368,657open jobs
9,442companies
50,883added this week
Browse all
Location
In office (Cape Town)
Employment
Full-Time
Overview
Company
Impact
Profile match
Apex Group is a global financial services provider headquartered in Hamilton, Bermuda, and founded in 2003. The company offers a broad range of solutions including fund administration, corporate services, depositary, custody, digital banking, and ESG advisory services to asset managers and institutional investors. It operates through a network of over 90 offices in more than 50 countries, managing trillions of dollars in assets for a diverse client base across the private equity, real estate, and hedge fund sectors.

The Apex Group was established in Bermuda in 2003 and is now one of the world’s largest fund administration and middle office solutions providers.

Our business is unique in its ability to reach globally, service locally and provide cross-jurisdictional services. With our clients at the heart of everything we do, our hard-working team has successfully delivered on an unprecedented growth and transformation journey, and we are now represented by over circa 13,000 employees across 112 offices worldwide.Your career with us should reflect your energy and passion.

That’s why, at Apex Group, we will do more than simply ‘empower’ you. We will work to supercharge your unique skills and experience.

Take the lead and we’ll give you the support you need to be at the top of your game. And we offer you the freedom to be a positive disrupter and turn big ideas into bold, industry-changing realities.

For our business, for clients, and for you

Information Security Manager - Will be working as the MEA technical risk team to manage risk exposure and compliance across GCC entities. Align with Cyber Strategy and Group CISO directives; deliver inputs to the Global Technology Risk Forum and host local technology risk forums; and integrate UAE PDPL, Dubai International Financial Centre (DIFC) Data Protection, Saudi SAMA Cybersecurity Framework, Saudi NCA Essential Cybersecurity Controls (ECC), South Africa POPIA, plus global frameworks (NIST CSF 2.0, ISO/IEC 27001, ISO 31000, COBIT 2019, PCI DSS).

Key duties and responsibilities:

Security Engineering

  • MEA Regulatory Alignment: UAE (Federal PDPL): Govern consent/legal bases, DPO roles, breach reporting, cross border transfer requirements; coordinate with UAE Data Office guidance.
  • DIFC: Apply DIFC data protection and recent amendments; manage scope across controllers/processors and stable arrangements; ensure rights, transparency, and fines awareness.
  • Saudi Arabia: SAMA CSF for financial entities-governance, defense, response/recovery; maturity expectations.
  • NCA ECC (incl. ECC 2 updates): implement governance/defense/resilience/third party/cloud/ICS controls; follow national reporting obligations.
  • South Africa (POPIA): Enforce lawful processing, breach notification, and data subject rights under POPIA and Information Regulator oversight.
  • Framework Integration: Map controls to Apex Gold Standard, NIST CSF 2.0, ISO/IEC 27001:2022, ISO 31000, COBIT 2019; maintain PCI DSS readiness for payments.
  • Metrics, RCSA, & TRF: Define MEA KRIs/KPIs; lead RCSA; drive remediation; publish Technology Risk Forum packs with clear risk narratives. Govern regional KRIs/KPIs and ensure fit-for-purpose metrics mapped to risk appetite.
  • Stakeholder Management & Communication: Coordinate with local regulators, business heads, and technology stakeholders; deliver concise executive-level presentations.
  • Lead annual RCSA with ISO 31000 risk principles: close remediation actions.
  • Maintain compliance to NIST CSF 2.0, ISO/IEC 27001:2022, COBIT 2019; sustain PCI DSS v4.0/v4.0.1 for payments.
  • Feed clear, decision ready inputs to the Technology Risk Forum; coordinate with application/infra/service owners to turn metrics green.
  • Drive a Metric Rewrite Protocol for persistently failing metrics (RCA → redesign → pilot → cutover).
  • Ensure SOX 404 (where applicable) alignment for ICFR/ITGCs, coordinate management assessment and external audit readiness.
  • Drive SecurityScorecard activities.
  • Execute delegated tasks as deemed appropriate by the Group CISO and other empowered Group Cyber leadership authorities, ensuring timely and effective completion in alignment with organizational priorities.
  • Support the Group Cyber Strategy end-to-end, driving alignment of all activities, decisions, and deliverables with strategic objectives and business outcomes.

