Senior Security Program Manager
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, IT Consultant, IT Project Manager, Information Security
WHO WE ARE
Apex Fintech Solutions (AFS) powers innovation and the future of digital wealth management by processing millions of transactions daily, to simplify, automate, and facilitate access to financial markets for all. Our robust suite of fintech solutions enables us to support clients such as Stash, Betterment, SoFi, and Webull, and more than 20 million of our clients' customers.
Collectively, AFS creates an environment in which companies with the biggest ideas in fintech are empowered to change the world. As a global organization, we have offices in Austin, Dallas, Chicago, New York, Portland, Belfast, and Manila.
If you are seeking a fast‑paced and entrepreneurial environment where you'll have the opportunity to make an immediate impact, and you have the guts to change everything, this is the place for you.
AFS has received a number of prestigious industry awards, including:
- 2021, 2020, 2019, and 2018 Best Wealth Management Company – presented by Fintech Breakthrough Awards
- 2021 Most Innovative Companies – presented by Fast Company
- 2021 Best API & Best Trading Technology – presented by Global Fintech Awards
We are looking for a Senior Security Program Manager to join our team. In this role you will be responsible for leading the development, maturation, and execution of security programs and policies, as well as managing security‑related projects across the firm. An ideal candidate will have extensive experience in security program management and a proven track record of successfully implementing and maturing security programs in a fast‑paced environment while elevating GRC maturity aligned to industry standards.
This is a fantastic opportunity to join the front lines of the cybersecurity industry working in Financial Services, securing Apex’ systems, data and people. This role reports to Chief Information Security Officer.
- Develop and implement security programs, policies, and procedures to Apex’s assets, employees, and customers.
- Effectively lead cross‑functional teams to develop and execute security projects.
- Direct and guide product security initiatives with cross functional teams including Software Engineers, Product Management, and other stakeholders.
- Provide technical product security subject matter expertise and leadership in defining, documenting, implementing, and communicating product security concepts, requirements, and policies to the organization and to internal customers.
- Translate frameworks such as NIST‑CSF, ISO/IEC 27001/27002 into pragmatic controls, processes, and evidence.
- Assist in driving the strategic direction of the Dev Sec Ops Program framework through partnerships with engineering, operations, IT and the business.
- Own and project‑manage the Team project by overseeing intake and triage, backlog grooming, prioritization and assignment, workflow and reporting hygiene, and SLA tracking; coordinate cross‑team dependencies with Engineering, IT, Product, Compliance, and other business units to ensure timely ticket resolution and transparent stakeholder communication.
- Define KPIs and success measures; build dashboards and executive reports on status, risk posture, control effectiveness, adoption, and resource capacity; present updates to leadership.
- Drive evangelization around security program compliance and provide security guidance and expertise to stakeholders across the organization.
- Develop and maintain security‑related documentation and reports.
- Bachelor's degree in Computer Science, Information Technology (or equivalent work experience) required.
- 7+ years of experience in program management with at least 3 years in security program management or related roles.
- Experience in project management and leading cross‑functional teams.
- Experience with security risk assessments and mitigation strategies.
- Experience with the phases of the software development lifecycle.
- Experience with risk management concepts, common vulnerability scanning and penetration testing tools.
- Experience with infrastructure security concepts including firewalls, DMZs, intrusion detection/prevention systems, network security, application…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).