Cybersecurity Risk and Controls Analyst 1
EVOLUTION WELL SERVICES OPERATING L
Cybersecurity Risk and Controls Analyst 1
Beusa The Woodlands Corporate Office - The Woodlands, TX 77380
Position Overview
Level: Experienced Position Type: Full Time Job Shift: Day Education Level: 4 Year Degree Travel Percentage: up to 10%
Position Description
Cybersecurity Risk and Controls Analyst
Department: Information Technology
Job Status: Full Time
FLSA Status: Salary Exempt
Reports To: Cybersecurity Manager
Location: The Woodlands, TX
Amount of Travel Required: Less than 5%
Work Schedule: Monday Friday, 8am – 5pm
Positions Supervised: n/a
AIP: Level 7
POSITION SUMMARY:
Beusa Energy is seeking a Cybersecurity Risk & Controls Analyst to help build and scale our cybersecurity governance, risk, and compliance (GRC) program across both enterprise IT and operational technology (OT) environments.
This role is responsible for defining, implementing, and continuously improving the controls that protect Beusa Energy's systems, infrastructure, and operations. You will translate cybersecurity risks and regulatory expectations into practical, enforceable controls that align with real world operating conditions in the energy sector.
As Beusa Energy continues to grow, this role will be central to ensuring cybersecurity is embedded into how we operate. You will help establish consistency, accountability, and visibility in how cybersecurity risk is identified, mitigated, and communicated across the organization.
ESSENTIAL FUNCTIONS:
- Identify, assess, and manage cybersecurity risks across IT and OT environments, maintaining a clear and actionable risk register.
- Develop, implement, and maintain cybersecurity policies, standards, and procedures aligned with Beusa Energy's risk profile and operational environment.
- Design, document, and manage a centralized control framework that maps to industry standards (e.g., NIST CSF, ISO 27001) and regulatory requirements.
- Lead and support enterprise risk assessments across IT and OT environments, including risk identification, analysis, tracking, and reporting.
- Partner with IT, engineering, and field operations teams to ensure security controls are practical, implemented effectively, and embedded into daily workflows.
- Support compliance initiatives and audits (e.g., SOC 2, ISO 27001), including control design, evidence collection, and audit coordination.
- Maintain risk registers, control inventories, and remediation plans, providing clear visibility and reporting to leadership.
- Support third-party risk management processes, including vendor risk assessments and ongoing monitoring.
- Collaborate with cybersecurity and technology teams to align security tooling, monitoring, and detection capabilities with defined controls and compliance objectives.
- Assist in developing and delivering security awareness, policy training, and control adoption initiatives.
- Produce clear, executive-level reporting on risk posture, control effectiveness, and program maturity.
- Continuously evaluate and improve governance processes, documentation, and control effectiveness to support a scalable cybersecurity program.
- Performs other related duties as assigned to assist with successful operations and business continuity.
Qualifications
POSITION REQUIREMENTS:
- Successfully passes all applicable general pre-employment testing, including but not limited to: background check, pre-employment drug screening, pre-employment fit tests, pre-employment aptitude and/or competency assessment(s).
- Possesses a valid U.S. Driver's License. Employment is contingent upon meeting the company's driving standards, including an acceptable Motor Vehicle Record (MVR) in accordance with the company's policy.
- Daily overtime required and in-person, predictable attendance.
- Must be legally authorized to work in the United States without the need for sponsorship.
- Must be at least 18 years of age or older.
EDUCATION/EXPERIENCE LEVEL
- Bachelor's degree in Cybersecurity, Information Technology, or related field. An equivalent combination of education, specialized training, and relevant professional experience may be considered in lieu of a formal degree.
- 3 to 6 years of experience in cybersecurity GRC, risk management, controls, or related roles.
- Strong understanding of cybersecurity frameworks and control standards, such as: NIST Cybersecurity Framework (CSF). ISO 27001. SOC 2.
- Experience designing, implementing, and assessing security controls in real-world environments.
- Familiarity with risk assessment methodologies and control testing practices.
- Experience supporting audits and managing evidence for compliance initiatives.
- Ability to translate technical and regulatory requirements into clear, actionable controls.
- Strong analytical, organizational, and communication skills with the ability to work cross-functionally.
QUALIFICATIONS, SKILLS, COMPETENCIES, AND ABILITIES
- Experience in energy, critical infrastructure, or industrial environments.
- Familiarity with OT/ICS cybersecurity risks and control considerations.
- Experience with GRC or compliance automation tools (e.g., Drata or similar platforms).
- Understanding of third-party risk management practices and frameworks.
- Relevant certifications such as CISA, CRISC, CISSP, or ISO 27001 Lead Implementer.
PHYSICAL REQUIREMENTS/WORK ENVIRONMENT
The physical demands and work environment described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Employee works indoors in an office setting, primarily sitting for extended periods at a desk station. The role requires keyboarding and repetitive motions with wrists, hands, and fingers. Vision abilities required include close vision and the ability to adjust focus while reading and staring at a computer monitor. The Employee must speak clearly and audibly, and have the ability to hear, understand, and distinguish speech and other sounds (e.g., building alarms) from in-person speech, telephone, or remote communication. While in the office, the Employee may be called upon to stand, kneel, push, pull, reach overhead, stoop, crouch, climb, and lift; therefore, the Employee should be able to independently lift 25 lbs. No adverse environmental conditions are expected.