Experience and Knowledge:

  • Min. 10 years in Cyber risk/ Technical Risk /Compliance in GCC/Africa financial institutions; practical delivery across UAE PDPL, DIFC, SAMA CSF, NCA ECC, POPIA landscapes.
  • Exceptional communication, presentation, and articulation skills; ability to influence diverse stakeholder groups.
  • Good knowledge of cloud and hybrid security models (Azure, AWS, or equivalent).
  • Industry certifications advantageous (e.g., CISM/ CRISC, ISO 27001 Lead Auditor; cloud security certs.).
  • Familiarity with frameworks such as ISO 27001, SOC 2, and NIST, MEA, PDPL,DIFC, NCA ECC, SAMA CSF, POPIA etc.
  • Experience with IAM/PAM concepts and platforms (CyberArk, SailPoint, etc.) is beneficial but not required.
  • Strong analytical and problem-solving skills with a methodical approach to security engineering.
  • Ability to communicate technical concepts clearly to both technical and non-technical audiences.
  • Highly organized, with the ability to manage multiple tasks in a fast-paced global environment.
  • Passion for continuous learning, upskilling, and improving security capabilities.

What you will get in return:

  • High visibility within a fast-growing global organization.
  • Opportunity to work with a diverse and international team of security professionals.
  • Exposure to leading security technologies across multiple environments and jurisdictions.
  • A role where your contributions directly improve the organization’s security maturity.
  • Professional development opportunities, including certifications and hands-on learning.
  • A positive, supportive, and collaborative work environment.
  • A unique opportunity to grow within one of the world’s leading independent fund administrators.

Disclaimer: Unsolicited CVs sent to Apex (Talent Acquisition Team or Hiring Managers) by recruitment agencies will not be accepted for this position. Apex operates a direct sourcing model and where agency assistance is required, the Talent Acquisition team will engage directly with our exclusive recruitment partners.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Cape Town
$60k – $108k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • United States
PowerShell
Python
DevOps
AWS
Azure
IAM
Splunk
Cybersecurity
Crowdstrike
ISO 27001
Microsoft Defender
Microsoft Entra ID
Microsoft Sentinel
NIST CSF
Qualys Cloud Platform
Apply
HLS specialist 2 hours ago
In office • Full-Time • Israel
DevOps
AWS
Azure
Apply
$169k – $253k per year • Equity • In office • Full-Time • 8+ years exp • Bachelor's Degree • Boulder
JavaScript
TypeScript
AI/ML
AI Agents
Frontend
GraphQL
React.js
DevOps
AWS
Azure
GCP
Google GKE
Helm
Kubernetes
Apply
$87k – $130k per year • In office • Full-Time • 6+ years exp • Murray
Python
TypeScript
JavaScript
Python
Alembic
FastAPI
Pydantic
SQLAlchemy
Databases
PostgreSQL
Redis
AI/ML
Embeddings
LLM
LLM Guardrails
Ollama
RAG
Frontend
React Query
React Router
React.js
Vite
DevOps
AWS
CI/CD
Docker
Docker Compose
IAM
Terraform
Cybersecurity
FedRAMP
NIST 800-53
QA
Pytest
Apply
$122k – $200k per year • In office • Full-Time • 10+ years exp • Charlotte • New York
AI/ML
AI Agents
Context Engineering
Copilot
Hallucination
Human-in-the-Loop
Knowledge Graph
LLM
LLM Guardrails
LLMOps
Prompt Engineering
RAG
DevOps
Azure
CI/CD
GitHub
Kubernetes
Vector
Analytics
A/B Testing
Apply
In office • Full-Time • 5+ years exp • Mumbai
Apex
Marketing
Salesforce
Apply
In office • Full-Time • 10+ years exp • Auckland • Wellington
Apex
Marketing
Salesforce
Apply
$250k – $325k per year • In office • Full-Time • New York
Apex
Marketing
Salesforce
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Cape Town • Pune
Apex
Marketing
Salesforce
Apply
In office • Full-Time • 3+ years exp • Auckland • Wellington
Apex
Marketing
Salesforce
Apply
Remote • Full-Time • 3+ years exp • Bachelor's Degree • Cape Town
JavaScript
Python
SQL
TypeScript
AI/ML
AI Agents
DevOps
Rest API
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Cape Town • Pune
Apex
Marketing
Salesforce
Apply
Lead Developer 1 day ago
In office • Full-Time • 8+ years exp • Cape Town
PHP
JavaScript
PHP
Drupal
WordPress
Frontend
React.js
Vue.js
DevOps
CI/CD
Apply
In office • Cape Town
Java
Kotlin
Mobile
Kotlin Multiplatform
DevOps
GCP
Apply
In office • Internship • PhD • Cape Town
C#
C++
C#
.NET
AI/ML
Text-to-Speech
DevOps
CI/CD
Vercel
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.