Head of Information Security in London
Head of Information Security

Head of Information Security in London

London Full-Time 43200 - 72000 £ / year (est.) No home office possible
R

At a Glance

  • Tasks: Lead and shape River Island's information security strategy while managing risks and compliance.
  • Company: Join a beloved brand with a vibrant culture and exciting future.
  • Benefits: Enjoy a 50% staff discount, flexible working, and generous holiday options.
  • Why this job: Make a real impact on security in a dynamic retail environment.
  • Qualifications: Proven experience in senior information security roles and strong technical skills.
  • Other info: Opportunities for career progression and continuous learning in a supportive team.

The predicted salary is between 43200 - 72000 £ per year.

As River Island's Head of Information Security, you'll play a strategic and hands-on leadership role in shaping and strengthening our security posture across the business.

Department: Operations

Location: Head Office, Chelsea House

Responsibilities

  • Security Strategy & Governance: Define, implement, and evolve River Island's information security strategy in line with business objectives, regulatory obligations, and risk appetite. Lead the development and maintenance of information security policies, standards, and controls, ensuring alignment with frameworks such as ISO 27001, NIST CSF, and the SANS Top 18. Define and report security KPIs/KRIs to senior management to represent risk posture, compliance status, and strategic improvement initiatives.
  • Risk Management & Compliance: Own and manage the Information Security Risk Register; ensure risks are assessed, documented, and mitigated effectively. Lead compliance efforts across GDPR, PCI DSS, and other applicable regulations. Conduct and coordinate enterprise-wide risk assessments, audits, and internal reviews. Champion a pragmatic, risk-based approach to security — balancing protection, productivity, and customer experience. Own and govern IAM standards (RBAC, joiner/mover/leaver, privileged access, MFA, SSO) across corporate, store and customer-facing platforms.
  • Security Operations (SecOps) & Incident Management: Oversee operational security activities, including threat detection, vulnerability management, and incident response. Coordinate penetration testing, red-teaming, and vulnerability remediation across applications, infrastructure, and cloud environments. Develop and maintain incident response playbooks and lead investigations where required. Partner with our Managed SOC and technology teams to strengthen detection, response, and automation capabilities.
  • Secure Development & Project Support: Embed secure-by-design principles and DevSecOps practices across engineering and delivery teams. Partner with Legal and the DPO on DPIAs, data transfer assessments and privacy-by-design. Define and maintain the information classification and handling standard. Ensure security controls for customer data, employee data and payment data are implemented and monitored. Provide specialist input into solution design, architecture reviews, and third-party integrations. Support major transformation projects, ensuring security controls and data protection measures are built in from the start.
  • Third-Party & Client Assurance: Oversee third-party risk management, including supplier due diligence, onboarding, and continuous monitoring. Support client assurance and audit activities, providing evidence of River Island's security posture. Maintain trust and transparency in all information security communications internally and externally.
  • Continuous Improvement & Leadership: Drive ongoing maturity of the security function through measurable improvement plans, tooling optimisation, and process automation. Lead awareness initiatives and promote a strong security culture across the business. Mentor and develop members of the Information Security team.

What We're Looking For

  • Proven experience in a senior information security role, ideally within a complex, multi-channel retail or technology environment.
  • Strong technical grounding across key security domains: network, cloud, endpoint, application, and data security.
  • Experience managing or working with vulnerability management tools, SIEM/SOC environments, and incident response processes.
  • Familiarity with frameworks and standards such as ISO 27001, NIST, CIS, PCI DSS, and GDPR.
  • Excellent communication and stakeholder management skills, with the ability to influence at all levels of the organisation.
  • Analytical, pragmatic, and calm under pressure — with a focus on enabling the business, not blocking it.
  • Desirable: Security certifications such as CISSP, CISM, or equivalent. Experience in retail, eCommerce, or cloud transformation programs. Understanding of emerging technologies (AI, machine learning, cloud-native architectures) and associated security considerations.

About Us

We're a much-loved brand with an exciting future. Our Islanders are a diverse bunch of bright, talented people who love working together – and are proud of the work they do. Progression here can take you in all kinds of directions. This is what a career at River Island is like. And this is where yours starts. This role is based at our Head Office in West London.

