Head of Information Security

Head of Information Security

Full-Time 43200 - 72000 £ / year (est.) No home office possible
Go Premium
R

At a Glance

  • Tasks: Lead and enhance River Island's information security strategy and operations.
  • Company: Join a beloved brand with a bright future and a diverse team.
  • Benefits: Enjoy a 50% staff discount, flexible working, and generous holiday options.
  • Why this job: Make a real impact on security in a dynamic retail environment.
  • Qualifications: Proven experience in senior information security roles and strong technical skills.
  • Other info: Opportunities for career progression and professional development.

The predicted salary is between 43200 - 72000 £ per year.

As River Island’s Head of Information Security, you’ll play a strategic and hands‑on leadership role in shaping and strengthening our security posture across the business. Reporting to the CIO and working as part of the Technology Leadership Team, you’ll define, embed, and continuously improve River Island’s information security framework — ensuring we remain compliant, resilient, and trusted by our customers, partners, and people. This is a highly visible role, blending strategy and delivery. You’ll oversee security operations, vulnerability management, compliance, and risk governance, while partnering with Technology, Data, Legal, and wider business teams to ensure security is embedded into everything we do — from store systems to eCommerce and cloud platforms.

Responsibilities

  • Define, implement, and evolve River Island’s information security strategy in line with business objectives, regulatory obligations, and risk appetite.
  • Lead the development and maintenance of Information Security policies, standards, and controls, ensuring alignment with frameworks such as ISO 27001, NIST CSF, and the SANS Top 18.
  • Define and report security KPIs/KRIs to senior management and senior leadership representing risk posture, compliance status, and strategic improvement initiatives.
  • Own and manage the Information Security Risk Register; ensure risks are assessed, documented, and mitigated effectively.
  • Lead compliance efforts across GDPR, PCI DSS, and other applicable regulations.
  • Conduct and coordinate enterprise‑wide risk assessments, audits, and internal reviews.
  • Champion a pragmatic, risk‑based approach to security — balancing protection, productivity, and customer experience.
  • Own and govern IAM standards (RBAC, joiner/mover/leaver, privileged access, MFA, SSO) across corporate, store and customer‑facing platforms.
  • Oversee operational security activities, including threat detection, vulnerability management, and incident response.
  • Coordinate penetration testing, red‑teaming, and vulnerability remediation across applications, infrastructure, and cloud environments.
  • Develop and maintain incident response playbooks and lead investigations where required.
  • Partner with our Managed SOC and technology teams to strengthen detection, response, and automation capabilities.
  • Embed secure‑by‑design principles and DevSecOps practices across engineering and delivery teams.
  • Partner with Legal and the DPO on DPIAs, data transfer assessments and privacy‑by‑design.
  • Define and maintain the information classification and handling standard.
  • Ensure security controls for customer data, employee data and payment data are implemented and monitored.
  • Provide specialist input into solution design, architecture reviews, and third‑party integrations.
  • Support major transformation projects, ensuring security controls and data protection measures are built in from the start.
  • Oversee third‑party risk management, including supplier due diligence, onboarding, and continuous monitoring.
  • Support client assurance and audit activities, providing evidence of River Island’s security posture.
  • Maintain trust and transparency in all information security communications internally and externally.
  • Drive ongoing maturity of the security function through measurable improvement plans, tooling optimisation, and process automation.
  • Promote awareness initiatives and promote a strong security culture across the business.
  • Mentor and develop members of the Information Security team.

Qualifications

  • Proven experience in a senior information security role, ideally within a complex, multi‑channel retail or technology environment.
  • Strong technical grounding across key security domains: network, cloud, endpoint, application, and data security.
  • Experience managing or working with vulnerability management tools, SIEM/SOC environments, and incident response processes.
  • Familiarity with frameworks and standards such as ISO 27001, NIST, CIS, PCI DSS, and GDPR.
  • Excellent communication and stakeholder management skills, with the ability to influence at all levels of the organization.
  • Analytical, pragmatic, and calm under pressure — with a focus on enabling the business, not blocking it.

Desired Qualifications

  • Security certifications such as CISSP, CISM, or equivalent.
  • Experience in retail, eCommerce, or cloud transformation programs.
  • Understanding of emerging technologies (AI, machine learning, cloud‑native architectures) and associated security considerations.

About Us

We’re a much‑loved brand with an exciting future. Our Islanders are a diverse bunch of bright, talented people who love working together – and are proud of the work they do. Progression here can take you in all kinds of directions. This is what a career at River Island is like. And this is where yours starts. This role is based at our Head Office in West London.

