{"url_path":"/sec/apex/10-k/2026/item-16k","section_key":"item-16k","section_title":"Item 16K ****CYBERSECURITY**","topic":"sec","document":{"doc_type":"20-F","doc_date":"2026-05-12","source_url":"https://www.sec.gov/Archives/edgar/data/2069858/0001213900-26-054917-index.html","accession_number":"0001213900-26-054917","cik":"0002069858","ticker":"APEX","issuer_name":"APEX Global Solutions Ltd","edgar_url":"https://www.sec.gov/Archives/edgar/data/2069858/0001213900-26-054917-index.html","primary_entity_key":"0002069858","primary_entity_name":"APEX Global Solutions Ltd"},"word_count":390,"has_tables":true,"body_markdown":"**ITEM 16K.****CYBERSECURITY**\n\n** **\n\n**Risk\nManagement and Strategy**\n\n** **\n\nWe\nrecognize the critical importance of developing, implementing, and maintaining robust cybersecurity measures to safeguard our information\nsystems and protect the confidentiality, integrity, and availability of our data. We have developed the following processes as part\nof our strategy for assessing, identifying, and managing material risks from cybersecurity threats.\n\n \n\nWe\nhave integrated cybersecurity risk management into our risk management processes. This integration is intended to ensure that cybersecurity\nconsiderations are part of our decision-making processes. We continuously evaluate and address cybersecurity risks in alignment with\nour business objectives and operational needs.\n\n \n\nRecognizing\nthe complexity and evolving nature of cybersecurity threats, we plan to engage external experts, including consultants and auditors,\nin evaluating and testing our risk management systems.** ** These services will enable us to leverage specialized knowledge\nand insights, ensuring our cybersecurity strategies and processes remain at the forefront of industry best practices. Our collaboration\nwith these third-parties is expected to include annual audits, ongoing threat assessments, and regular consultations on security enhancements. \n\n \n\nBecause\nwe are aware of the risks associated with third-party service providers, we implement processes to oversee and manage these risks. We\nconduct thorough security assessments of all third-party providers before engagement and maintain ongoing monitoring to ensure compliance\nwith our cybersecurity standards. This approach is designed to mitigate risks related to data breaches or other security incidents originating\nfrom third parties.\n\n \n\nWe\nhave not identified risks from known cybersecurity threats, including as a result of any prior cybersecurity incidents, that have materially\naffected or are reasonably likely to materially affect us, including our operations, business strategy, results of operations, or financial\ncondition.\n\n \n\n**Risk\nGovernance**\n\n** **\n\nWe\nare committed to appropriate cybersecurity governance and oversight. Our board of directors has oversight of our strategic and business\nrisk management, including cybersecurity risk management. Our board of directors is responsible for ensuring that management has processes\nin place designed to identify and evaluate cybersecurity risks to which we are exposed and to implement processes and programs to manage\ncybersecurity risks and mitigate cybersecurity incidents. Management is responsible for identifying, assessing, and managing material\ncybersecurity risks on an ongoing basis, establishing processes to ensure that such potential cybersecurity risk exposures are monitored,\nputting in place appropriate mitigation measures, maintaining cybersecurity policies and procedures, and providing regular reports to\nour board of directors.\n\n \n\n70\n\n \n\n** **\n\n**PART\nIII**"}