16 Type II) throughout the RightScale organization. Educate and advise customers on cloud security.
  • Systemexperts
    Director, Security And Compliance
    Systemexperts Jun 1999 - Jun 2011
    Sudbury, Massachusetts, Us
    Provided compliance and security consulting to a wide range of customers in all industry verticals, with special emphasis on the financial services and manufacturing industry. Managed and participated in PCI, ISO 27001/27002, and HIPAA compliance assessments. Head of the PCI practice. Lead assessor on Cloud, Virtualization, or Microsoft technology related assessments. Lead tester for network and application security testing. Lead on-site implementation and deployment of security information management system (SIMs). Provided guidance and support in client’s incident response events. Responsible for developing new product concepts including solutions for compliance (PCI, ISO 27001), system configuration, and security management.Additionally, served as Project Manager for the SecurityBlanket service, an ongoing service focused on providing vulnerability identification and analysis, remediation recommendations, and other cyber security hygiene. Responsibilities included managing staff, facilitating regular customer feedback sessions, identifying improvements, and created projects to implement identified improvements. Saw over a 300% growth in the service in 5 years.Represent SystemExperts in the industry via press interviews, whitepapers, articles, and as an invited speaker at industry conferences.
  • Llnl/Ciac
    Computer Scientist
    Llnl/Ciac Aug 1997 - Jun 1999
    Livermore, Ca, Us
    Member of the US Department of Energy (DoE) Computer Incident Advisory Capability (CIAC), the DoE incident response team. Provided system design reviews, penetration testing, incident response, forensics, and training to others in the DoE community. Responsible for responding to and investigating cyber intrusion attempts at DoE facilities. Established relationships with Microsoft to allow for more in-depth exchange of information. Prepared and presented tutorials to numerous other US Government agencies. Created the first industry tutorial to offer “live” demonstration of penetration testing techniques. Held DoE Q clearance.
  • Nts
    Co-Founder, President And Lead Consultant
    Nts Nov 1995 - Aug 1997
    Belcamp, Md, Us
    Managed all aspects of a network and security consulting company. Recruiting and hiring. Business operations. Negotiated contracts with clients, scheduled deliverables, and coordinated a team of consultants. Provided network and security consulting. Instrumental in educating the Internet community on Microsoft Windows security through worldwide lectures, papers and presentations. Major clients included Sandia National Labs, Motorola, and Rockwell Corporation. Held DoE Q clearance.
  • Ssds
    Senior Site Engineer
    Ssds Nov 1993 - Nov 1995
    Network and security consultant for a computer and security consulting firm. Provided security consulting including risk assessment, penetration analysis, security reviews, incident response, product performance measurement, WWW, DNS, email, firewall, and intrusion detection design, configuration and deployment. Held DoE Q clearance.
  • Lawrence Livermore National Laboratory
    Computer Scientist
    Lawrence Livermore National Laboratory Mar 1991 - Nov 1993
    Livermore, Ca, Us
    Member of the System Administration team for O-Division, a site of approximately 400 machines supporting the S1 Supercomputer, Laser Pantography, and ’Star Wars’ Strategic Defense Initiative projects. Supported all aspects of a production scientific network environment for the administrative and scientific user community. Systems were primarily Sun Microsystems and Cisco. Held DoE Q clearance.
  • Health Quest
    Member Of Technical Staff
    Health Quest Dec 1990 - Mar 1991
    Lagrangeville, New York, Us
    Member of the System Administration team for Health Quest. Provided system administration support for the Medical University of South Carolina.
  • United States Navy
    Machinist Mate 1St Class
    United States Navy Sep 1982 - Nov 1988
    Washington, Dc, Us
    Machinist Mate 1st Class (MM1/SS). Submarine Engineering Watch Supervisor qualified. Top of class in Nuclear Power school and prototype. Selected to remain at prototype and train incoming sailors. Helped qualify over 400 sailors, as well as prospective Aircraft Carrier Commanders. Selected to the Executive Officer’s training team while onboard the USS Mariano G. Vallejo Blue Crew. Held DoD Secret clearance.

Philip Cox Skills

Security Computer Security Information Security Cloud Computing Network Security Vulnerability Assessment Penetration Testing Pci Dss Application Security Firewalls Virtualization Vulnerability Management Cloud Security Iso 27001 Cissp Management Computer Forensics System Administration Networking Information Security Management Intrusion Detection Enterprise Architecture Public Speaking Risk Assessment Security Audits Information Technology Network Architecture Web Application Security Identity Management Ips Data Security Security Architecture Design Incident Response Microsoft Technologies Data Privacy Information Assurance Security Management Business Continuity Cryptography Devops Continuous Delivery Continuous Integration Agile And Waterfall Methodologies

Philip Cox Education Details

  • College Of Charleston
    College Of Charleston
    Computer Science
  • Wooster High
    Wooster High

Frequently Asked Questions about Philip Cox

What company does Philip Cox work for?

Philip Cox works for Coupa Software

What is Philip Cox's role at the current company?

Philip Cox's current role is Deputy Chief Information Security Officer.

What is Philip Cox's email address?

Philip Cox's email address is ph****@****lls.net

What is Philip Cox's direct phone number?

Philip Cox's direct phone number is +153030*****

What schools did Philip Cox attend?

Philip Cox attended College Of Charleston, Wooster High.

What are some of Philip Cox's interests?

Philip Cox has interest in Road And Mountain Bike Riding, Children, Coaching Football And Wrestling, Science And Technology, Golf, Fishing.

What skills is Philip Cox known for?

Philip Cox has skills like Security, Computer Security, Information Security, Cloud Computing, Network Security, Vulnerability Assessment, Penetration Testing, Pci Dss, Application Security, Firewalls, Virtualization, Vulnerability Management.

Who are Philip Cox's colleagues?

Philip Cox's colleagues are Shubham Pisal, Mary Agarwal, Sam S. Park, Cpa, Cgma, Sumod Sudhakaran, Sudhir Kumar Anarasi, Viktoriia Kirchenbauer, Sabrina Weis.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.