Get more replies from employers
Send a job-specific resume in minutes.
BOK Financial in Tulsa, OK, seeks a strategic Chief Information Security Officer to lead the enterprise information security program, protect systems and customer data, and serve as Privacy Officer. You will collaborate with the Board, risk leadership and executives to shape the cyber-risk profile and security governance across cloud, AI, and regulated affiliates.
The role requires 15+ years in information security with 8–10+ years in senior leadership, and a track record building programs in
Req ID: 78435
Location: Tulsa -TUL
Areas of Interest: Risk Management; Information Security
Pay Transparency Salary Range: Not Available
Application Deadline: 09/03/2026
BOK Financial Corporation Group includes BOKF, NA; BOK Financial Securities, Inc. and BOK Financial Private Wealth, Inc. BOKF, NA operates TransFund and Cavanal Hill Investment Management, Inc. BOKF, NA operates banking divisions: Bank of Albuquerque; Bank of Oklahoma; Bank of Texas and BOK Financial®.
Bonus Type
Discretionary
Summary
Protect what matters most at a $54 billion financial institution.
This is a senior executive role with enterprise-wide visibility, positioned to define how BOK Financial protects its systems, data and the customers who trust us with their financial lives.
As Chief Information Security Officer, you will lead the enterprise information security strategy and build a security program sized to our complexity — a bank, SEC-registered investment advisers, FINRA-supervised broker-dealers, and trust and fiduciary businesses, with more than $120 billion in assets under management or administration. You will also serve as the organization’s Privacy Officer, owning the enterprise privacy program end to end.
Reporting to the Chief Risk Officer, you will partner directly with executive leadership and the Board to define, assess and communicate our cyber-risk profile — inherent risk, control effectiveness, residual risk and where the trajectory is heading. You will lead security engineering, cyber threat management and response, identity and access management, and security risk and compliance, while shaping how we govern emerging risk across cloud and artificial intelligence.
If you are energized by operating at scale, translating complex risk into decisions executives can act on, and building a security culture that holds up under regulatory scrutiny, this role offers exceptional visibility and real influence over the future of the enterprise.
Job Description
The Chief Information Security Officer (CISO) is responsible for leading the enterprise information security strategy and protecting the organization’s systems, data, customer information, and information assets from compromise, unauthorized access, disclosure, or disruption. This role designs, implements, and matures an enterprise-wide information security program aligned to the organization’s size, complexity, risk profile, regulatory obligations, and business strategy.
BOKF’s information security program must also support the risk and regulatory complexity associated with more than $120B in assets under management or administration, two SEC-registered investment advisers, and two FINRA-supervised broker-dealer affiliates/subsidiaries.
The CISO is expected to support SEC and FINRA regulatory readiness by coordinating with affiliate compliance, legal, supervision, and business leaders on cybersecurity examinations, incident escalation and response, customer and client data protection, books-and-records considerations, third-party risk oversight, remediation tracking, and evidence-based demonstration of effective security governance across regulated advisory and broker-dealer affiliates.
The CISO also serves as the organization’s Privacy Officer and is responsible for overseeing the enterprise privacy program, including privacy governance, privacy risk management, regulatory readiness, customer/client information protection, privacy incident response, breach notification coordination, and alignment of privacy controls with cybersecurity, data governance, business, and regulated affiliate requirements.
The CISO partners closely with executive leadership, the Board, Risk, Information Technology, Compliance, Legal, Audit, business leaders, and external partners to identify, assess, monitor, and communicate the organization’s cyber-risk profile. This includes oversight of inherent risk, control effectiveness, residual risk, risk trajectory, security incidents, regulatory expectations, third-party risk, and emerging threats. The role is accountable for ensuring the organization maintains a strong security culture, operates within established risk thresholds, and has the leadership, governance, resources, controls, and response capabilities needed to protect the organization and its customers.
Team Culture
At BOK Financial, your potential is our priority. We invest in people, not just positions, because when you succeed, we all do.
You Will Be Joining a Culture That Values