Profiles search
Brian Hundt
PayPal Security
Phoenix, AZ, United States
Details
Experience:
2021 : Present
PayPal
Enterprise Cybersecurity - Integrations Engineer
Member of DTTL’s Global Security Office, who is charged with “Protecting the Brand”, as well as the confidentiality, integrity, and availability of both client and firm data.
Overall responsibility for the security posture of 100+ applications utilized on a global scale. Applications are primarily browser-based and are utilized by DTTL’s 55 member firms.
Maintain tight relationships with DTTL’s project teams, including business sponsors, program leadership, product managers, and technical staff.
Perform formal security risk assessments on applications to determine risk profile and to identify security vulnerabilities. This includes conducting the assessments, documenting identified risks and issues, and effectively communicating the findings and risks to leadership, stakeholders, and technical teams.
Coordinate and manage third-party engagements with a strategic Global Security Office vendor, who periodically assists in unique DTTL security projects. Fourteen engagements have been completed, several of which have were $100,000+. Responsibilities included specifying the scope of efforts, reviewing and approving the contractual agreements and engagement letters, formally managing the engagements, and assisting DTTL application teams in understanding and remediating identified issues.
Assisted in developing and continuing to actively contribute to improving DTTL’s information security program with an emphasis on the firm’s application security efforts.
Actively participated in numerous DTTL projects throughout the systems development life cycle to ensure security is considered and implemented as necessary.
Conducted security risk assessments of six social media organizations (e.g., LinkedIn, Facebook, Twitter, etc.) to aide senior leadership in determining a social media strategy for the firm.
Recipient of four formal awards for exhibiting superior client service acumen.
2005 : 2020
Deloitte Touche Tohmatsu Limited
Senior Manager, Global Information Security Office
Led a comprehensive PeopleSoft v8.8 HCM, FMS, and EPM security review and re-design at a major telecommunications company. Responsibilities included managing a team of five consultants, creating and maintaining project plans, providing status to project sponsors, resolving identified issues, and assisting team in day-to-day tactical activities.
Performed numerous Sarbanes-Oxley 404 compliance reviews. Specifically, these efforts included the review of existing controls and providing detailed remediation plans to help ensure that clients were appropriately compliant to federal legislation.
Assisted with a PeopleSoft v8.0 SP1 HRMS upgrade and a PeopleSoft v8.0 SP3 Financials upgrade at State Farm Insurance. Responsibilities included analyzing new security functionality, supporting security testing activities, and resolving security issues. Additionally, led the implementation of five PeopleSoft self-service applications. Responsibilities included the design and configuration of self-service security and the implementation of PeopleSoft Directory Authentication, Profile Synchronization, and Query Dynamic Role functionality. The implementation of this functionality allowed 105,000+ employees to view and update personal HR, Benefits, and Payroll information via the corporate Intranet.
Assisted in implementing three PeopleSoft/Novell NDS identity management solutions, which enables companies to maintain a single-point of user provisioning/de-provisioning utilizing PeopleSoft HCM.
Performed audits of client's operations, information security systems, and business processes, and presented findings and recommendations to client sponsors.
Clientele included State Farm Insurance, United Airlines, Allstate Insurance, Northwestern University, FedEx, HealthSouth, SC Johnson, PepsiAmericas, CDW, and Freddie Mac.
1999 : 2005
Deloitte & Touche
Manager
Provided development support to five PeopleSoft implementations for large clients in various industries.
Utilized a variety of PeopleSoft utilities for client requested additions, customizations, and reports. Specifically, these tools included, but were not limited to, Application Designer, SQR, PeopleCode, Import Manager, Process Scheduler, Security Manager, Tree Manager, and PeopleSoft Query.
Major clients included RCN, Red Roof Inns, and the Internet Shopping Network.
1998 : 1999
Technology Solutions Company
Associate Consultant - PeopleSoft Practice
PayPal
Enterprise Cybersecurity - Integrations Engineer
Member of DTTL’s Global Security Office, who is charged with “Protecting the Brand”, as well as the confidentiality, integrity, and availability of both client and firm data.
Overall responsibility for the security posture of 100+ applications utilized on a global scale. Applications are primarily browser-based and are utilized by DTTL’s 55 member firms.
Maintain tight relationships with DTTL’s project teams, including business sponsors, program leadership, product managers, and technical staff.
Perform formal security risk assessments on applications to determine risk profile and to identify security vulnerabilities. This includes conducting the assessments, documenting identified risks and issues, and effectively communicating the findings and risks to leadership, stakeholders, and technical teams.
Coordinate and manage third-party engagements with a strategic Global Security Office vendor, who periodically assists in unique DTTL security projects. Fourteen engagements have been completed, several of which have were $100,000+. Responsibilities included specifying the scope of efforts, reviewing and approving the contractual agreements and engagement letters, formally managing the engagements, and assisting DTTL application teams in understanding and remediating identified issues.
Assisted in developing and continuing to actively contribute to improving DTTL’s information security program with an emphasis on the firm’s application security efforts.
Actively participated in numerous DTTL projects throughout the systems development life cycle to ensure security is considered and implemented as necessary.
Conducted security risk assessments of six social media organizations (e.g., LinkedIn, Facebook, Twitter, etc.) to aide senior leadership in determining a social media strategy for the firm.
Recipient of four formal awards for exhibiting superior client service acumen.
2005 : 2020
Deloitte Touche Tohmatsu Limited
Senior Manager, Global Information Security Office
Led a comprehensive PeopleSoft v8.8 HCM, FMS, and EPM security review and re-design at a major telecommunications company. Responsibilities included managing a team of five consultants, creating and maintaining project plans, providing status to project sponsors, resolving identified issues, and assisting team in day-to-day tactical activities.
Performed numerous Sarbanes-Oxley 404 compliance reviews. Specifically, these efforts included the review of existing controls and providing detailed remediation plans to help ensure that clients were appropriately compliant to federal legislation.
Assisted with a PeopleSoft v8.0 SP1 HRMS upgrade and a PeopleSoft v8.0 SP3 Financials upgrade at State Farm Insurance. Responsibilities included analyzing new security functionality, supporting security testing activities, and resolving security issues. Additionally, led the implementation of five PeopleSoft self-service applications. Responsibilities included the design and configuration of self-service security and the implementation of PeopleSoft Directory Authentication, Profile Synchronization, and Query Dynamic Role functionality. The implementation of this functionality allowed 105,000+ employees to view and update personal HR, Benefits, and Payroll information via the corporate Intranet.
Assisted in implementing three PeopleSoft/Novell NDS identity management solutions, which enables companies to maintain a single-point of user provisioning/de-provisioning utilizing PeopleSoft HCM.
Performed audits of client's operations, information security systems, and business processes, and presented findings and recommendations to client sponsors.
Clientele included State Farm Insurance, United Airlines, Allstate Insurance, Northwestern University, FedEx, HealthSouth, SC Johnson, PepsiAmericas, CDW, and Freddie Mac.
1999 : 2005
Deloitte & Touche
Manager
Provided development support to five PeopleSoft implementations for large clients in various industries.
Utilized a variety of PeopleSoft utilities for client requested additions, customizations, and reports. Specifically, these tools included, but were not limited to, Application Designer, SQR, PeopleCode, Import Manager, Process Scheduler, Security Manager, Tree Manager, and PeopleSoft Query.
Major clients included RCN, Red Roof Inns, and the Internet Shopping Network.
1998 : 1999
Technology Solutions Company
Associate Consultant - PeopleSoft Practice
Company:
PayPal
About
Specialties: CISSP, CISA, CISM