Global Head of Technology Controls Assurance

Global Head of Technology Controls Assurance

Full-Time 100000 - 130000 £ / year (est.) No working from home possible
APEX Group

At a Glance

  • Tasks: Lead the global technology control framework and ensure compliance across all regions.
  • Company: Join Apex Group, a leading fund administration provider with a global presence.
  • Benefits: Competitive salary, career growth opportunities, and a supportive work environment.
  • Other info: Dynamic team culture focused on continuous improvement and collaboration.
  • Why this job: Make a real impact in cybersecurity while working with innovative technologies.
  • Qualifications: 10+ years in cybersecurity with leadership experience and strong communication skills.

The predicted salary is between 100000 - 130000 £ per year.

The Apex Group was established in Bermuda in 2003 and is now one of the world’s largest fund administration and middle office solutions providers. Our business is unique in its ability to reach globally, service locally and provide cross-jurisdictional services. With our clients at the heart of everything we do, our hard-working team has successfully delivered on an unprecedented growth and transformation journey, and we are now represented by over circa 13,000 employees across 112 offices worldwide.

Your career with us should reflect your energy and passion. That’s why, at Apex Group, we will do more than simply ‘empower’ you. We will work to supercharge your unique skills and experience. Take the lead and we’ll give you the support you need to be at the top of your game. And we offer you the freedom to be a positive disrupter and turn big ideas into bold, industry-changing realities.

Job Description

The Global Head of Technology Controls is accountable for defining, implementing, and overseeing Apex Group’s global technology control framework. The role ensures that key technology and cyber controls are consistently designed, implemented, and operating effectively across all regions, legal entities, and technology platforms. Working closely with the Group CISO, Technology, Risk, Compliance, cyber and IT service areas and Audit functions, this role provides assurance that Apex’s technology control environment meets regulatory expectations, supports operational resilience, and enables secure business growth.

Key Responsibilities

  • Define and maintain Apex’s global technology control framework, aligned to the Group’s risk appetite, cyber strategy, Apex Gold Standard and regulatory obligations.
  • Establish clear control standards, policies, and minimum requirements covering infrastructure, applications, cloud, identity, data, and end-user computing.
  • Ensure consistent adoption and maturity of technology controls across regions and entities.
  • Perform all duties requested by the Group CISO to deliver the Target Operating Model and Cyber Strategy.

Control Design, Implementation & Effectiveness

  • Oversee the design and implementation of preventive and detective technology controls across the enterprise.
  • Ensure controls are clearly mapped to key technology and cyber risks, regulatory requirements, and industry standards.
  • Drive continuous improvement of control effectiveness, consistency, and automation.

Assurance, Testing & Monitoring

  • Lead global technology control testing and assurance activities, partnering closely with Technology Assurance, Risk, and Internal Audit.
  • Ensure timely identification, escalation, and remediation of control weaknesses and issues.
  • Provide clear, risk-based reporting on control effectiveness, issues, and remediation progress to the Group CISO and governance forums.

Regulatory & Risk Management

  • Support regulatory examinations, client due diligence, and external audits related to technology and cyber controls.
  • Ensure technology controls support Apex’s operational resilience, data protection, and cyber security obligations.
  • Partner with Enterprise Risk Management to ensure technology risks are appropriately assessed and managed.

Third-Party & Cloud Controls

  • Ensure robust technology control requirements are embedded into third-party, outsourcing, and cloud arrangements.
  • Oversee control expectations for managed service providers and offshore service models.
  • Address evolving risks associated with cloud platforms, SaaS solutions, and emerging technologies.

Stakeholder Engagement & Governance

  • Act as a key advisor to the Group CISO on technology control maturity, risks, and investment priorities.
  • Engage senior Technology, Risk, Compliance, and business leaders to drive accountability for control ownership.
  • Present control posture, key risks, and remediation themes to executive and board-level forums.

People Leadership & Capability

  • Build and lead a high-performing global technology controls team with strong technical and risk capability.
  • Drive skills development, succession planning, and consistent ways of working across regions.
  • Foster a culture of accountability, continuous improvement, and collaboration.

Leadership & People Management

  • Lead and develop global cyber Technical and Operational Services, advisory and service delivery teams.
  • Build a strong delivery culture focused on accountability, quality, and continuous improvement.
  • Manage strategic cyber security vendors and service providers.
  • Support talent development in line with Apex’s growth and acquisition strategy.

