Cybersecurity Risk and Controls Analyst 1
EVOLUTION WELL SERVICES OPERATING L
Cybersecurity Risk and Controls Analyst Job Description Department: Information Technology
Job Status: Full Time FLSA Status: SalaryExempt Reports To: Cybersecurity Manager Location: The Woodlands, TX Amount of Travel Required: Less than 5% Work Schedule: Monday Friday, 8am - 5pm
Positions Supervised: n/a AIP: Level 7 POSITION SUMMARY: Beusa Energy is seeking a Cybersecurity Risk & Controls Analyst to help build and scale our cybersecurity governance, risk, and compliance (GRC) program across both enterprise IT and operational technology (OT) environments. This role is responsible for defining, implementing, and continuously improving the controls that protect Beusa Energy's systems, infrastructure, and operations. You will translate cybersecurity risks and regulatory expectations into practical, enforceable controls that align with real world operating conditions in the energy sector. As Beusa Energy continues to grow, this role will be central to ensuring cybersecurity is embedded into how we operate. You will help establish consistency, accountability, and visibility in how cybersecurity risk is identified, mitigated, and communicated across the organization. ESSENTIAL FUNCTIONS: (The following duties and responsibilities are all essential job functions, as
defined by the ADA, except for those that begin with the word "may")
Employee works indoors in an office setting, primarily sitting for extended periods at a desk station. The role requires keyboarding and repetitive motions with wrists, hands, and fingers. Vision abilities required include close vision and the ability to adjust focus while reading and staring at a computer monitor. The Employee must speak clearly and audibly, and have the ability to hear, understand, and distinguish speech and other sounds (e.g., building alarms) from in-person speech, telephone, or remote communication. While in the office, the Employee may be called upon to stand, kneel, push, pull, reach overhead, stoop, crouch, climb, and lift; therefore, the Employee should be able to independently lift 25 lbs. No adverse environmental conditions are expected. Work hours may includeearly morning, late evenings, and weekends, depending on business necessity. AAP/EEO STATEMENT The Company is committed to the cause of equal employment opportunity for all employees and applicants, thus abiding by all applicable state and federal laws. Our practices regarding employment, job promotion, compensation, training, and termination do not discriminate on the basis of race, color, religious creed, age, sex, national origin, veteran's status, disability, pregnancy, genetic information, or any other legally protected status. It is expected that all employees, both management and staff, will fully support these nondiscriminatory policies. The company has reviewed this job description to ensure essential functions and duties have been included. It is not intended to be an exhaustive list of all functions, responsibilities, skills, and abilities. Last Revised (05/2026)
Job Status: Full Time FLSA Status: SalaryExempt Reports To: Cybersecurity Manager Location: The Woodlands, TX Amount of Travel Required: Less than 5% Work Schedule: Monday Friday, 8am - 5pm
Positions Supervised: n/a AIP: Level 7 POSITION SUMMARY: Beusa Energy is seeking a Cybersecurity Risk & Controls Analyst to help build and scale our cybersecurity governance, risk, and compliance (GRC) program across both enterprise IT and operational technology (OT) environments. This role is responsible for defining, implementing, and continuously improving the controls that protect Beusa Energy's systems, infrastructure, and operations. You will translate cybersecurity risks and regulatory expectations into practical, enforceable controls that align with real world operating conditions in the energy sector. As Beusa Energy continues to grow, this role will be central to ensuring cybersecurity is embedded into how we operate. You will help establish consistency, accountability, and visibility in how cybersecurity risk is identified, mitigated, and communicated across the organization. ESSENTIAL FUNCTIONS: (The following duties and responsibilities are all essential job functions, as
defined by the ADA, except for those that begin with the word "may")
- Identify, assess, and manage cybersecurity risks across IT and OT environments, maintaining a clear and actionable risk register.
- Develop, implement, and maintain cybersecurity policies, standards, and procedures aligned with Beusa Energy's risk profile and operational environment.
- Design, document, and manage a centralized control framework that maps to industry standards (e.g., NIST CSF, ISO 27001) and regulatory requirements.
- Lead and support enterprise risk assessments across IT and OT environments, including risk identification, analysis, tracking, and reporting.