Work hours may include early morning, late evenings, and weekends, depending on business necessity.
AAP/EEO STATEMENT
The Company is committed to the cause of equal employment opportunity for all employees and applicants, thus abiding by all applicable state and federal laws. Our practices regarding employment, job promotion, compensation, training, and termination do not discriminate on the basis of race, color, religious creed, age, sex, national origin, veteran's status, disability, pregnancy, genetic information, or any other legally protected status. It is expected that all employees, both management and staff, will fully support these nondiscriminatory policies.
The company has reviewed this job description to ensure essential functions and duties have been included. It is not intended to be an exhaustive list of all functions, responsibilities, skills, and abilities.
Last Revised (05/2026)
- ...organization is hiring for a Business Analyst to join their Cybersecurity team in Spring, TX. This resource is... ...checklists, and tracking logic for control validation. They will be building... ...implement simple scoring models for risk and compliance (low/medium/high, weighted...Risk
$34 per hour
...We are currently seeking a Jr. GRC/Cybersecurity Analyst for a prominent client of ours. This position... ...of security policy, compliance, risk assessment, and IT operations ~ Manage... ...frameworks such as NIST, ISO 27001, and CIS Controls Experience evaluating application...RiskInternship$63k - $87k
...activities. Effective management of compliance risk is a fundamental element of regulatory risk oversight... ...to determine the effectiveness of internal controls in managing compliance and procedural risks. A QA Analyst primarily conducts detailed audits of loan files...RiskWork experience placementWork at officeFlexible hours$37.5 - $40.85 per hour
...The Quality Control Servicing department within EML functions as a first line of defense, performing independent and objective... ...of internal controls in managing compliance and procedural risks. A QC Analyst primarily conducts detailed audits of servicing functions to...RiskWork experience placementWork at officeLocal areaFlexible hours$105.05k - $161.8k
...strategic and detail-driven Cybersecurity Policy Writer & Governance Lead... ...regulatory compliance, and embedding risk-aware practices across the... ..., ISO/IEC 27001, CIS V8.1, General Data Protection Regulation... ...between cybersecurity controls, enterprise risk management practices...RiskTemporary workFlexible hours- ...Insight Global is looking for a project controls manager to sit in The Woodlands. The day-to-day responsibilities include overseeing daily project planning, scheduling, budgeting, risk management, and reporting. Responsibilities include tracking project progress, monitor...Risk
$130.7k - $205.2k
...Assurance Role Summary HP Cybersecurity is seeking a Product Security... ...(SRS) and software integrity controls (e.g., signing and... ...controls, enabling a streamlined and risk-based product security lifecycle... ...time Shift - Shift 1, 0% premium (United States of...RiskFull timeTemporary workLocal areaRelocationFlexible hoursShift work$24 - $27 per hour
...IT Business Consultant (Cybersecurity Compliance Analyst) Key Details Job Title: IT Business Consultant... ...of cybersecurity policy, compliance, risk management, and IT operations. This role... ...clear documentation and evidence of control effective nessIdentify and...RiskContract workH1b$120k - $140k
...and external project teams to support cost control monitoring, analysis, and reporting.... ...developing and maintaining the Issue and Risk Register, as well as Cost Quantitative Risk... ...religious observance, please call us toll free at 1 (***) ***-**** or send us an email ( or...RiskWork experience placementLive inWork at officeLocal areaFlexible hours- ...organization is hiring for a Business Analyst to join their Cybersecurity team in Spring, TX. This resource is... ...checklists, and tracking logic for control validation. They will be building... ...implement simple scoring models for risk and compliance (low/medium/high, weighted...RiskOngoing contract
- ...IT Business Consultant (Cybersecurity Compliance Analyst) The IT Business Consultant (Cybersecurity Compliance... ...of cybersecurity policy, compliance, risk management, and IT operations. This... ...clear documentation and evidence of control effectiveness Identify and...Risk
- ...energy organization is seeking an experienced Manager, Project Controls to provide oversight and assurance for large, complex capital projects... ...leadership role focused on cost and schedule predictability, risk management, and governance, working closely with Project and...Risk
- ...Job – IT Business Consultant (Cybersecurity Compliance Analyst) Location: Spring TX – onsite Duration... ...Analyst to support compliance evaluations, risk assessments, audit readiness, and... ...remediation or compensating controls. Collaborate with GRC, Cybersecurity...Risk
- Job Title: Risk & Compliance Automation Analyst Location: Spring, TX Duration: 4+ Month Contract Industry: Technology Job Summary We are seeking a Risk... ..., validate, and organize risk, compliance, vendor, and control-related data. Perform data quality checks,...RiskContract work
$92.6k - $213.5k