Key Skills & Experience

  • Minimum of 10 years of extensive cybersecurity experience, with at least 7 years in a senior leadership role and a proven track record in leading a global cyber GRC function.
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate cybersecurity and risk-related concepts to technical and nontechnical audiences at various hierarchical levels, ranging from senior leadership to technical specialists.
  • Extensive experience leading technology controls, IT risk, cyber controls, or technology assurance in a global, regulated environment.
  • Strong understanding of enterprise technology environments, including cloud, infrastructure, applications, identity, and data.
  • Track record of successfully managing a high-performing cybersecurity organization with the ability to motivate and mentor high-performing security teams and foster a culture of excellence.
  • Proven experience working with regulators, auditors, and client assurance teams.
  • Ability to operate at executive level, providing clear, pragmatic, and risk-based advice.
  • Strong leadership skills to influence organizational change, build teams, and communicate security priorities effectively across the enterprise, influencing, and stakeholder management skills.
  • Business acumen to understand enterprise operations, risk tolerance, and industry dynamics.
  • Analytical skills to conduct technical assessments, prioritize vulnerabilities, and develop risk treatment plans.
  • Project management skills to assist with the development and execution of the cybersecurity strategy and roadmaps to strengthen and continuously improve the cybersecurity posture.
  • Passion for continuous learning to stay current on advancing threats and security best practices.
  • Ability to maintain a calm structured mindset even when under pressure.

Qualifications

  • Degree in Information Technology, Information Security, or a related discipline (or equivalent experience).
  • Relevant certifications such as CISA, CISSP, CISM, CRISC, or equivalent are preferred.

Disclaimer: Unsolicited CVs sent to Apex (Talent Acquisition Team or Hiring Managers) by recruitment agencies will not be accepted for this position. Apex operates a direct sourcing model and where agency assistance is required, the Talent Acquisition team will engage directly with our exclusive recruitment partners.

About Apex Group

We are dedicated to driving positive change in financial services while fuelling the growth and ambitions of asset managers, allocators, financial institutions, and family offices. Established in Bermuda in 2003, the Group has continually disrupted the asset serving industry through our investment in innovation and talent. Today, we set the pace in asset servicing and stand out for our unique single-source solution and unified cross asset-class platform which supports the entire value chain.

Global Head of Technology Controls Assurance employer: APEX Group

Apex Group in St Peter Port is an exceptional employer that prioritises service excellence and employee development. With a dynamic work culture, employees benefit from mentorship opportunities and a collaborative environment that fosters growth and innovation. Joining Apex means being part of a forward-thinking team dedicated to delivering outstanding client service while enjoying the unique advantages of working in a vibrant location.

APEX Group

Contact Details:

APEX Group Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Global Head of Technology Controls Assurance

Tip Number 1

Network like a pro! Reach out to current employees at Apex Group on LinkedIn or through mutual connections. Ask them about their experiences and any tips they might have for landing the Global Head of Technology Controls Assurance role.

Tip Number 2

Prepare for the interview by researching Apex's technology control framework and recent projects. Show us you’re not just interested in the role, but that you understand how you can contribute to our growth and transformation journey.

Tip Number 3

Practice your pitch! Be ready to explain how your extensive cybersecurity experience aligns with our needs. Highlight your leadership skills and how you’ve successfully managed teams in a global, regulated environment.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows us you’re serious about joining the Apex family.

We think you need these skills to ace Global Head of Technology Controls Assurance

Cybersecurity Experience
Leadership Skills
Communication Skills
Technology Controls Management
Risk Management
Regulatory Compliance
Stakeholder Engagement

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the role of Global Head of Technology Controls Assurance. Highlight your relevant experience in cybersecurity and technology controls, and don’t forget to showcase your leadership skills!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about this role and how your unique skills align with Apex Group’s mission. Keep it concise but impactful.

Showcase Your Achievements:When detailing your experience, focus on specific achievements that demonstrate your ability to lead and improve technology control frameworks. Numbers and results speak volumes!

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity at Apex Group!

How to prepare for a job interview at APEX Group

Know Your Stuff

Make sure you’re well-versed in the key technology control frameworks and standards mentioned in the job description, like NIST, SOC1, and ISO27001. Brush up on your knowledge of cyber security concepts and be ready to discuss how you've implemented these in previous roles.

Showcase Your Leadership Skills

As a Global Head of Technology Controls Assurance, you'll need to demonstrate strong leadership capabilities. Prepare examples of how you've built and led high-performing teams, managed stakeholders, and influenced organisational change in your past positions.

Prepare for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills and ability to handle pressure. Think about past challenges you've faced in technology controls and how you overcame them, especially in a global or regulated environment.

Engage with the Interviewers

Don’t just answer questions; engage with your interviewers. Ask insightful questions about Apex Group’s technology control framework and their approach to cyber security. This shows your genuine interest in the role and helps you gauge if the company is the right fit for you.