- Partner with IT, engineering, and field operations teams to ensure security controls are practical, implemented effectively, and embedded into daily workflows.
- Support compliance initiatives and audits (e.g., SOC 2, ISO 27001), including control design, evidence collection, and audit coordination.
- Maintain risk registers, control inventories, and remediation plans, providing clear visibility and reporting to leadership.
- Support third-party risk management processes, including vendor risk assessments and ongoing monitoring.
- Collaborate with cybersecurity and technology teams to align security tooling, monitoring, and detection capabilities with defined controls and compliance objectives.
- Assist in developing and delivering security awareness, policy training, and control adoption initiatives.
- Produce clear, executive-level reporting on risk posture, control effectiveness, and program maturity.
- Continuously evaluate and improve governance processes, documentation, and control effectiveness to support a scalable cybersecurity program.
- Performs other related duties as assigned to assist with successful operations and business continuity.
- Successfully passes all applicable general pre-employment testing, including but not limited to: background check, pre-employment drug screening, pre-employment fit tests, pre-employment aptitude and/or competency assessment(s).
- Possesses a valid U.S. Driver's License. Employment is contingent upon meeting the company's driving standards, including an acceptable Motor Vehicle Record (MVR) in accordance with the company's policy.
- Daily overtime required and in-person, predictable attendance.
- Must be legally authorized to work in the United States without the need for sponsorship.
- Must be at least 18 years of age or older.
- Bachelor's degree in Cybersecurity, Information Technology, or related field. An equivalent combination of education, specialized training, and relevant professional experience may be considered in lieu of a formal degree.
- 3 to 6 years of experience in cybersecurity GRC, risk management, controls, or related roles.
- Strong understanding of cybersecurity frameworks and control standards, such as:
- NIST Cybersecurity Framework (CSF).
- ISO 27001.
- SOC 2.
- Experience designing, implementing, and assessing security controls in real-world environments.
- Familiarity with risk assessment methodologies and control testing practices.
- Experience supporting audits and managing evidence for compliance initiatives.
- Ability to translate technical and regulatory requirements into clear, actionable controls.
- Strong analytical, organizational, and communication skills with the ability to work cross-functionally.
- Experience in energy, critical infrastructure, or industrial environments.
- Familiarity with OT/ICS cybersecurity risks and control considerations.
- Experience with GRC or compliance automation tools (e.g., Drata or similar platforms).
- Understanding of third-party risk management practices and frameworks.
- Relevant certifications such as CISA, CRISC, CISSP, or ISO 27001 Lead Implementer.
Employee works indoors in an office setting, primarily sitting for extended periods at a desk station. The role requires keyboarding and repetitive motions with wrists, hands, and fingers. Vision abilities required include close vision and the ability to adjust focus while reading and staring at a computer monitor. The Employee must speak clearly and audibly, and have the ability to hear, understand, and distinguish speech and other sounds (e.g., building alarms) from in-person speech, telephone, or remote communication. While in the office, the Employee may be called upon to stand, kneel, push, pull, reach overhead, stoop, crouch, climb, and lift; therefore, the Employee should be able to independently lift 25 lbs. No adverse environmental conditions are expected. Work hours may includeearly morning, late evenings, and weekends, depending on business necessity. AAP/EEO STATEMENT The Company is committed to the cause of equal employment opportunity for all employees and applicants, thus abiding by all applicable state and federal laws. Our practices regarding employment, job promotion, compensation, training, and termination do not discriminate on the basis of race, color, religious creed, age, sex, national origin, veteran's status, disability, pregnancy, genetic information, or any other legally protected status. It is expected that all employees, both management and staff, will fully support these nondiscriminatory policies. The company has reviewed this job description to ensure essential functions and duties have been included. It is not intended to be an exhaustive list of all functions, responsibilities, skills, and abilities. Last Revised (05/2026)
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cybersecurity Risk and Controls Analyst 1 in Shenandoah, TX vacancy
