2 unchanged sentences
CYBERSECURITY
−Removed: Murphy’s cybersecurity environment and risk strategy is broadly managed by the Company’s Information Technology (IT) group, which oversees the Company’s IT and Operational Technology (OT) infrastructure.
+Added: Murphy’s cybersecurity environment and risk strategy is broadly managed by the Company’s IT group, which oversees the Company’s IT and OT infrastructure.
Within the IT group, the Murphy Cybersecurity Team (MCT) is specifically responsible for monitoring and managing security of the enterprise IT and OT network and systems, including developing and deploying administrative policies, technical controls, and safety protocols necessary to prevent unauthorized access, theft, damage, or loss of Company data or systems.
1 unchanged sentence
The Incident Management Team (IMT) is responsible for responding to active security threats and incidents as they occur.
−Removed: The Chief Information Officer oversees the IT group and is a member of the IMT, and provides briefings to the CEO, the executive leadership team, and the Audit Committee of the Board regarding cybersecurity risks, strategy, and management at least annually .
−Removed: The Audit Committee is ultimately responsible for overseeing cybersecurity strategy and ensuring that management has sufficient resources, programs, and processes in place to identify, evaluate, manage, and mitigate relevant cybersecurity risks to which Murphy is exposed and to implement processes and programs to manage cybersecurity risks and mitigate any incidents.
+Added: The Chief Information Officer (CIO) oversees the IT group and, either personally or through a designated representative, serves as a member of the IMT.
+Added: The CIO reports directly to the Chief Technology Officer who briefs the executive leadership team, and the Audit Committee of the Board regarding cybersecurity risks, strategy, and management at least annually .
+Added: The Audit Committee is ultimately responsible for overseeing cybersecurity strategy and ensuring that management has sufficient resources, programs, and processes in
+Added: Cybersecurity - Continued
+Added: place to identify, evaluate, manage, and mitigate relevant cybersecurity risks to which Murphy is exposed and to implement processes and programs to manage cybersecurity risks and mitigate any incidents.
The Audit Committee also reports material cybersecurity risks to the Board as appropriate.
14 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.