CrawlJobs Logo

Head of Information Security

riverisland.com Logo

River Island

Location Icon

Location:
United Kingdom , West London

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

As River Island’s Head of Information Security, you’ll play a strategic and hands-on leadership role in shaping and strengthening our security posture across the business. Reporting to the CIO and working as part of the Technology Leadership Team, you’ll define, embed, and continuously improve River Island’s information security framework — ensuring we remain compliant, resilient, and trusted by our customers, partners, and people. This is a highly visible role, blending strategy and delivery. You’ll oversee security operations, vulnerability management, compliance, and risk governance, while partnering with Technology, Data, Legal, and wider business teams to ensure security is embedded into everything we do — from store systems to eCommerce and cloud platforms.

Job Responsibility:

  • Define, implement, and evolve River Island’s information security strategy in line with business objectives, regulatory obligations, and risk appetite
  • Lead the development and maintenance of Information Security policies, standards, and controls, ensuring alignment with frameworks such as ISO 27001, NIST CSF, and the SANS Top 18
  • Define and report security KPIs/KRIs to senior management to senior leadership representing risk posture, compliance status, and strategic improvement initiatives
  • Own and manage the Information Security Risk Register
  • ensure risks are assessed, documented, and mitigated effectively
  • Lead compliance efforts across GDPR, PCI DSS, and other applicable regulations
  • Conduct and coordinate enterprise-wide risk assessments, audits, and internal reviews
  • Champion a pragmatic, risk-based approach to security — balancing protection, productivity, and customer experience
  • Own and govern IAM standards (RBAC, joiner/mover/leaver, privileged access, MFA, SSO) across corporate, store and customer-facing platforms
  • Oversee operational security activities, including threat detection, vulnerability management, and incident response
  • Coordinate penetration testing, red-teaming, and vulnerability remediation across applications, infrastructure, and cloud environments
  • Develop and maintain incident response playbooks and lead investigations where required
  • Partner with our Managed SOC and technology teams to strengthen detection, response, and automation capabilities
  • Embed secure-by-design principles and DevSecOps practices across engineering and delivery teams
  • Partner with Legal and the DPO on DPIAs, data transfer assessments and privacy-by-design
  • Provide specialist input into solution design, architecture reviews, and third-party integrations
  • Support major transformation projects, ensuring security controls and data protection measures are built in from the start
  • Oversee third-party risk management, including supplier due diligence, onboarding, and continuous monitoring
  • Support client assurance and audit activities, providing evidence of River Island’s security posture
  • Maintain trust and transparency in all information security communications internally and externally
  • Drive ongoing maturity of the security function through measurable improvement plans, tooling optimisation, and process automation
  • Lead awareness initiatives and promote a strong security culture across the business
  • Mentor and develop members of the Information Security team

Requirements:

  • Proven experience in a senior information security role, ideally within a complex, multi-channel retail or technology environment
  • Strong technical grounding across key security domains: network, cloud, endpoint, application, and data security
  • Experience managing or working with vulnerability management tools, SIEM/SOC environments, and incident response processes
  • Familiarity with frameworks and standards such as ISO 27001, NIST, CIS, PCI DSS, and GDPR
  • Excellent communication and stakeholder management skills, with the ability to influence at all levels of the organisation
  • Analytical, pragmatic, and calm under pressure — with a focus on enabling the business, not blocking it

Nice to have:

  • Security certifications such as CISSP, CISM, or equivalent
  • Experience in retail, eCommerce, or cloud transformation programs
  • Understanding of emerging technologies (AI, machine learning, cloud-native architectures) and associated security considerations
What we offer:
  • Generous 50% staff discount so you can treat yourself to the latest products, and a bargain staff shop on site
  • Reducing Islanders everyday expenses through discounts, benefits, financial advice, wellbeing solutions and more through Reward Gateway
  • A free onsite gym, subsidised restaurant & café to fill you needs
  • Various social events to socialise throughout the year
  • Every family is unique, we support Islanders with all different family setups enhanced maternity, paternity, adoption & fertility treatment
  • We also work closely with the Retail Trust to create dedicated support for all our Islanders
  • Flexible working is a given, on top of payday and summer early finish Fridays
  • Give as you earn scheme, a ‘Giver Island’ day each year and receive matched funding
  • Support with upskilling through on the job training and qualifications
  • A succession plan if you want to progress
  • A generous bonus scheme & private pension plan
  • The choice to opt in for healthcare through our provider AXA
  • An allowance supporting your commute to work
  • 25 days paid holiday, exclusive of Bank Holidays
  • With the added option to purchase additional holiday twice a year for whatever the need

Additional Information:

