Operational Security Management Specialist
Bp
Entity:
Technology
Job Family Group:
Job Description:
ROLE SYNOPSIS:
BP has embarked on an ambitious plan to modernize and transform as an integrated energy company, using digital technologies to drive efficiency, effectiveness, and new business models. As an Operational IS Specialist, you will be responsible for supporting information security and risk activities for Operational Security Management.
The Security Operations Center is responsible for responding to incidents, performing initial triage, threat hunting, and working alongside members of the Cyber Security Incident Response Team (CSIRT) and the various business entities in bp. The SOC Analyst is the first point of contact many have with the Digital Security organization and therefore we also have an ambassadorial role in promoting Digital Security to wider bp. As such, they must be knowledgeable about the various business segments and be able to answer, or direct to others, security-related questions covering a wide range of topics.
Reporting to a SOC Lead in Houston, you will work as part of the global team to provide security across the enterprise that enables business activity and promotes safe and secure operations.
This role will require shift work during US morning, afternoon and early evening hours with coverage 7 days per week based on a rotating schedule. Typically, analysts will be required to be on shift one weekend every three weeks. The exact working hours and shift pattern has not been set and is subject to change.
KEY ACCOUNTABILITIES:
- Undertake Incident detection and response activities in the SOC
- Analyze and investigate security alerts and incidents with appropriate protocol in support of the business
- Develop the implementation and application of relevant operating processes and procedures, and ensure all activities adhere to the relevant standards.
- Ensure data accuracy within the SIEM, case management system and others.
- Liaise with various teams and senior partners across bp to advise on information security and risk and manages third party service providers that are helping to deliver related projects as required.
- Seeks opportunities for continuous improvement and automation within the specialism in response to internal and external developments.
- Develop and undertake threat hunting opportunities within in the SOC in addition to liaising with the cyber intelligence team to identify proactive risk mitigation measures.
- Follows bp's Code of Conduct and models bp's Values & Behaviors.
ESSENTIAL EDUCATION:
- Bachelor's degree (e.g., Information Security, Network Security, Information Assurance, Information Technology, Computer Science) or equivalent experience and/or qualifications.
ESSENTIAL EXPERIENCE AND JOB REQUIREMENTS:
- L1 SOC experience
- Knowledge of SIEM and Cyber toolsets
- EDR experience
- Knowledge of cloud platforms such as AWS and Azure
- Threat Hunting methods
- Strong problem-solving skills as applied to technical solutions
- Relevant experience of information security and risk
- Sound technical knowledge of security as applied to IT Networks, systems, and applications
- Strong stakeholder management skills
Technical capability
Essential:
- Good understanding of security fundamentals including network and host forensics, log analysis and basic malware analysis
- Deep technical analysis ability
- Understand the basics of email routing
- Understanding of core enterprise technologies such as Active directory, Windows OS, MAC OS, Linux etc.
- Understanding of adversarial attack patterns, vulnerabilities and TTPs
- Strong written and verbal communication skills
Leadership and EQ
- You embrace a culture of change and agility, evolving continuously, adapting to our changing world
- You are an effective teammate, looking beyond your own area/organizational boundaries to consider the bigger picture and/or perspective of others, while understanding cultural differences
- You continually enhance your self-awareness and seek input from others on your impact and effectiveness
- Well organized, you balance proactive and reactive approaches and multiple priorities to complete tasks on time
- You apply judgment and common sense – you use insight and good judgment to inform actions and respond to situations as they arise
- You follow BP's Code of Conduct and demonstrate strong leadership through BP's Leadership Expectations and Values & Behaviours
DESIRABLE CRITERIA
- COMPTIA Security+ / CYSA+ CASP+
- SANS Certification GSOC, GCIH, GCIA
- CISSP Certification and accreditation
- Certified Ethical Hacker – CEH
- Blue Team Level 1 Certification
- Cisco Certifications (CCNA or similar)
- Similar/ higher certifications
Why Join Us:
We support our people to learn and grow in a diverse and challenging environment. We believe that our team is strengthened by diversity. We are committed to providing an inclusive environment in which everyone is respected and treated fairly.
We recognize that there are many aspects of our employees’ lives, so we offer benefits to enable your work to fit with your life. These benefits can include flexible working options, collaboration spaces in a modern office environment and many others! Reinvent your career as you help our business meet the challenges of the future. Apply now!
Travel Requirement
Relocation Assistance:
Remote Type:
Skills:
Legal Disclaimer:
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, socioeconomic status, neurodiversity/neurocognitive functioning, veteran status or disability status. Individuals with an accessibility need may request an adjustment/accommodation related to bp’s recruiting process (e.g., accessing the job application, completing required assessments, participating in telephone screenings or interviews, etc.). If you would like to request an adjustment/accommodation related to the recruitment process, please contact us.
If you are selected for a position and depending upon your role, your employment may be contingent upon adherence to local policy. This may include pre-placement drug screening, medical review of physical fitness for the role, and background checks.