The Apex Group was established in Bermuda in 2003 and is now one of the world’s largest fund administration and middle office solutions providers.
Our business is unique in its ability to reach globally, service locally and provide cross-jurisdictional services. With our clients at the heart of everything we do, our hard-working team has successfully delivered on an unprecedented growth and transformation journey, and we are now represented by over circa 13,000 employees across 112 offices worldwide.Your career with us should reflect your energy and passion.
That’s why, at Apex Group, we will do more than simply ‘empower’ you. We will work to supercharge your unique skills and experience.
Take the lead and we’ll give you the support you need to be at the top of your game. And we offer you the freedom to be a positive disrupter and turn big ideas into bold, industry-changing realities.
For our business, for clients, and for you
The Role:
The Security Engineer – Platform is a senior technical role within Apex Group's Security Engineering function, responsible for engineering, operating, and continuously improving the organization's global security platforms and capabilities.
The role owns the implementation, optimization, automation, and operational effectiveness of enterprise security technologies spanning endpoint security, identity and access management, email security, privileged access management, network security, cloud security, vulnerability management, and security monitoring.
The successful candidate will play a critical role in advancing Apex's security maturity, supporting regulatory and audit requirements, enabling secure business growth, and reducing cyber risk across a global technology estate.
This role works closely with Security Architecture, Cloud & Infrastructure Engineering, Identity & Access Governance (IPAM), SOC, and Technology teams to ensure security controls are integrated, scalable, and aligned to Apex's strategic security roadmap.
The position also contributes to major strategic initiatives including Zero Trust adoption, security platform modernization, mergers and acquisitions (M&A) integration activities, cloud transformation programs, CyberArk maturity improvements, Microsoft security platform enablement, and SIEM modernization initiatives.
Key duties and responsibilities:
Security Platform Ownership & Engineering
• Engineer, implement, configure, maintain, and continuously improve enterprise security platforms across the Apex Group estate.
• Act as a technical owner and subject matter expert for designated security technologies and services.
• Drive platform maturity initiatives to improve effectiveness, coverage, automation, resilience, and user experience.
• Develop and maintain platform standards, security baselines, operating procedures, and engineering documentation.
• Ensure security platforms remain aligned to security architecture principles, regulatory requirements, and evolving threat landscapes.
• Identify opportunities to automate operational activities through scripting, APIs, orchestration, and platform integrations.
Enterprise Security Technologies
Provide senior engineering support across technologies including:
• Microsoft Defender Suite (Endpoint, Identity, Cloud Apps, XDR)
• Microsoft Entra ID Security
• IGA/PAM Management tools
• Email Security Platforms (Mimecast, Proofpoint, Tessian or equivalent)
• Network Security & Zero Trust Platforms (Netskope, SWG, CASB, ZTNA/NPA)
• Vulnerability Management Platforms (Qualys or equivalent)
• Cloud Security Posture Management (CSPM) platforms for cloud security visibility, configuration governance, compliance monitoring, and risk reduction
• Data Security Posture Management (DSPM) solutions for data discovery, classification, security monitoring, and data risk management
• Security Ratings & Third-Party Risk Platforms
• SIEM and Security Monitoring Platforms (Exabeam, Sentinel and related technologies)
• Security Awareness and Human Risk Management platforms
Experience and Knowledge:
Essential
• 7+ years of experience in Information Security, Cyber Security, Security Engineering, or related technical security roles.
• Demonstrable experience engineering and operating enterprise-scale security platforms within complex global organizations.
• Strong hands-on experience with Microsoft and third-party security technologies including:
o Microsoft Defender Suite
o Microsoft Entra ID
o CyberArk
o Netskope
o Mimecast, Proofpoint or Tessian
o Qualys
o SIEM and Security Monitoring platforms
• Strong understanding of:
o Zero Trust security models
o Identity and Access Management (IAM)
o Privileged Access Management (PAM)
o Conditional Access
o MFA
o SSO and Identity Federation
o Endpoint Security
o Email Security
o Vulnerability Management
o Security Monitoring & Detection Engineering
o Cloud Security
• Experience supporting Azure, AWS, OCI, and hybrid environments.