- ...Job Description Role: Data Analyst/Business Analyst Duration: 4... ..., TX 77389 Job Describtion 1) Business Requirements → Technical... ...if/then rules, approval steps, control validation). 2) Low-Code... ...status workflows). 3) Basic Risk / Compliance Scoring Implement...Risk
$130.7k - $205.2k
...Security Testing & Assurance HP Cybersecurity is seeking a Product Security... ...(SRS) and software integrity controls (e.g., signing and... ...controls, enabling a streamlined and risk-based product security lifecycle... ...Technology Full time Shift 1, 0% premium (United States of...RiskFull timeTemporary workLocal areaRelocationFlexible hoursShift work- ...organization is hiring for a Business Analyst to join their Cybersecurity team in Spring, TX. This resource is... ...checklists, and tracking logic for control validation. They will be building... ...implement simple scoring models for risk and compliance (low/medium/high, weighted...RiskOngoing contract
- ...Kforce is immediately adding a full-time Business Process & Risk Automation Analyst in support of our nationally recognized, Consumer and... ...requirements into structured workflows, decision logic, and control frameworks Develop clear if/then rules, validation checks...RiskHourly payFull timeContract workImmediate start
- ...Business Analyst - Endur Date: May 21, 2026 Location: Spring, TX, US, 77389 Company... ...to deliver scalable trading and risk management capabilities. Job Duties &... ...alignment with target operating model, risk controls, and regulatory requirements Collaborate...RiskWork experience placement
$75k - $85k
...looking for a highly motivated and curious Analyst, Strategic Growth to join our team. This... ...and external data to identify trends, risks, and opportunities Support financial modeling... ...Required Skills & Qualifications ~1–3 years of experience in strategy, business...RiskFull timeWork at officeLocal areaImmediate startRemote workFlexible hours$92.6k - $213.5k
Overview Executive Compensation Analyst. This role has been designed as ‘Hybrid’ with an expectation... ...executive compensation governance, controls and confidentiality. Education and... ...employment agencies does so at their own risk, and HPE disclaims liability for any damages...RiskTemporary workWork experience placementWork at office2 days per week$11 per hour
...Shortage Control Associate Join our team as a Shortage Control Associate and contribute... ...presence at store entrances, exits, and high-risk areas will contribute to mitigating theft... ...Experience and Responsibilities: ~1+ years of experience in customer service,...RiskHourly payPart timeFlexible hoursShift workNight shift$105.5k - $243k
...multi-workstream programs stay on track, risks are actively managed, and commitments... ...role focused on driving progress across Cybersecurity and IT. Key Responsibilities... ...HashiCorp Vault Authentication & Access Controls Strong understanding of MFA, SSO,...RiskWork experience placementWork at officeLocal areaImmediate start2 days per week$92.6k - $213.5k
...Marketing Analyst, Strategy & Planning, Global Marketing & Communications (Houston, TX)... ...performance data to identify opportunities and risks. Manage analytics requests related to... ...Collection Management (Inactive), Data Controls, Design Thinking, Empathy, Follow-Through...RiskWork experience placementWork at officeShift work2 days per week- ...community. You aren't afraid to take risks. You appreciate a growth path... ..., IDS/IPS, and other advanced controls-while applying DevOps... ...Coordinate with stakeholders across Cybersecurity, Projects, and internal... ...required for qualification: o 1): Network security firewall...RiskLong term contract
- ...Sr Salesforce Business Systems Analyst The Business Systems Analyst will be responsible for the administration... ...for business applications. Work closely with cybersecurity analysts to implement security controls, conduct vulnerability assessments, respond to incidents...Work experience placementLocal area
$91k - $147.2k
...Lead (duration based through year end of 2026), will provide the control and the collation of performance to ensure a successful... ...Financial Modeling, Financial Reporting and Analysis, Financial Risk Management (FRM), Financial Statement Analysis, Financial Transparency...RiskFull timeTemporary workLocal areaRemote workWorldwide- ...Description & Requirements Maximus is currently hiring for Quality Control Analysts to join our Veterans Evaluation Services (VES) team. This is a remote opportunity. The Quality Control Analyst is responsible for reviewing Medical Disability Examination (“MDE”) reports...Full timeContract workCurrently hiringWork at officeRemote workWork from homeHome officeMonday to Friday
- Exxon Mobil in Spring, Texas is seeking a Market Risk Analyst to monitor trading activities for compliance with Market Risk Management policies. This role involves assessing and advising on risk profiles, generating risk reports, and collaborating with Global Trading teams...Risk
