IT Security & Infrastructure Manager
AppyWay
| Company | AppyWay |
| Category | Engineering |
| Location | London |
| Remote | On-site (inferred) |
| Employment | Full-time |
| Level | Manager |
| Salary | Not stated by the employer |
| Posted | 13 Jul 2026 |
| Last verified | 30 Jul 2026 |
| Source | Employer career page (workable) |
Description
AppyWay is the industry-leading SaaS solution decarbonising cities by empowering local authorities to digitally manage their kerbside and share kerbside data with fleets and drivers Our journey began with AppyParking, an app born from the frustration of finding and understanding parking on the streets of London. During the app’s creation, it was clear that cities lacked shareable, machine-readable, standardised parking restriction data. So we went ahead and built the UK’s largest set of standardised kerbside data, in turn discovering the untapped potential beneath everyone’s feet. Today, we’re Europe’s leading intelligent kerbside platform, helping cities and drivers optimise operations and transition to net zero by uniting parking/loading maps, occupancy data, and cashless payments. Our impressive client roster includes local authorities such as Edinburgh, Southwark, Lambeth, Haringey, Harrogate, Cambridgeshire, Cornwall, Dorset, Dublin and more recently across the pond, NYC. Additionally, our apps and API are trusted by tens of thousands of drivers and fleets including Blue Badge innovators Motability Operations. We are proud to have the support of top investors, including, Hyundai Motor Company, Aviva Ventures, Mastercard and ESRI mapping. To date, we have raised over £20 million in funding, allowing us to continue building something big from the ground up. If you’re passionate about tangible solutions to help decarbonise the world then AppyWay is the perfect place for you. Come and make your mark on a company you can call your own! Requirements What you will be doing In this role you will lead the implementation, development, and execution of a large range of security related activities, such as creation / compliance with policies and standards, monitoring, risk and threat assessments, as well as business continuity and disaster recovery, it will report to the Director of People & Operation You be be responsible for managing and where required, implementing; ISO27001 PCI DSS Cyber Essentials and Cyber Essentials + Security Requirements in relation to our expansion into the U.S. e.g SOC 2 Type II General Security Infrastructure throughout the business Asset and Software Management You will chair the Information Security Forum to ensure that Security initiatives are progressed within the business. You will ensure that the ELT are briefed and kept informed of Security risks and produce and track the Security KPI’s. You will lead the Security Awareness program within the business ensuring that new and existing employees have a good understanding of Information Security including but not limited to running phishing simulations. You will support the business with AI adoption and ensure that Security and data governance guardrails are in place. You will support the DPO with data protection to ensure initiatives are progressed. You will lead the end to end implementation of Cyber Essentials + with a target of Q1 2027 for this certification. Where required support the business with IT troubleshooting through the internal ticketing system. Someone with a secure-by-design, shift-left approach to Security Architecture and Assurance. You'll need to be incredibly well-versed in processes and methodologies tied to this Proficiency within the Software Security, Application Security and DevSecOps ecosystem Strong experience with modern cloud environments, preferably Azure Essential Over 5 years of experience in a similar position, with familiarity in ISO 27001 standards You will have a relevant security certifications/qualification such as CISSP or CISM. Strong background in Information Security with proven experience of dealing with senior and executive management stakeholders Extensive understanding of security policies and frameworks, including Cyber Essentials,ISO 27001,SOC 2 and regulatory requirements e.g DPA/GDPR. Experience with the Microsoft stack
991,236 openings. Erioun finds yours.Scored against your own profile, every hour.Try the radar →