Job Posted:
February 01, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Head of Information Security

Head of Cyber Security Culture and Architecture

Grade 6 vacancy in the Information and Cyber Security Department. Responsible fo...
Location
Location
United Kingdom , Hanslope Park (Milton Keynes) or East Kilbride
Salary
Salary:
69500.00 - 90600.00 GBP / Year
allenlane.co.uk Logo
Allen Lane
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Enterprise Security Architecture: Leading the design and assurance of enterprise security architecture, applying recognised frameworks and principles
  • Technical Security Architecture: Applying security architectural principles to complex IT and operational technology (OT) systems
  • Policy and Standards: Providing subject matter expertise in developing and interpreting cyber and information security policies and standards
  • Information Security Culture: Baselining the future vision for the FCDO’s information and cyber security culture, defining and assuring delivery of change levers
  • Third Party Management: Leading the definition and assurance of cyber and information security requirements for third-party relationships
  • Management, Leadership and Influence: Embedding a security first culture and influencing behaviours at all levels
  • Must hold or be willing to obtain security clearance to DV level
  • Must have been resident in the UK for five out of the last ten years immediately prior to application
Job Responsibility
Job Responsibility
  • Define, lead and deliver, through their team, the FCDO’s secure architecture and its internal cyber security culture
  • Ensure secure design is embedded across systems and services while fostering a workforce that understands, values and upholds security principles
  • Lead a team of security architects who will influence technology delivery, organisational behaviours and leadership decision making
  • Ensure architecture, awareness and cultural resilience are delivered in a coordinated way
  • Work in partnership with business, digital and security stakeholders
  • Lead engagement and reporting for their workstreams
  • Represent the CISO at various HMG and external events where necessary
What we offer
What we offer
  • Civil Service pension scheme (employer contribution of 28.97%)
  • Annual leave starting at 25 days leave per annum
  • Location allowance of £1,750 (if based in Milton Keynes)
  • Specialist allowance of up to £10,800 per annum (subject to review)
  • Fulltime
Read More
Arrow Right

Information Security Senior Analyst

The Info Sec Prof Senior Analyst is an intermediate-level position responsible f...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant experience
  • applicable certifications or willingness to earn within 12 months of joining
  • consistently demonstrates clear and concise written and verbal communication
  • proven influencing and relationship management skills
  • proven analytical skills
  • ICND 1 Certification or equivalent knowledge in Networking
  • excellent Microsoft Excel skills
  • basic network infrastructure knowledge
  • ability to work with Big Data
  • exhibiting a high degree of flexibility and ability to multi-task, seeking guidance where necessary
Job Responsibility
Job Responsibility
  • Identify potential information security (IS) risks and make recommendations for enhancement
  • collect and analyze security risk evidence and coordinate with internal and external compliance and auditing agencies / officials
  • execute meetings and communicate complex security topics and safe IS practices with all levels of the organization
  • ensure that controls are utilized daily and that non-compliance remediation is addressed
  • provide IS consulting services, including interpreting and/or clarifying information security policy, procedures, standards or concepts
  • assist with defining and implementing IS standards to align procedures and practices in compliance with Citi standards
  • educate and advise on safe information security practices and current, changing, and/or recommended information security requirements
  • validate compliance with IS policies, practices, and procedures, and resolve a variety of IS related issues in coordination with the business
  • support the Annual Connectivity Verification process
  • validate legacy connectivity for ownership, registration, and usage
  • Fulltime
Read More
Arrow Right

Security Strategy and Risk Management Head of Department

The Security Strategy and Risk Management Head of Department is a senior leaders...
Location
Location
United States , Irvine
Salary
Salary:
181240.00 - 259160.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15–20 years of progressive experience across Information Security, GRC/Risk Management, customer/vendor security management and/or strategic operations
  • Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, Business Administration or a related discipline
  • Excellent stakeholder management, communication, and leadership skills
  • Demonstrated experience working across multi-disciplinary teams to achieve common objectives
  • Proficient in English for effective communication and coordination
Job Responsibility
Job Responsibility
  • Lead enterprise-wide risk assessment, risk issue management, and risk exception management
  • Maintain and enhance risk management frameworks aligned with industry best practices
  • Deliver insightful, data-driven risk reporting to senior leadership
  • Oversee the Information Security compliance and control assurance program
  • Lead coordination of internal and external audits, assessments, and certification processes
  • Lead the Third-Party Risk Management (TPRM) program
  • Oversee creation, governance, maintenance, and communication of Information Security policies, standards, and procedures
  • Direct the Information Security Training and Awareness program
  • Partner with the CISO to define and maintain the Information Security strategic roadmap
  • Lead budget planning, forecasting, tracking, and optimization for the full Information Security organization
  • Fulltime
Read More
Arrow Right

