|
Cybersecurity Risk Management and Strategy Disclosure
|12 Months Ended
Dec. 31, 2024
|Cybersecurity Risk Management, Strategy, and Governance [Line Items]
|Cybersecurity Risk Management Processes for Assessing, Identifying, and Managing Threats [Text Block]
|Risk Management and Strategy
In connection with our enterprise risk management process, we identify, prioritize and monitor key risks that may affect the Company, including risks from cyber threats. Our cybersecurity program is aligned to the National Institute of Standards and Technology (NIST) Cybersecurity Framework. We have enterprise-wide security policies, standards and controls that incorporate best practices in security engineering, technology architecture and data protection, which support regulatory compliance. Our program includes encryption, data masking technology, data loss prevention technology, authentication technology, entitlement management, access control, anti-malware software and transmission of data over private networks, among other procedures designed to protect against unauthorized access to information. We also implemented specialized programs, such as enterprise-wide communications, presentations, phishing simulations and focused training for specific roles, as well as a general cybersecurity training program required for all employees. We also engage third parties to perform regular reviews of our security framework controls to promote objectivity. Our processes to identify, assess and manage material risks of cyber threats include risks associated with third party service providers, including cloud-based platforms. We believe that these processes provide us with a comprehensive assessment of potential cyber threats.
We maintain cybersecurity protection measures with respect to our information technology, including our customer data, and, in some cases, the monitoring and operation of our treatment, storage, pumping, and pipeline infrastructure. We rely on our information technology systems in connection with the operation of our business, especially with respect to customer service and billing, accounting and, in some cases, the monitoring and operation of our treatment, storage, pumping, and pipeline infrastructure. In addition, we rely on our systems to track our utility assets and to manage maintenance and construction projects, materials and supplies, and our human resource functions.
To date, risks from cybersecurity threats and incidents have not materially affected the Company, including its business strategy, financial condition, or results of operations. Refer to Item 1A – Risk Factors for additional information.
|Cybersecurity Risk Management Processes Integrated [Flag]
|true
|Cybersecurity Risk Management Processes Integrated [Text Block]
|In connection with our enterprise risk management process, we identify, prioritize and monitor key risks that may affect the Company, including risks from cyber threats. Our cybersecurity program is aligned to the National Institute of Standards and Technology (NIST) Cybersecurity Framework. We have enterprise-wide security policies, standards and controls that incorporate best practices in security engineering, technology architecture and data protection, which support regulatory compliance. Our program includes encryption, data masking technology, data loss prevention technology, authentication technology, entitlement management, access control, anti-malware software and transmission of data over private networks, among other procedures designed to protect against unauthorized access to information. We also implemented specialized programs, such as enterprise-wide communications, presentations, phishing simulations and focused training for specific roles, as well as a general cybersecurity training program required for all employees
|Cybersecurity Risk Management Third Party Engaged [Flag]
|true
|Cybersecurity Risk Third Party Oversight and Identification Processes [Flag]
|true
|Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Flag]
|false
|Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Text Block]
|To date, risks from cybersecurity threats and incidents have not materially affected the Company, including its business strategy, financial condition, or results of operations. Refer to Item 1A – Risk Factors for additional information.
|Cybersecurity Risk Board of Directors Oversight [Text Block]
|Role of the Board of Directors - The Board of Directors has a Risk and Investment Policy Committee (“RP Committee”) whose primary purpose is to assist the Board of Directors in fulfilling its oversight responsibilities. The RP Committee oversees a number of the Company’s risk management practices, including cybersecurity risks. Our Chief Information Officer provides updates on cybersecurity risks, threats, key developments in policies and practices, and related risk exposures to the RP Committee at least quarterly, and more often as needed. When covered during an RP Committee meeting, the Chairperson of the RP Committee reports on its discussions to the full Board of Directors. Additionally, management provides an update to the full Board of Directors at least once a year, and more often as needed. The Board of Directors annually reviews and approves the capital and operating budgets, ultimately reviewing and approving the amount spent on cybersecurity measures.
|Cybersecurity Risk Board Committee or Subcommittee Responsible for Oversight [Text Block]
|The Board of Directors has a Risk and Investment Policy Committee (“RP Committee”) whose primary purpose is to assist the Board of Directors in fulfilling its oversight responsibilities.
|Cybersecurity Risk Process for Informing Board Committee or Subcommittee Responsible for Oversight [Text Block]
|When covered during an RP Committee meeting, the Chairperson of the RP Committee reports on its discussions to the full Board of Directors.
|Cybersecurity Risk Role of Management [Text Block]
|Role of Management - Our cybersecurity program is overseen by a cross-functional committee of senior business leaders and led by our Chief Information Officer. This management committee meets bimonthly and is charged with overseeing our cybersecurity strategy, ensuring that cyber risk is managed, and that the program is aligned to business goals and objectives. Our Chief Information Officer has formal education in information technology; has multi-year experience working in the Company’s information and technology function; and receives periodic training and education on cybersecurity-related topics.
|Cybersecurity Risk Management Positions or Committees Responsible [Flag]
|true
|Cybersecurity Risk Management Positions or Committees Responsible [Text Block]
|Our cybersecurity program is overseen by a cross-functional committee of senior business leaders and led by our Chief Information Officer.
|Cybersecurity Risk Management Expertise of Management Responsible [Text Block]
|Our Chief Information Officer has formal education in information technology; has multi-year experience working in the Company’s information and technology function; and receives periodic training and education on cybersecurity-related topics.
|Cybersecurity Risk Process for Informing Management or Committees Responsible [Text Block]
|This management committee meets bimonthly and is charged with overseeing our cybersecurity strategy, ensuring that cyber risk is managed, and that the program is aligned to business goals and objectives.
|Cybersecurity Risk Management Positions or Committees Responsible Report to Board [Flag]
|true
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef