JOB DESCRIPTION
JOB DESCRIPTION
Head of Technology Governance, Risk, and Compliance (GRC)
Head of Technology Governance, Risk, and Compliance (GRC)
Because your new ideas are our way new ways of working. Evolve, your way.
The Head of Technology Governance, Risk, and Compliance (GRC) is a key leadership role within the Primark Tech, reporting to the Chief Technology Security & Risk Officer (CTSRO). The role is responsible for ensuring effective governance, compliance, managing risks, and maintaining technology control frameworks to support Primark’s objectives.
The Head of Technology GRC will develop a strategic vision and roadmap for the technology GRC team and oversee compliance with internal controls, industry-leading practices, and regulatory requirements such as ACE, Privacy, and PCI-DSS.
The Head of Technology GRC plays a crucial role in interacting with internal and external auditors and is responsible for the development and guidance of a team responsible for second line of defence activities, technology risk management and assessments, compliance monitoring, and developing a tech wide governance framework of policies, standards, and controls to ensure a strong control environment is in place to manage risk, yet provide agility to deliver.
What You’ll Get
People are at the heart of what we do here, so it’s essential we provide you with the right environment to perform at your very best. Let’s talk lifestyle:
Healthcare, pension, and potential bonus. 27 days of leave, plus bank holidays and if you want, you can buy 5 more. Because Primark is all about tailoring to you, we offer Tax Saver Tickets, fitness centre, and a subsidised cafeteria.
What You’ll Do as a Head of Technology Governance, Risk, and Compliance (GRC)
We want you to feel challenged and inspired. Here, you’ll develop your skills across a range of responsibilities:
Here at Primark, we want everyone to feel valued – so please bring your authentic self to work, of course with some other key experience and abilities for this role in particular:
At Primark, people matter. They’re the beating heart of our business and the reason we’ve grown from our first store in Dublin in 1969 to a £9bn+ turnover business and over 80,000 colleagues and over 440 stores in 17 countries today. Our values run through everything we do. In essence, we're Caring and always strive to put people first. We're also Dynamic, bravely pushing the boundaries to stay ahead. And finally, we succeed Together.
If you need any reasonable adjustments or have an accessibility request, during your recruitment journey, such as extended time or breaks between online assessments, a sign language interpreter, mobility access, or assistive technology please contact your talent acquisition specialist.
All offers of employment are subject to background checks, including right to work, reference education and for some roles criminal, and financial checks. If you have any concerns, please reach out to our talent acquisition team to discuss.
Apply
Because your new ideas are our way new ways of working. Evolve, your way.
The Head of Technology Governance, Risk, and Compliance (GRC) is a key leadership role within the Primark Tech, reporting to the Chief Technology Security & Risk Officer (CTSRO). The role is responsible for ensuring effective governance, compliance, managing risks, and maintaining technology control frameworks to support Primark’s objectives.
The Head of Technology GRC will develop a strategic vision and roadmap for the technology GRC team and oversee compliance with internal controls, industry-leading practices, and regulatory requirements such as ACE, Privacy, and PCI-DSS.
The Head of Technology GRC plays a crucial role in interacting with internal and external auditors and is responsible for the development and guidance of a team responsible for second line of defence activities, technology risk management and assessments, compliance monitoring, and developing a tech wide governance framework of policies, standards, and controls to ensure a strong control environment is in place to manage risk, yet provide agility to deliver.
What You’ll Get
People are at the heart of what we do here, so it’s essential we provide you with the right environment to perform at your very best. Let’s talk lifestyle:
Healthcare, pension, and potential bonus. 27 days of leave, plus bank holidays and if you want, you can buy 5 more. Because Primark is all about tailoring to you, we offer Tax Saver Tickets, fitness centre, and a subsidised cafeteria.
What You’ll Do as a Head of Technology Governance, Risk, and Compliance (GRC)
We want you to feel challenged and inspired. Here, you’ll develop your skills across a range of responsibilities:
- Provide general leadership, oversight, and development of technology governance, risk, and compliance practices. Serve as a stakeholder on projects for new applications to ensure processes and controls are designed and implemented appropriately.
- Collaborate with key stakeholders to establish Technology GRC priorities, goals, and objectives in support of business strategies. Develop a strategic vision and roadmap for the technology GRC function. Build and run an effective technology GRC capability and develop a team that will support the enablement of business benefits.
- Responsible for short-term and long-range planning, including objectives and key results (OKRs), financial planning, forecasts, and related variances.
- Manage key GRC stakeholders such as External Audit, Internal Audit, Financial Controls, Legal & Compliance and other internal departments to ensure a mutual understanding of Primark risk and control posture and ensure alignment on short-term and long-term remediation activities.
- Provide leadership, guidance, and oversight to the development of an enterprise-wide Technology Risk Management program to assess, identify, report, manage, and prioritize organizational risks. Develop risk mitigation strategies to minimize risks to the organization. Oversee third-party and supply chain technology risk management practices and alignment with cross-functional teams such as Enterprise Risk, Legal, and Operational teams.
- Oversee the establishment of Primark technology policies, procedures, and controls to manage risk and ensure compliance with internal and regulatory requirements. Ensure the ongoing education of product teams, platform teams, and control owners, ensuring their understanding of the governance structure, their ownership responsibilities, and the standards for documentation.