• Experience with PowerShell, Python, APIs, automation, or infrastructure-as-code concepts.
• Strong troubleshooting and analytical skills.
• Excellent communication and stakeholder management skills.
Desirable
• Experience supporting M&A integrations, cloud migrations, or enterprise transformation programs.
• Familiarity with security architecture principles and security engineering patterns.
• Exposure to DevSecOps, CI/CD security, infrastructure-as-code, or cloud-native security technologies.
• Experience working in regulated financial services environments.
• Relevant certifications such as: CISSP, CCSP, Microsoft Security Certifications, CyberArk Certifications, etc.
What will you get in return:
• High visibility within a fast‑growing global organization.
• Opportunity to work with a diverse international team of security professionals.
• Exposure to leading security technologies across multiple environments and jurisdictions.
• A role where your contributions directly improve the organization’s security maturity.
• Professional development opportunities, including certifications and hands‑on learning.
• A positive, supportive, and collaborative work environment.
• A unique opportunity to grow within one of the world’s leading independent fund administrators.
Disclaimer: Unsolicited CVs sent to Apex (Talent Acquisition Team or Hiring Managers) by recruitment agencies will not be accepted for this position. Apex operates a direct sourcing model and where agency assistance is required, the Talent Acquisition team will engage directly with our exclusive recruitment partners.
Skills Required
- 7+ years of experience in information security, cybersecurity, security engineering, or related technical security roles
- Experience engineering and operating enterprise-scale security platforms in complex global organizations
- Hands-on experience with Microsoft Defender Suite
- Hands-on experience with Microsoft Entra ID
- Hands-on experience with CyberArk
- Hands-on experience with Netskope
- Hands-on experience with Mimecast, Proofpoint, or Tessian
- Hands-on experience with Qualys
- Experience with SIEM and security monitoring platforms
- Strong understanding of Zero Trust, IAM, PAM, Conditional Access, MFA, SSO, identity federation, endpoint security, email security, vulnerability management, security monitoring, detection engineering, and cloud security
- Experience supporting Azure, AWS, OCI, and hybrid environments
- Experience with PowerShell, Python, APIs, automation, or infrastructure-as-code concepts
- Strong troubleshooting and analytical skills
- Excellent communication and stakeholder management skills
- Experience supporting M&A integrations, cloud migrations, or enterprise transformation programs
- Familiarity with security architecture principles and security engineering patterns
- Exposure to DevSecOps, CI/CD security, infrastructure-as-code, or cloud-native security technologies
- Experience working in regulated financial services environments
- Relevant certifications such as CISSP, CCSP, Microsoft Security Certifications, or CyberArk Certifications
Apex Group Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Apex Group and has not been reviewed or approved by Apex Group.
-
Flexible Benefits — Flexible benefits are positioned as being tailored by country, with localized packages and perks that can differ by jurisdiction. Mobility options such as the JUMP program add a non-cash element that can increase the perceived total rewards value for those who can access it.
-
Wellbeing & Lifestyle Benefits — Wellbeing support is described as including EAPs, mental-health workshops, mentoring support, and local lifestyle perks like gym or cycle-to-work schemes. These offerings broaden the benefits mix beyond purely financial rewards.
-
Retirement Support — Retirement support is described in at least one jurisdiction as including an employer match structure and an additional automatic contribution after tenure. This can strengthen the non-salary portion of total compensation where offered.
Apex Group Insights
What We Do
We are a single-source financial solutions provider dedicated to driving positive change while supporting the growth and ambitions of asset managers, allocators, financial institutions, and family offices around the world. Established in Bermuda in 2003, we have continually disrupted the industry through our investment in innovation and talent. Today, we set the pace in fund and asset servicing and stand out for our unique single-source solution and unified cross asset-class platform which supports the entire value chain, harnesses leading innovative technology, and benefits from cross-jurisdictional expertise delivered by a long-standing management team and over 13,000 highly integrated professionals. As a pioneering data and fintech-enabled company, we are a disruptor driving digital tools into fund and asset servicing. However, our vision to drive positive change extends beyond the industry. The Apex Foundation, a not-for-profit entity, is our passionate commitment to empower sustainable change







