ConocoPhillips Company

L48 IT/OT Security Lead

ConocoPhillips Company

Welcome to ConocoPhillips, where innovation and excellence create a platform for opportunity and growth. Come realize your full potential here.Who We AreWe are one of the world's largest independent exploration and productioncompanies, based on proved reserves and production of liquids and natural gas. With operations and activities in 13 countries, we explore for, develop, and produce crude oil and natural gas globally. We are challenged with an important job to safely find and deliver energy to the world. Our employees are critical to our success, and with them we power civilization.We're grounded by our SPIRIT Values - safety, people, integrity, responsibility, innovation, and teamwork. These values position us to deliver strong performance in a dynamic business - but not at all costs. We believe it's not just what we do - it's how we do it - that sets us apart.Fostering an Inclusive Work EnvironmentTo deliver superior performance, we create an environment that respects the contributions and differences of every individual. Wherever possible, we use these differences to drive competitive business advantage, personal growth and, ultimately, create business success.Job SummaryThe L48 IT/OT Security organization is seeking a dedicated security professional to join our team as the IT/OT Security Lead. This role offers an excellent opportunity to develop expertise across key security domains while collaborating with expert business colleagues and security professionals. The successful candidate will be responsible for implementing global and regional Information Technology and Operational Technology security policies and procedures across the L48 Business Unit, which operates in Eagle Ford, Bakken, Delaware Basin and Midland Basin.This position reports to the L48 IT/OT Security Director within the Lower 48 Digital Technologies organization. Additionally, the L48 IT/OT Security organization is an integral part of the broader global CISO organization.Position is located in Houston or Midland, Texas. Full-time onsite presence at our office location Monday through Friday.Position OverviewYour responsibilities may include:Threat and Vulnerability Management (TVM)
  • Lead in monitoring and tracking vulnerability scanning results across L48 Business Units IT and OT environments
  • Maintain vulnerability management documentation and metrics
  • Coordinate Support patch management between Enterprise IT/OT Security and business units
  • Track remediation progress and prepare status reports
  • Identify and document system exceptions and compensating controlsBusiness Continuity Planning (BCP)
    • Maintain and update L48 business continuity documentation
    • Coordinate L48 BCP testing exercises in collaboration with Enterprise BCP
    • Maintain contact lists and notification procedures for L48
    • Document results of BCP tests and exercises
    • Facilitate business impact analysis (BIA) data collectionRisk Assessment
      • Liaise L48 business units with Corporate GRC (Governance, Risk & Compliance) team
      • Assist L48 business units with security risk assessments as needed
      • Track remediation of identified risksSecurity Awareness
        • Support the Corporate IT/OT Security team with security awareness campaigns and events especially for Cybersecurity Awareness month.
        • Coordinate and schedule security training sessions for L48
        • Maintain L48 security awareness metrics and reportingBasic/Required:
          • Must be legally authorized to work in the United States on a full-time basis for anyone other than current employer
          • Bachelor's degree or higher in Information Systems, Computer Science, related field, or foreign equivalent
          • Current valid driver license
          • 7 or more years of experience in Information Security or Information Technology
          • Willing and able (with or without reasonable accommodations) to travel 25% of the time on a yearly basisPreferred:
            • 1 or more years of experience in oil and gas industry
            • Advanced level of knowledge of IT and OT security concepts
            • Beginner level of knowledge with ISA/IEC 62443 standards, OT security frameworks (NIST SP 800-82, MITRE ATT&CK)
            • Advanced level of proficiency in attention to detail and organizational skills
            • Eager to learn and develop security expertise
            • Effective written and verbal communication skills
            • Ability to work independently while maintaining team collaboration
            • Commitment to continuous learning and professional development
            • Listens actively and invites new ideas for exchanged opinions, then influences and acts to drive positive performance and achieve results
            • Builds positive relationships based on trust and seeks collaboration across organizational boundaries to achieve goalsApply Before:March 4, 2025Sponsorship:ConocoPhillips' sponsorship for employment authorization in the U.S. is NOT available for this position.EEO:In the US, ConocoPhillips is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, veteran status, gender identity or expression, genetic information, or any other legally protected status.
              #J-18808-Ljbffr

              About Us

              ConocoPhillips Company

              Company Information

              ConocoPhillips Company
              Houston