The Apex Group was established in Bermuda in 2003 and is now one of the world’s largest fund administration and middle office solutions providers.
Our business is unique in its ability to reach globally, service locally and provide cross-jurisdictional services. With our clients at the heart of everything we do, our hard-working team has successfully delivered on an unprecedented growth and transformation journey, and we are now represented by over circa 13,000 employees across 112 offices worldwide.Your career with us should reflect your energy and passion.
That’s why, at Apex Group, we will do more than simply ‘empower’ you. We will work to supercharge your unique skills and experience.
Take the lead and we’ll give you the support you need to be at the top of your game. And we offer you the freedom to be a positive disrupter and turn big ideas into bold, industry-changing realities.
For our business, for clients, and for you
The Role
Apex is seeking a Head of Application Security to lead and mature its global Application Security capability. This is a senior leadership position responsible for defining strategy, setting standards, and driving execution across key domains: Application Security, DevSecOps, AI Security, and Cloud-Native Application Security[WJ1.1] Engineering.
As the Apex’s senior authority for secure software and platform delivery, you will ensure that security is embedded by design throughout the technology lifecycle—enabling engineering teams to innovate rapidly and safely while maintaining compliance with regulatory and business requirements.
Key Responsibilities[WJ2.1]
Areas of Specialization
Required Experience & Skills
o 10+ years in cybersecurity, software engineering, or platform engineering roles.
o 8+ years in senior management positions within security engineering, architecture, or similar leadership roles, with proven accountability for strategy, team leadership and delivery of enterprise-scale security programs.
o Strong hands-on understanding of application security architecture, threat modeling, and DevSecOps practices.
o Proven experience in securing microservices architecture and API ecosystems.
o Knowledge of Gitlab, GitHub and API security and integrations.
o Experience securing applications and platforms in cloud environments (Azure, AWS and OCI).
o Deep knowledge of security principles, secure design patterns, and defense-in-depth strategies.
o Familiarity with frameworks such as NIST, ISO 27001, OWASP, SOC1 and SOC2.
o Familiarity with Agile, iterative and incremental development models.
o Demonstrated ability to lead, mentor, and develop high-performing security engineering teams across distributed or multi-location environments.
o Proven track record influencing senior stakeholders and driving security initiatives aligned with business objectives.
o Ability to articulate technical risks and security recommendations to both technical and non-technical stakeholders, including executive leadership and governance forums.
Qualifications
What will you get in return:
Disclaimer: Unsolicited CVs sent to Apex (Talent Acquisition Team or Hiring Managers) by recruitment agencies will not be accepted for this position. Apex operates a direct sourcing model and where agency assistance is required, the Talent Acquisition team will engage directly with our exclusive recruitment partners.
Read Full Description