- ...is seeking an OIMS Data & Systems Coordinator to support their Technical organization. This role focuses on OIMS data management, risk assessment support, incident tracking administration, and Management of Change (MOC) coordination. Key Responsibilities...RiskContract work
- ExxonMobil is seeking a Market Risk Analyst in Spring, TX to monitor trading compliance and develop risk management tools. The role requires a Bachelor's degree in a related field and 2-4 years of financial risk management experience. Responsibilities include evaluating...Risk
- ...Senior Data Analyst - Upstream Operations Location: Spring, TX (On-site) Duration: 12-Month Contract Overview We... ...Interpret drilling and completions data to identify trends, risks, and optimization opportunities Design and develop dashboards...RiskContract workFor contractorsWork at office
- ...Team We are seeking experienced candidates for a West Canada Gas Analyst to support our Natural Gas Trading organization, with a specific... ...e.g., AECO, Station 2) Experience and knowledge of derivatives, risk evaluation and management techniques, or financial analyses Be...RiskTemporary work
- ...and storage technologies to ensure continuous availability of secured and reliable network services. Ensure cybersecurity standards adherence, information and risk compliance, asset inventory and monitoring, software license management, and OS/software patch management....Risk
- ...Currently we have an opportunity for an experienced Northeast Power Analyst to be part of our Global Trading Analytics team. The role will... ..., fundamental analysis, statistical modelling and opportunity & risk identification to support power trading, structuring, and...Risk
$89k - $143.75k
...searching for the best talent for a Cybersecurity Software Engineer, to be in... ...of cybersecurity controls and deliverables, knowledge of... ...-lens. Performing periodic risk assessment of security vulnerabilities... ...software development using C++. ~1+ years of experience...RiskFull timeTemporary workWork at officeLocal areaRemote workNight shift- ...you will play on our team We are seeking an experienced Senior Analyst - Canadian Crude to support our Crude Oil Trading organization,... ...Act as a key collaborator with traders, schedulers, operations, risk, and commercial teams to support trade execution and value generation...RiskTemporary work
$120k - $140k
...interface with internal and external project teams to support cost control monitoring, analysis, and reporting. You'll provide cost... ...You'll lead or assist in developing and maintaining the Issue and Risk Register, as well as Cost Quantitative Risk Analyses (QRAs)....RiskWork experience placementWork at officeLocal areaFlexible hours- ExxonMobil is seeking a Market Risk Analyst based in Spring, Texas. In this role, you will monitor compliance with risk management policies and analyze trading activities. You will use your strong knowledge of energy markets and analytical skills to provide insights on...RiskFlexible hours
- ...Behavioral Skills: analytical, communicates effectively, courage of conviction, manages risk • Functional Skills: clinical case management, clinical testing, exposure assessment and controls, health education and promotion / counseling, infectious disease control program...RiskLocal area
- ...maintain and enhance current business processes and solve issues. Develop go-forward business plan recommendations based on potential risks and returns. Identify or create analytical tools, models, and methods for making key business decisions. We are a company...RiskWork at officeLocal area
- A leading energy company in Spring, TX, is looking for a Market Risk Analyst to oversee trading compliance and develop risk management tools. The candidate should possess a Bachelor’s degree in Economics, Finance, Mathematics, or Statistics with 2-4 years of experience...Risk
$137.25k - $215k
...stakeholders. Consult with business executives on a wide range of issues related to the division's strategic development, including risk management and new growth opportunities. Qualifications: Typically, 8-12 years total experience with post-advanced degree...RiskTemporary workFlexible hours- ...strong functional knowledge of trading processes and have 8-12 years of relevant experience. This position directly impacts trading and risk management capabilities. Expand Energy values diverse backgrounds and is committed to equal employment opportunities. #J-18808-...Risk
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Risk and Controls Analyst 1. Be the first to apply!
Related searches
- technology risk Shenandoah, TX
- risk assurance Shenandoah, TX
- cybersecurity software engineer Shenandoah, TX
- cyber security Shenandoah, TX
- cybersecurity analyst remote
- junior cyber security consultant
- junior cyber security specialist
- senior cybersecurity analyst
- microsoft cybersecurity analyst
- cyber security specialist


