At a Glance
- Tasks: Lead global GRC strategy, ensuring effective risk management and compliance.
- Company: Join JD Sports, a leading omni-channel retailer with a strong global presence.
- Benefits: Enjoy staff discounts, personal development opportunities, and a supportive work environment.
- Other info: Be part of a successful team driving innovation and operational excellence.
- Why this job: Make a real impact in a dynamic retail environment while shaping risk culture.
- Qualifications: 12+ years in governance, risk, compliance, or audit; leadership experience required.
The predicted salary is between 80000 - 100000 £ per year.
Established in 1981 with a single store in the Northwest of England, the JD Group is a leading omni‑channel retailer of Sports Fashion, Outdoors and Gyms with our colleagues working in stores across several retail fascias in many markets around the world. JD Sports Fashion Plc was listed on the London Stock Exchange in 1996 and has been a FTSE100 publicly quoted company since 2019 and continues to grow in the UK and internationally. We want to be the leading global omnichannel retailer in the sports and outdoor industry. To be a part of this successful company and help us to achieve this you will have the desire to ingrain our strategic goals of being a people‑led, innovative and customer‑focused organisation which provides operational excellence whilst identifying new areas of growth as part of our day to day objectives.
The Information Technology Head of GRC is responsible for leading the organisation’s global GRC strategy, ensuring effective risk management, compliance with applicable regulations, and robust governance frameworks. The role requires a strategic leader with deep expertise in ITGC, enterprise risk, internal controls, and regulatory compliance, capable of influencing senior stakeholders and embedding a strong risk culture across the group. You will oversee the creation of risk and information security policies that serve to protect the organisation while aligning with corporate and departmental strategies, lead the operationalisation of risk management processes and help establish a company‑wide risk‑aware culture, drive the creation and maintenance of a robust accurate and actionable risk register, and set risk and security goals and obligations that will help ensure that the organisation can demonstrate compliance with applicable regulatory requirements.
What You’ll Be Doing:
- Build and apply repeatable methodologies which monitor and manage the effectiveness of JD Sports’ information security function in response to evolving trends in good practice and the dynamic nature of the threat environment.
- Monitor Systems Integrator and third‑party performance against contractual information security obligations and oversee all implementation activity.
- Define and implement the Group‑wide GRC strategy, policies, and frameworks.
- Promote a strong risk and compliance culture throughout the organization.
- Ensure governance structures are effective, transparent, and aligned with industry best practices.
- Report regularly to executive management, Audit Committee, and the Board on GRC performance, emerging risks, and ITGC effectiveness.
- Identify and drive opportunities for service improvements.
- Build and lead a high‑performing GRC function, including compliance, risk, and ITGC specialists.
- Foster cross‑functional collaboration with IT Security, Finance, Internal Audit, and Legal.
- Understand, manage, and mitigate risks while ensuring regulatory compliance and safeguarding information, IP, people, customers, shareholders and brand.
What We’re Looking For:
- Develop, communicate, and agree on an appropriate JD Sports information security operations strategy that will help optimise and target investment and resources.
- A proven track record in team or departmental leadership.
- An understanding of the measures and processes needed to enable large retail organisations to remain compliant with relevant laws and regulations.
- Strong analytical and problem‑solving skills.
- Bachelor’s degree.
- 12+ years of progressive experience in governance, risk, compliance, or audit, with at least 5 years in a senior leadership role.
- Relevant certifications such as CISA, CRISC, CISM, CIA, or CISSP are strongly desirable.
We know our colleagues work tirelessly to make JD Sports the success it is today and in turn, we offer them some amazing benefits including staff Discount On JD Group and other brands within the organisation and personal development opportunities to learn and develop at work.
Thank you for your time.
Information Technology Head of GRC employer: JD Sports Fashion PLC
At JD Sports, we pride ourselves on being a people-led and innovative organisation that values our colleagues' contributions to our success. As the Information Technology Head of GRC, you will be part of a dynamic team in a thriving FTSE100 company, where you can expect a supportive work culture, excellent personal development opportunities, and a range of benefits including staff discounts across our brands. Join us in our mission to lead the global sports and outdoor retail market while fostering a strong risk-aware culture.
StudySmarter Expert Advice🤫
We think this is how you could land Information Technology Head of GRC
✨Join Compliance Communities
Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!
✨Attend Industry Conferences
Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.
✨Leverage Your University Career Services
If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.
✨Showcase Your Knowledge Online
Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like JD Sports Fashion PLC looking for candidates who are engaged and informed.
We think you need these skills to ace Information Technology Head of GRC
Some tips for your application 🫡
Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!
Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.
Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!
Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at JD Sports Fashion PLC. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!
How to prepare for a job interview at JD Sports Fashion PLC
✨Master the Regulations
Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!
✨Show Your Analytical Skills
Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!
✨Know Your Tools
Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!
✨Align with Company Culture
Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with JD Sports Fashion PLC’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!