Benefits

  • Generous 50% staff discount so you can treat yourself to the latest products, and a bargain staff shop on site!
  • Reducing Islanders everyday expenses through discounts, benefits, financial advice, wellbeing solutions and more through Reward Gateway!
  • A free onsite gym, subsidised restaurant & café to fill your needs. Various social events to socialise throughout the year.
  • Every family is unique, we support Islanders with all different family setups enhanced maternity, paternity, adoption & fertility treatment.
  • Flexible working is a given, on top of payday and summer early finish Friday.
  • Give as you earn scheme, a ‘Giver Island’ day each year and receive matched funding.
  • Support with upskilling through on‑the‑job training and qualifications. A succession plan if you want to progress.
  • A generous bonus scheme & private pension plan.
  • The choice to opt in for healthcare through our provider AXA.
  • An allowance supporting your commute to work.
  • 25 days paid holiday, exclusive of Bank Holidays. With the added option to purchase additional holiday twice a year for whatever the need!

At River Island we are committed to the safeguarding of all of our employees regardless of age or job role. We will fulfil our obligation under the Prevent duty which seeks to stop extremism and extremist views from materialising in our business. We promote and encourage the belief in British Values – including democracy, the rule of law, individual liberty and mutual respect and tolerance of different faiths and beliefs. Our Island is made up of a diverse community, where we all belong and feel part of something bigger. We are committed to equality of opportunity and welcome applications from individuals, regardless of age, gender, ethnicity, disability, sexual orientation, gender identity, socio‑economic background, religion and/or belief. We will consider flexible working requests for all roles unless operational requirements prevent otherwise.

Head of Information Security employer: River Island Clothing Co., Ltd.

At River Island, we pride ourselves on being an exceptional employer, offering a vibrant work culture that fosters collaboration and innovation. Our Head Office in West London provides a supportive environment with generous benefits, including a 50% staff discount, flexible working arrangements, and opportunities for professional growth through training and mentorship. Join us to be part of a diverse team that values your contributions and encourages you to thrive in your career while enjoying a fulfilling work-life balance.
R

Contact Detail:

River Island Clothing Co., Ltd. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Head of Information Security

✨Tip Number 1

Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. We all know that sometimes it’s not just what you know, but who you know that can help you land that dream job.

✨Tip Number 2

Prepare for interviews by researching River Island’s values and recent projects. We want to see that you’re genuinely interested in our mission and how you can contribute. Tailor your responses to show how your experience aligns with our goals in information security.

✨Tip Number 3

Practice makes perfect! Conduct mock interviews with friends or mentors to refine your answers and boost your confidence. We recommend focusing on situational questions that highlight your problem-solving skills and technical expertise.

✨Tip Number 4

Don’t forget to follow up after your interview! A simple thank-you email can go a long way in showing your appreciation and keeping you top of mind. Plus, it’s a great opportunity to reiterate your enthusiasm for the role and the company.

We think you need these skills to ace Head of Information Security

Information Security Strategy Development
ISO 27001
NIST CSF
SANS Top 18
Risk Management
GDPR Compliance
PCI DSS Compliance
Vulnerability Management
Incident Response
Threat Detection
IAM Standards (RBAC, MFA, SSO)
Data Protection
Stakeholder Management
Analytical Skills
Communication Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Head of Information Security role. Highlight your experience with security frameworks like ISO 27001 and NIST, and showcase your leadership skills in previous roles. We want to see how you can bring value to our team!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background aligns with our mission at River Island. Be sure to mention any relevant certifications like CISSP or CISM.

Showcase Your Achievements: Don’t just list your responsibilities; highlight your achievements! Whether it’s improving security posture or leading successful compliance initiatives, we want to know how you've made a difference in your previous roles.

Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss out on any important updates from us!

How to prepare for a job interview at River Island Clothing Co., Ltd.

✨Know Your Security Frameworks

Make sure you’re well-versed in key security frameworks like ISO 27001, NIST CSF, and PCI DSS. Be ready to discuss how you've implemented these in past roles and how they can be applied at River Island.

✨Showcase Your Leadership Skills

As a Head of Information Security, you'll need to demonstrate your ability to lead teams and influence stakeholders. Prepare examples of how you've successfully managed teams or projects, especially in high-pressure situations.

✨Prepare for Technical Questions

Expect technical questions about vulnerability management, incident response, and cloud security. Brush up on your knowledge of tools and processes you've used, and be ready to explain them clearly and confidently.

✨Emphasise a Pragmatic Approach

River Island values a balanced approach to security that doesn’t hinder business operations. Be prepared to discuss how you’ve successfully integrated security measures while maintaining productivity and customer experience.

Head of Information Security
River Island Clothing Co., Ltd.
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

R
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>