Head of Engineering - Information Protection

We are seeking an inspiring and strategic Engineering Leader to join our Informa...
Location
Location
India
Salary
Salary:
Not provided
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 12+ years of experience in building and scaling engineering teams with a focus on engineering strategy, infrastructure planning, and architecture
  • Demonstrated experience in developing influential relationships and trust with senior leaders across different functions
  • Proven experience hiring and mentoring high-caliber engineers with diverse technical strengths and backgrounds
  • Strong product sense with an understanding of product drivers and of how to drive value across customers
  • Exceptional communication skills, with the ability to translate technical concepts into easy-to-understand language for business partners
  • High-energy self-starter with a passion for data and enjoy working in a fast-paced environment
  • You will have strong empathy and a bias for action
  • A graduate degree in Computer Science or a related technical field
Job Responsibility
Job Responsibility
  • Lead and manage multiple engineering teams within our India based engineering organization, focused on building and scaling Information protection applications, delivering on ambitious multi-quarter roadmaps
  • Define and execute technical and product strategies aligned with Atlassian’s vision for enterprise security, data protection, and compliance
  • Foster an inclusive environment where diverse perspectives are welcomed and innovation is encouraged
  • Collaborate closely with product management, design, and global engineering leaders to deliver high-impact features and seamless customer experiences
  • Drive technical excellence, operational rigor, and continuous improvement across teams
  • Recruit, mentor, and develop top engineering talent
  • build strong succession pipelines and support career growth
  • Champion developer productivity, quality, and operational metrics
  • Partner with local and global leaders to strengthen Atlassian’s brand, talent acquisition, and retention in India
What we offer
What we offer
  • Health and wellbeing resources
  • Paid volunteer days
Read More
Arrow Right

Head of Information Technology (Digital Workplace)

Digital Workplace's mission is to enable PPRO colleagues to do their best work b...
Location
Location
Germany , Munich
Salary
Salary:
Not provided
ppro.com Logo
PPRO GmbH
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Track record of designing and implementing an integrated digital workplace experience in a technology leadership role with both project and operational responsibilities
  • Experience in bringing product and software engineering best practices to the digital workplace (problem understanding, solution and system design, platform as code, etc.)
  • Experience in implementing and maintaining robust security controls in a user-friendly way, ensuring compliance and security awareness without hindering productivity
  • Strong collaboration skills to work with business leaders on all levels to understand requirements and translate them into technical capabilities
  • Excellent written and verbal communication skills
  • Experience leading globally distributed team members
  • Efficient budget management by making informed investment decisions that are aligned with the overall business budget and objectives
Job Responsibility
Job Responsibility
  • Work with stakeholders and the team to design the target digital workplace experience to maximise colleague productivity
  • Define the strategy to achieve the target experience, quantify success and clearly articulate areas for investment
  • Establish operational and project cycles within the team to deliver strategic results and support our colleagues around the world
  • Driving the technology culture to simplify and automate routine tasks and increase productivity
  • Work with external vendors and partners to enhance our colleague offering and ensure a seamless experience
  • Take ownership of security and compliance within the team and beyond, enabling colleagues to do their jobs efficiently and safely
What we offer
What we offer
  • Hybrid working with a 3 days / week on site expectation
  • 30-day holiday allowance
  • Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
  • €1,000 annual learning and development budget
  • Leadership cafés, on-the-job training
  • Accident insurance, disability insurance, direct insurance (bAV) and travel insurance
  • Enhanced family leave
  • Gym membership contribution
  • Mental Health Platform access
  • Pet-friendly office
  • Fulltime
Read More
Arrow Right

Head of Product Development (Workforce)

