Cybersecurity Risk & Compliance Analyst

VoltaGrid

Houston (TX)

Hybrid

USD 85,000 - 125,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

VoltaGrid is seeking a Cybersecurity Risk & Compliance Analyst to formalize and scale our risk governance, compliance, and policy framework across IT and operational environments. The role focuses on transforming cybersecurity from reactive support to structured governance, driving clear risk management, controls, and audit readiness aligned with regulatory needs.

The ideal candidate will translate complex requirements into practical processes, enabling scalable, governance-driven operations

Qualifications

  • 3–6 years of experience in GRC, cybersecurity compliance, risk management, or related roles.
  • Strong understanding of common frameworks and standards such as SOC 2, ISO 27001, NIST CSF or similar.
  • Experience developing and managing policies, controls, and risk assessments.
  • Familiarity with audit processes and evidence management.
  • Ability to translate technical and regulatory requirements into practical processes.
  • Strong organizational, analytical, and communication skills.

Responsibilities

  • Develop, implement, and maintain cybersecurity policies, standards, and procedures, ensuring they are clear, actionable, and aligned with organizational needs.
  • Own and manage risk assessment processes, including identifying, evaluating, and tracking risks across IT and operational technology environments.
  • Support and drive compliance initiatives (e.g., SOC 2, ISO 27001), including control design, evidence collection, and audit coordination.
  • Establish and maintain a control framework that aligns security practices with regulatory and business requirements.
  • Partner with engineering, IT, and operations teams to ensure controls are implemented effectively and embedded into workflows.
  • Manage and track risk registers, control gaps, and remediation efforts, providing visibility to leadership.
  • Support third-party risk management, including vendor assessments and ongoing monitoring.
  • Collaborate with cybersecurity and technology teams to align security tooling and monitoring with compliance and risk objectives.
  • Assist in developing and maintaining security awareness and policy training programs.
  • Produce clear, executive-ready reporting on risk posture, compliance status, and program maturity.
  • Continuously evaluate and improve the organization’s governance model, processes, and documentation.

Skills

GRC
Cybersecurity compliance
Risk management
Regulatory compliance
Audit readiness
Policy development
Vendor risk management
Drata

Tools

Drata

Job description

Position Title: Cybersecurity Risk & Compliance Analyst

Location: HOUSTON, TX

FLSA Class: EXEMPT

Responsible to: Senior Manager of Technical Operations

Position Summary: VoltaGrid is seeking a Cybersecurity Risk & Compliance Analyst to help formalize and scale our risk governance, compliance, and policy framework across both IT and operational environments.

This role is central to evolving our cybersecurity program from reactive support to structured, institutionalized risk governance. You will drive clarity and consistency in how we manage risk, controls, policies, and audit readiness, ensuring alignment with both regulatory requirements and real-world operational needs.

The ideal candidate brings a strong understanding of GRC principles, paired with the ability to translate complex requirements into practical, enforceable processes that integrate seamlessly into day-to-day operations.

As VoltaGrid continues to scale, cybersecurity must evolve into a structured, measurable, and governance-driven function. This role ensures that our approach to risk and compliance is not just about meeting requirements, but about building a repeatable, scalable framework that supports secure growth across both digital and physical infrastructure. You will play a key role in establishing clarity, accountability, and trust in how VoltaGrid manages risk across the organization

Essential Duties And Responsibilities
  • Develop, implement, and maintain cybersecurity policies, standards, and procedures, ensuring they are clear, actionable, and aligned with organizational needs.
  • Own and manage risk assessment processes, including identifying, evaluating, and tracking risks across IT and operational technology environments.
  • Support and drive compliance initiatives (e.g., SOC 2, ISO 27001), including control design, evidence collection, and audit coordination.
  • Establish and maintain a control framework that aligns security practices with regulatory and business requirements.
  • Partner with engineering, IT, and operations teams to ensure controls are implemented effectively and embedded into workflows.
  • Manage and track risk registers, control gaps, and remediation efforts, providing visibility to leadership.
  • Support third-party risk management, including vendor assessments and ongoing monitoring.
  • Collaborate with cybersecurity and technology teams to align security tooling and monitoring with compliance and risk objectives.
  • Assist in developing and maintaining security awareness and policy training programs.
  • Produce clear, executive-ready reporting on risk posture, compliance status, and program maturity.
  • Continuously evaluate and improve the organization’s governance model, processes, and documentation.
Other Requirements
  • 3-6 years of experience in GRC, cybersecurity compliance, risk management, or related roles.
  • Strong understanding of common frameworks and standards such as:
    • SOC 2
    • ISO 27001
    • NIST CSF or similar
  • Experience developing and managing policies, controls, and risk assessments.
  • Familiarity with audit processes and evidence management.
  • Ability to translate technical and regulatory requirements into practical processes.
  • Strong organizational, analytical, and communication skills.
Preferred Qualification
  • Experience in critical infrastructure, energy, or industrial environments.
  • Familiarity with OT/ICS risk and compliance considerations.
  • Experience with GRC tools or compliance automation platforms (e.g., Drata).
  • Understanding of third-party risk management frameworks.
  • Relevant certifications (e.g., CISA, CRISC, CISSP, ISO 27001 Lead Implementer)

VoltaGrid is an Equal Opportunity Employer that does not discriminate on the basis of actual or perceived race, creed, color, religion, alienage or national origin, ancestry, citizenship status, age, disability or handicap, sex, marital status, veteran status, sexual orientation, genetic information, arrest record, or any other characteristic protected by applicable federal, state or local laws.

Our management team is dedicated to this policy with respect to recruitment, hiring, placement, promotion, transfer, training, compensation, benefits, employee activities, and general treatment during employment

Equal Opportunity Employer

This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Risk & Compliance Analyst
Cybersecurity Risk & Compliance Analyst

VoltaGrid LLC • Houston (TX), Northern (KY)

Hybrid
USD 90,000 - 120,000
Cybersecurity Risk & Compliance Analyst
Cybersecurity Risk & Compliance Analyst

VoltaGrid, LLC • Houston (TX)

On-site
USD 90,000 - 130,000
GRC Cybersecurity Analyst: Risk, Policy & Compliance
GRC Cybersecurity Analyst: Risk, Policy & Compliance

VoltaGrid • Houston (TX)

Hybrid
USD 85,000 - 125,000
GRC Cybersecurity Analyst: Risk & Compliance
GRC Cybersecurity Analyst: Risk & Compliance

VoltaGrid LLC • Houston (TX), Northern (KY)

Hybrid
USD 90,000 - 120,000
Sr Software Engineer, Fullstack
Sr Software Engineer, Fullstack

VoltaGrid • Houston (TX)

On-site
USD 120,000 - 170,000
Senior Software Engineer
Senior Software Engineer

VoltaGrid LLC • Houston (TX), Northern (KY)

Hybrid
USD 120,000 - 150,000
Senior Field Safety Manager, MicroGrids
Senior Field Safety Manager, MicroGrids

VoltaGrid, LLC • San Antonio (TX)

On-site
USD 110,000 - 150,000
Security Engineer, Compliance Focus
Security Engineer, Compliance Focus

Volta • Palo Alto (CA)

On-site
USD 140,000 - 190,000
Competitive salary
Equity in Volta
Health, wellbeing and insurance
+2
Chief of Staff
Chief of Staff

VoltaGrid LLC • Houston (TX)

On-site
USD 120,000 - 190,000
Chief of Staff
Chief of Staff

VoltaGrid • Houston (TX)

On-site
USD 150,000 - 230,000