Cyber Security Program Manager
Listed on 2026-06-06
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Job Title:
Cyber Security Program Manager
Job Type: Corporate Office
Date:
Feb 20, 2026
Location:
TULSA, OK, US, 74134
The Cyber Security Program Manager is responsible for leading and operationalizing Quik Trip’s Enterprise Cyber Security Program, including the development, implementation, and continuous improvement of security strategy, practices, and standards across the corporation and its subsidiaries. This role serves as the day‑to‑day manager of enterprise cybersecurity initiatives—coordinating governance, driving security execution, and ensuring alignment with organizational objectives. In addition to core cybersecurity program responsibilities, this position serves as the primary cybersecurity leader for Quik Trip’s subsidiaries—ensuring their security operations, controls, and governance align with enterprise standards.
The role also supports broader regulatory and compliance initiatives such as Payment Card Industry (PCI), contributes to the development and maintenance of the Enterprise Privacy Program, and operates as the HIPAA Compliance Officer to uphold all security requirements related to protected health information.
- Assist in developing and overseeing Quik Trip’s Enterprise Cyber Security Strategy, practices, and programs. Assist in planning and implementing security for all computing hardware and software systems. (60%)
- Assist and advise user departments in appropriate security procedures.
- Protect the corporate computing infrastructure from unauthorized access.
- Protect the company network from attacks.
- Protect the confidentiality of company data and employee information.
- Oversee the development and maintenance of Information Technology security and compliance standards.
- Set policy on introduction of third‑party software to the network, implement end‑point protection software, and monitor compliance.
- Assist in the maintenance, development, and operation of Quik Trip’s Privacy program. (5%)
- Governance - Ensure policies, standards and procedures are kept up to date, monitor adherence to program, establish and maintain Privacy Committee involving business leaders from across the enterprise.
- Ensure Privacy Impact Assessments are continually run across projects or efforts around privacy, continual development of processes related to PIA’s, and perform regular compliance assessments to validate policies are affecting and being adhered to.
- Ensure Continuous Compliance Monitoring across the enterprise to make sure the Privacy program is operating effectively. This will include audits of process, third party, controls, reporting and incident response measures.
- Ensure the creation of a Personal Data Inventory, including usage, processing activities, data retention and anonymization.
- Ensure Awareness, Training, and other communications related to the Privacy program are in place and effective.
- Liaise and communicate effectively with external entities, such as supervisory and regulatory authorities. Ensure Cyber Security program follows relevant industry and governmental standards, including but not limited to the Payment Card Industry Data Security Standard and HIPAA Standard. (10%)
- Fill the role of HIPAA Security Officer (HSO) by managing information security policies, procedures, and technical systems to maintain the confidentiality, integrity, and availability of healthcare information systems, conducting investigations, and maintaining records.
- Keep apprised of changes to the standard.
- Evaluate new systems for impact.
- Conduct annual PCI audit and submit result to Quik Trip’s acquirer.
- Directing the work effort and providing information to internal and external resources as required. (10%)
- Conduct an annual risk assessment of Quik Trip’s systems, evaluating risk of loss versus operating cost. Present results to Senior Management for review and acceptance.
- Develop and produce metrics on IT Security for Board of Directors, IT Leadership, and general QT employees.
- On request of management, present reports concerning security‑related activity of specific employees or vendors.
- Interface with QT internal auditors, financial auditors, PCI auditors, and any other external…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).