What We Can Offer You

  • Generous 50% staff discount so you can treat yourself to the latest products, and a bargain staff shop on site!
  • Reducing Islanders everyday expenses through discounts, benefits, financial advice, wellbeing solutions and more through Reward Gateway!
  • A free onsite gym, subsidised restaurant & cafe to fill your needs. Various social events to socialise throughout the year.
  • Every family is unique, we support Islanders with all different family setups enhanced maternity, paternity, adoption & fertility treatment. We also work closely with the Retail Trust to create dedicated support for all our Islanders!
  • Flexible working is a given, on top of payday and summer early finish Fridays.
  • Give as you earn scheme, a 'Giver Island' day each year and receive matched funding.
  • Support with upskilling through on the job training and qualifications. A succession plan if you want to progress.
  • A generous bonus scheme & private pension plan.
  • The choice to opt in for healthcare through our provider AXA.
  • An allowance supporting your commute to work.
  • 25 days paid holiday, exclusive of Bank Holidays. With the added option to purchase additional holiday twice a year for whatever the need!

Keeping You Safe

At River Island we are committed to the safeguarding of all of our employees regardless of age or job role. We will fulfil our obligation under the Prevent duty which seeks to stop extremism and extremist views from materialising in our business. We promote and encourage the belief in British Values- including democracy, the rule of law, individual liberty and mutual respect and tolerance of different faiths and beliefs. Our Island is made up of a diverse community, where we all belong and feel part of something bigger. We are committed to equality of opportunity and welcome applications from individuals, regardless of age, gender, ethnicity, disability, sexual orientation, gender identity, socio-economic background, religion and/or belief. We will consider flexible working requests for all roles unless operational requirements prevent otherwise.

Head of Information Security in London employer: River Island

At River Island, we pride ourselves on being an exceptional employer, offering a vibrant work culture that fosters collaboration and innovation. Located in the heart of West London, our Head Office provides a dynamic environment where employees can thrive, supported by generous benefits such as a 50% staff discount, flexible working arrangements, and extensive professional development opportunities. Join us to be part of a diverse team that values your growth and well-being while making a meaningful impact in the retail industry.
R

Contact Detail:

River Island Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Head of Information Security in London

✨Tip Number 1

Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching River Island's security initiatives and recent projects. Tailor your responses to show how your experience aligns with their goals. We want to see that you’re not just a fit for the role, but also passionate about what we do!

✨Tip Number 3

Practice your pitch! Be ready to explain your experience and how it relates to the Head of Information Security role. Keep it concise and impactful – we love candidates who can communicate clearly and confidently.

✨Tip Number 4

Don’t forget to follow up after your interview! A quick thank-you email can go a long way in showing your enthusiasm for the position. Plus, it keeps you fresh in the interviewer's mind as they make their decision.

We think you need these skills to ace Head of Information Security in London

Information Security Strategy
ISO 27001
NIST CSF
SANS Top 18
Risk Management
GDPR Compliance
PCI DSS Compliance
Incident Response
Vulnerability Management
Security Operations
DevSecOps Practices
Stakeholder Management
Analytical Skills
Communication Skills
Emerging Technologies Awareness

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Head of Information Security role. Highlight your experience with security frameworks like ISO 27001 and NIST, and show how your skills align with River Island's needs.

Showcase Your Leadership Skills: As a strategic leader, it’s important to demonstrate your ability to manage teams and drive security initiatives. Share examples of how you've led security projects or mentored team members in previous roles.

Be Clear and Concise: When writing your application, keep it straightforward. Use clear language and avoid jargon where possible. This will help us understand your qualifications and experience without getting lost in technical details.

Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!

How to prepare for a job interview at River Island

✨Know Your Security Frameworks

Familiarise yourself with key security frameworks like ISO 27001, NIST CSF, and PCI DSS. Be ready to discuss how you've applied these in previous roles, as River Island values practical experience in aligning security strategies with business objectives.

✨Showcase Your Leadership Skills

As a Head of Information Security, you'll need to demonstrate strong leadership. Prepare examples of how you've led teams, managed risk, and influenced stakeholders at all levels. Highlight your ability to balance security with business needs.

✨Prepare for Technical Questions

Expect technical questions related to vulnerability management, incident response, and cloud security. Brush up on your knowledge of tools and processes you've used, and be ready to explain your approach to threat detection and remediation.

✨Communicate Clearly and Confidently

Effective communication is key in this role. Practice articulating complex security concepts in simple terms. Be prepared to discuss how you would promote a strong security culture within the organisation and engage with non-technical stakeholders.

Head of Information Security in London
River Island
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

R
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>