Philip Martin Named Uber CISO After Leading Security at Coinbase
Uber has appointed Philip Martin as its new Chief Information Security Officer (CISO), tapping a seasoned security leader with deep experience in incident response, threat intelligence, and large-scale infrastructure protection. Martin joins the ride-hailing giant from Coinbase, where he served as Chief Security Officer since April 2016. At Coinbase, he led a global team of more than 250 employees overseeing cybersecurity, Trust & Safety, physical security, technology governance, risk and compliance, and business resilience across both consumer and enterprise operations.
Before his tenure at Coinbase, Martin built and led the Incident Response and Security Engineering teams at Palantir Technologies and earlier contributed to virtual infrastructure development at Amazon's A9. His career began with a decade of service as a U.S. Army counterintelligence agent and Arabic linguist, with tactical and strategic postings both domestically and overseas. That combination of military intelligence experience and Silicon Valley security leadership positions him to manage the unique threat surface of a platform handling millions of daily trips, payments, and personal data exchanges.
"What drew me here is simple: very few companies are responsible for real people moving through the real world at Uber's scale, every minute of every day," Martin wrote in a LinkedIn post. "Security at many companies protects data. At Uber, it also protects trips, riders, drivers, and couriers; real people in motion." For security professionals and Uber users alike, the appointment underscores how identity and access hygiene remain foundational — users can audit their own exposure using a password checker or run a email breach checker to confirm credentials associated with ride-hailing accounts have not appeared in known data dumps. Organizations evaluating their own posture can similarly use a SSL/TLS checker to verify transport-layer protections on customer-facing endpoints.
Martin steps into the role at a time when mobility platforms face escalating threats from ransomware affiliates, credential-stuffing campaigns, and supply-chain attacks targeting third-party SDKs and telematics providers. His mandate will likely include tightening developer-security pipelines, expanding zero-trust network access for internal systems, and coordinating with regulators on data-protection compliance across the dozens of jurisdictions Uber operates in.