Job Search and Career Advice Platform

Enable job alerts via email!

Information Technology Head of GRC

JD GROUP

Bury

On-site

GBP 85,000 - 110,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading retail organization in the UK is seeking an experienced Information Technology Head of GRC to oversee the global governance, risk, and compliance strategy. This role involves extensive leadership responsibilities, building risk management processes, and ensuring compliance with regulations. Ideal candidates should have over 12 years of experience in governance or risk roles, strong analytical skills, and relevant certifications. The position offers a dynamic work environment in Bury.

Qualifications

  • 12+ years of progressive experience in governance, risk, compliance, or audit, with at least 5 years in a senior leadership role.
  • Strong understanding of compliance measures for large retail organizations.
  • Certifications such as CISA, CRISC, CISM, CIA, or CISSP are strongly desirable.

Responsibilities

  • Lead the creation of risk and information security policies.
  • Monitor systems integrator and third-party performance against security obligations.
  • Communicate GRC strategy and report on performance and emerging risks.

Skills

Leadership
Risk Management
Compliance Knowledge
Analytical Skills
Problem-Solving Skills

Education

Bachelor’s degree

Tools

GRC Frameworks
ITGC
Job description
Overview

The Information Technology Head of GRC is responsible for leading the organisation’s global GRC strategy, ensuring effective risk management, compliance with applicable regulations, and robust governance frameworks. The role requires a strategic leader with deep expertise in ITGC, enterprise risk, internal controls, and regulatory compliance, capable of influencing senior stakeholders and embedding a strong risk culture across the group.

You will oversee the creation of risk and information security policies that serve to protect the organisation while aligning with corporate and departmental strategies, lead the operationalisation of risk management processes and help establish a company-wide risk-aware culture, drive the creation and maintenance of a robust accurate and actionable risk register, and set risk and security goals and obligations that will help ensure that the organisation can demonstrate compliance with applicable regulatory requirements.

Job Details
  • Job Title – Information Technology Head of GRC
  • Location – BL9 8RR
  • Working rota – Monday-Friday
  • Working hours – 40 Hours
What You'll Be Doing
  • Build and apply repeatable methodologies which monitor and manage the effectiveness of JD Sports’ information security function in response to evolving trends in good practice and the dynamic nature of the threat environment
  • Monitor Systems Integrator and third-party performance against contractual information security obligations and oversee all implementation activity
  • Define and implement the Group-wide GRC strategy, policies, and frameworks
  • Promote a strong risk and compliance culture throughout the organization
  • Ensure governance structures are effective, transparent, and aligned with industry best practices
  • Report regularly to executive management, Audit Committee, and the Board on GRC performance, emerging risks, and ITGC effectiveness
  • Identify and drive opportunities for service improvements
  • Build and lead a high-performing GRC function, including compliance, risk, and ITGC specialists
  • Foster cross-functional collaboration with IT Security, Finance, Internal Audit, and Legal
  • Understand, manage, and mitigate risks while ensuring regulatory compliance and safeguarding information, IP, people, customers, shareholders and brand
What We're Looking For
  • Develop, communicate, and agree on an appropriate JD Sports information security operations strategy that will help optimise and target investment and resources
  • A proven track record in team or departmental leadership
  • An understanding of the measures and processes needed to enable large retail organisations to remain compliant with relevant laws and regulations
  • Strong analytical and problem-solving skills
  • Bachelor’s degree
  • 12+ years of progressive experience in governance, risk, compliance, or audit, with at least 5 years in a senior leadership role
  • Relevant certifications such as CISA, CRISC, CISM, CIA, or CISSP are strongly desirable
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.