...Executive Compensation Analyst This role has been designed as ‘Hybrid’ with an expectation... ...executive compensation governance, controls and confidentiality. Education and Experience... ...employment agencies does so at their own risk, and HPE disclaims liability for any...RiskTemporary workWork experience placementWork at office2 days per week- ...Business Analyst - Endur Date: May 21, 2026 Location: Spring, TX, US, 77389 Company... ...to deliver scalable trading and risk management capabilities. Job Duties &... ...alignment with target operating model, risk controls, and regulatory requirements Collaborate...RiskWork experience placement
$75k - $85k
...looking for a highly motivated and curious Analyst, Strategic Growth to join our team. This... ...and external data to identify trends, risks, and opportunities Support financial modeling... ...Required Skills & Qualifications ~1–3 years of experience in strategy, business...RiskFull timeWork at officeLocal areaImmediate startRemote workFlexible hours- ...Trading Market Risk Advisor - Expert Location: Spring, TX, US, 77389 Company Name: ExxonMobil At ExxonMobil, our vision is to... ...Commercial (Trading, Origination, Structuring) teams. Execute daily risk control processes to generate reports, including trade entries and data...RiskFull timePart timeWork experience placementFlexible hours
$60 per hour
...Lead end-to-end execution of large-scale cybersecurity programs, ensuring alignment with scope,... ...-party partners Proactively identify risks and escalate issues with clear... ...readiness efforts Oversee implementation of control frameworks and support compliance efforts...RiskContract work$11 per hour
...Shortage Control Associate Join our team as a Shortage Control Associate and contribute... ...presence at store entrances, exits, and high-risk areas will contribute to mitigating theft... ...Experience and Responsibilities: ~1+ years of experience in customer service,...RiskHourly payPart timeFlexible hoursShift workNight shift$105.5k - $243k
...multi-workstream programs stay on track, risks are actively managed, and commitments... ...role focused on driving progress across Cybersecurity and IT. Key Responsibilities... ...HashiCorp Vault Authentication & Access Controls Strong understanding of MFA, SSO,...RiskWork experience placementWork at officeLocal areaImmediate start2 days per week- ...Sr Salesforce Business Systems Analyst The Business Systems Analyst will be responsible for the administration... ...for business applications. Work closely with cybersecurity analysts to implement security controls, conduct vulnerability assessments, respond to incidents...Work experience placementLocal area
- ...community. You aren't afraid to take risks. You appreciate a growth path... ..., IDS/IPS, and other advanced controls-while applying DevOps... ...Coordinate with stakeholders across Cybersecurity, Projects, and internal... ...required for qualification: o 1): Network security firewall...RiskLong term contract
- ...Your Future with Qualus as a Lead Project Controls Specialist in our Program Management... ...organization supporting governance, oversight and risk projects. This position requires... ...and secure data exchange. The firm has over 1,800 professionals, with offices throughout...RiskTemporary workWork experience placementFlexible hours
- ...Your Future with Qualus as a Lead Project Controls Specialist in our Program Management... ...organization supporting governance, oversight and risk projects. This position requires... ...and secure data exchange. The firm has over 1,800 professionals, with offices throughout...RiskFull timeTemporary workWork experience placementFlexible hours
$120k - $140k
...interface with internal and external project teams to support cost control monitoring, analysis, and reporting. You'll provide cost... ...You'll lead or assist in developing and maintaining the Issue and Risk Register, as well as Cost Quantitative Risk Analyses (QRAs)....RiskWork experience placementWork at officeLocal areaFlexible hours$91k - $147.2k
...Lead (duration based through year end of 2026), will provide the control and the collation of performance to ensure a successful... ...Financial Modeling, Financial Reporting and Analysis, Financial Risk Management (FRM), Financial Statement Analysis, Financial Transparency...RiskFull timeTemporary workLocal areaRemote workWorldwide$92.6k - $213.5k
...Description HPE is seeking a driven Marketing Analyst to support the Strategic Planning in... ...performance data to identify opportunities and risks. Manage analytics requests related to... ...Collection Management (Inactive), Data Controls, Design Thinking, Empathy, Follow-Through...RiskWork experience placementWork at officeShift work2 days per week$105.65k - $127.28k
Young World Physical Education seeks an Associate Principal At Risk for the 2026-2027 School Year at Spring HS in Texas. This full-time position involves assisting staff in managing at-risk students, promoting academic achievement, and fostering positive school climate...RiskFull time- ...Description & Requirements Maximus is currently hiring for Quality Control Analysts to join our Veterans Evaluation Services (VES) team. This is a remote opportunity. The Quality Control Analyst is responsible for reviewing Medical Disability Examination (“MDE”) reports...Full timeContract workCurrently hiringWork at officeRemote workWork from homeHome officeMonday to Friday
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Risk and Controls Analyst 1. Be the first to apply!
- risk assurance Shenandoah, TX
- technology risk Shenandoah, TX
- cyber security Shenandoah, TX
- cybersecurity software engineer Shenandoah, TX
- IT cyber security Shenandoah, TX
- cybersecurity rmf analyst
- comptia cybersecurity analyst
- junior cyber security consultant
- cyber-security operations specialist
- microsoft cybersecurity analyst