As the world leader in consumer-facing biometrics iProov are now bringing our ex...
Location
Location
United States
Salary
Salary:
Not provided
iproov.com Logo
iProov
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience working in high growth, fast paced tech-first environments
  • Passionate about building & launching quality products that have a positive impact
  • Experienced product leader with a background in security, identity (IAM), or enterprise SaaS
  • Deep understanding of workforce platforms and employee identity management
  • A track record of implementing Product Management best practices and processes
  • Proven experience building enterprise-grade Workforce solutions, taking a product (not just feature) from initial concept, through to finding product-market fit, developing a go-to-market strategy, launch and iterative refinement
  • Ability to lead across discovery, design, development, launch, and post-launch iterations
  • Excellent communication and stakeholder management skills, able to work cross functionally across Engineering, Sales, Security, and Marketing teams, with an analytical mindset, using data as evidence to inform your decision-making and communication
  • Experience being able to translate the company vision into product and technology roadmap
  • An empathetic personality and understand the mindsets of customers and stakeholders, can relate and have the ability to say “no”, explaining the why in terms that stakeholders understand, making friends along the way
Job Responsibility
Job Responsibility
  • Define and evolve the product vision, value proposition, and roadmap for iProov’s Workforce solution suite, aligned to customer needs and company goals
  • Be part of the leadership of a growing and high-performing product team, fostering a culture of customer obsession, experimentation, and delivery excellence
  • Conduct deep discovery with enterprise customers, IT security leaders, and partners to identify pain points, use cases, and buying behaviours
  • Translate user and business needs into clear product requirements, prioritised for impact, feasibility, and time-to-market
  • Partner with commercial, marketing, channel and customer success teams to shape launch plans, product positioning, and support sales enablement
  • Define and track key metrics for adoption, retention, performance, and customer satisfaction
  • use data to inform continuous improvement
What we offer
What we offer
  • Company Performance Bonus (20%)
  • Equity
  • US iProov Benefits
  • Fulltime
Read More
Arrow Right

Enterprise Security Engineer

ASEL, design, develop and deliver fully bespoke and integrated security solution...
Location
Location
United Kingdom , London
Salary
Salary:
45000.00 GBP / Year
asel.co.uk Logo
ASEL GROUP
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 2 years’ experience across multiple disciplines including Intruder, CCTV, Access Control
  • Genetec Experience
  • Lenel Experience
  • Customer focused
  • Excellent telephone manner
  • PC Literate
  • Team player
  • Strong interpersonal and communication skills
  • Ability to work within a continually changing environment
  • Network/IP based product experience
Job Responsibility
Job Responsibility
  • Effective communication between Argenbright Security Europe LTD, Customers, Account Management, Head of Service and Head of Installations
  • Working as a team leader with up to three direct reports
  • Carry out site maintenance and repair activity in line with specifications and plans
  • Communicate any deviations to the Account Manager
  • Ensure all relevant paperwork is delivered to the team upon job completion
  • Ensure customer queries are dealt with in a timely manner
  • Provide leadership to respective Trainee Engineers
  • Carry out mentoring of Trainee Engineers
  • Assist with technical queries from Engineers and Project Managers
  • Ensure team working practices are always maintained to a high standard
What we offer
What we offer
  • Overtime and paid travel time
  • 20 days of holiday plus bank holidays, increasing by 1 per year of service up to 25 days (negotiable)
  • Perkbox incentive - Employee Discount Scheme applicable to over 900 leading UK retailers, including travel, groceries, gym memberships, utilities, and more
  • Opportunities for progression within the company
  • Full training and refresher courses included
  • Company phone and tablet
  • Pension scheme
  • Tools provided
  • Company vehicle and fuel card
  • Employer of the Month award (£50)
  • Fulltime
Read More
Arrow Right

Information Security Analyst

To be part of PA Group Systems Security Operations Centre team, providing in-dep...
Location
Location
United Kingdom , Melbourn
Salary
Salary:
Not provided
paconsulting.com Logo
PA Consulting
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2+ years of proven technical experience across multi-disciplinary IT fields or equivalent relevant education
  • Good attention to detail, well organised and capable of working under pressure
  • Strong log analysis and correlation skills
  • Knowledge of Logging/SIEM systems
  • Knowledge of Data Leak Prevention systems
  • Knowledge of Intrusion Detection systems
  • Ability to communicate at all levels
  • Ability to work effectively as part of a team
Job Responsibility
Job Responsibility
  • Review daily security system logs and alerts - Firewall/Intrusion Detection System/Data Leak Prevention/Endpoint Detection and Response – and identify security issues
  • Provide insight into the countermeasures PA should adopt and generate key performance indicator metrics for the security board
  • Works as a technical resource in security related projects
  • Perform forensic analysis as required
  • Working with operational teams, ensure vulnerabilities are resolved
  • Review security bulletins for threats. Liaise with key security firms reviewing threat reports
  • Provide out of hours On-Call availability and response to high severity incidents (usually 1 week per month – paid)
  • Work closely with the SOC Manager and Director of Cyber Security
  • Work with GS operational staff who require assistance with technical security issues
  • Interface with the rest of Group Systems on new projects/support functions undertaken
What we offer
What we offer
  • Health and lifestyle perks accompanying private healthcare
  • 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days
  • Generous company pension scheme
  • Opportunity to get involved with community and charity-based initiatives
  • Annual performance-based bonus
  • PA share ownership
  • Tax efficient benefits (cycle to work, give as you earn)
  • Fulltime
Read More
Arrow Right