Information Security Lead - (Risk, NIST, ISO)
Blueprint Power
Entity:
Technology
Job Family Group:
Job Description:
Summary about the role:
To enable the world to reach net zero, bp are looking for the brightest digital specialists to drive innovation as it transitions from an International Oil Company (IOC) to an International Energy Company (IEC).
Passionate about identifying and crafting security solutions that make bp a cyber resilient organisation, the Information Security team partner with the business to help them understand cyber risk and take personal ownership for cyber security!
We’re looking for curious minds who are driven by opportunities to build value and deliver secure digital products and services to advance the global energy transition.
Let me tell you about the role
In this role you will lead the delivery of security activities to ensure swift business value realization. This role focuses on information security and digital security risk activities with the following key accountabilities:
Relationship and Customer management: Act as the main point of contact for all Digital Security enquiries within the relevant business portfolio. Build strong partnerships and influence positive change that serves the commercial ambitions.
Security Expertise: Provide technical expertise, implementing digital security operating processes aligned to security standards across all value stream activities.
Safety: Prioritize cyber and operational safety, improve digital security controls through architecture designs and process to maintain our cyber posture and react to new threats.
What you will deliver
Monitor and Assess: Keep a vigilant eye on our digital domains, using innovative tools to detect and assess threats. This includes collaborating on the identification, assessment and management of risk
Strategize and Protect: Develop and implement robust security measures, crafting a secure environment for our data and systems.
Respond and Recover: Partner Customers during security incidents with a calm, calculated approach, minimising impact and guiding recovery efforts.
Educate and Advocate: Champion security awareness across the organisation, encouraging vigilance and responsibility.
Innovate and Guide: Provide strategic insights to teams, ensuring security is a cornerstone of product development and business operations.
Protect & Defend: Proactively mitigate cyber risks and coordinate the remediation of findings from vulnerability scans, supplier assurance, compliance reviews, and support the digital Delivery teams in maintaining high levels of cyber hygiene.
What you will need to be successful (experience and qualifications)
Degree Educated, preferably BSc in Information Security or equivelent.
Certified Information Security Manager (CISM) or Certified Information Systems Security Professional (CISSP) or working towards certification.
Knowledge of security frameworks such as ISO 27001/2, NIST, and CIS framework is highly helpful.
Proven track record working in internal or external information security roles, including leading teams or junior information security practitioners.
Strong influencing skills that enable you to communicate technical information to both technical and non-technical audiences, clearly and concisely.
Deep technical knowledge, and experience delivering security solutions and providing technical advice.
A track record of delivering business benefits by balancing the need to protect the organizations commercial ambitions and maintain operations of the core value streams.
Experience working within developing digital ecosystems, with multiple partners and environments, ensuring suitable digital security standards and practices delivered and maintained.
Good understanding of enterprise and operational risk management, risk governance and compliance requirements.
Excellent project management skills, with the ability to lead multiple projects simultaneously.
Able to adapt to shifting priorities, demands, and timelines and keep customers abreast of impact (potential or actual) to defined delivery timescales and/or business impact.
Ability to use technology, data, and insights to enable decision making
About bp
bp is a global energy business with a purpose to reimagine energy for people and our planet. We aim to be a very different kind of energy company by 2030, helping the world reach net zero and improving people’s lives. We are committed to creating a diverse and inclusive environment where everyone can grow and succeed. Join bp and become part of the team building our future!
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Travel Requirement
Relocation Assistance:
Remote Type:
Skills:
Legal Disclaimer:
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, socioeconomic status, neurodiversity/neurocognitive functioning, veteran status or disability status. Individuals with an accessibility need may request an adjustment/accommodation related to bp’s recruiting process (e.g., accessing the job application, completing required assessments, participating in telephone screenings or interviews, etc.). If you would like to request an adjustment/accommodation related to the recruitment process, please contact us.
If you are selected for a position and depending upon your role, your employment may be contingent upon adherence to local policy. This may include pre-placement drug screening, medical review of physical fitness for the role, and background checks.