- Oversee the design and implementation of multi regulation technology controls framework, collaborating with other members of the technology leadership team, ensuring adherence to requirements and that control design is embedded into solutions and procedures. Facilitate and support assessments of enterprise systems, processes, and controls, such as for ACE purposes, to verify that controls are designed appropriately and operate effectively.
- Monitor and evaluate GRC practices and effectiveness of controls and develop metrics and Key Performance Indicators (KPIs) to identify areas for improvement and optimization. Report regularly to the CTSRO, the Tech Leadership Team and other senior management on the effectiveness of GRC, including key risks and compliance with policy and controls, escalating issues as appropriate.
- Oversee the definition of remediation plans, compensating and mitigating control activities and annual controls testing cycles. Ensure any recommendations received from internal audit, external audit, regulators, or other external parties are addressed and incorporated into those plans. Ensure timely remediation of ineffective controls and that remediation plans addressing risks, are appropriate, detailed, and up to date.
- Oversee risk reporting, risk registry, and executive metrics. Provide leadership, guidance, and oversight to risk reporting activities, ensuring accurate and timely reporting of technology risks to senior management.
Here at Primark, we want everyone to feel valued – so please bring your authentic self to work, of course with some other key experience and abilities for this role in particular:
- Extensive experience demonstrating increased responsibility among the technology GRC domain in complex technology environments including controls attestation and supporting GRC tooling for automation of risk and controls processes. Good understanding of the retail industry and its needs towards technology risks and controls.
- Strong understanding with various control frameworks and regulatory requirements, such as COBIT, NIST-CSF, Sarbanes-Oxley (SOX), Privacy (CCPA, GDPR, etc.), and other leading practice frameworks.
- An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood, authoritative and actionable manner.
- Strong leadership skills to drive initiatives and influence stakeholders. Ability to collaborate with technology teams, risk owners, and senior management to achieve risk management objectives and align technology solutions with business. Demonstrated ability to develop effective working relationships with all levels of the organization and influence decision making process.
- Proven record of accomplishment in driving change using positive influencing skills to modify opinions, plans and behaviours to adopt risk management and compliance practices.
- Strong project management skills to oversee the implementation of risk management initiatives and compliance programs. Ability to provide guidance and training to employees on technology risk and compliance matters. Strong ability to develop business case justifications and cost/benefit analysis.
- Strong decision making capabilities with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one.
- Strong analytic skills with the ability to analyze and assess technology risks, considering their impact and likelihood. Strong problem-solving skills to develop effective risk mitigation strategies and control recommendations.
- Strong team values, recognises the value of a positive team environment and contributes to the creation of this
At Primark, people matter. They’re the beating heart of our business and the reason we’ve grown from our first store in Dublin in 1969 to a £9bn+ turnover business and over 80,000 colleagues and over 440 stores in 17 countries today. Our values run through everything we do. In essence, we're Caring and always strive to put people first. We're also Dynamic, bravely pushing the boundaries to stay ahead. And finally, we succeed Together.
If you need any reasonable adjustments or have an accessibility request, during your recruitment journey, such as extended time or breaks between online assessments, a sign language interpreter, mobility access, or assistive technology please contact your talent acquisition specialist.
All offers of employment are subject to background checks, including right to work, reference education and for some roles criminal, and financial checks. If you have any concerns, please reach out to our talent acquisition team to discuss.
MEET YOUR COLLEAGUES
-
May 02, 2024
-
Craig My Primark StoryMeet Craig. One of our Team Managers at Primark OSE. Craig’s always had the eye for commerce. At Tottenham Court Road Primark, he’s bringing his vision to life! July 04, 2024 Article Our People Stories In-store Content Hub Related Content - Instore
-
Digital, Tech & DataWhether you love the possibilities of the latest tech, thrive with all the data in front of you, or digital marketing gets your creative brain going, there's a role for you at Primark. February 01, 2018 Related Content - Digital, Tech & Data Related Content - Digital
-
Our Dublin Head OfficeRedesigned in 2015, this amazing hub is home to over 1,000 talented, interesting, and unique people who can't wait to welcome you to the team. Enjoy the fun, friendly, inclusive atmosphere, and all the incredible facilities that make our office so much more than just a workspace. July 12, 2024 5 minute read Article About us Primark Locations Content Hub Related Content - Head office
-
Harrish My Primark StoryFind out about Harrish and his role as our Senior Ethical Trade Executive - Western Europe, Africa and the Americas July 04, 2024 Article Our People Stories Ethical Trade Content Hub Related Content - Head office Related Content - Ethical
-
Meet DougieDougie is one of our Buyers. Find out more about his career story at Primark July 04, 2024 Article Our People Stories Buying, Merchandising & Design Content Hub Related Content - Head office Related Content - Buying, Merchandising & Design Related Content - Buying
-
Nigel's StoryMeet Nigel, one of our Retail Assistants. Find out more about his story and what makes life at Primark different for him. July 10, 2024 Article Our People Stories In-store Content Hub Related Content - Instore
-
Oscar My Primark StoryFind out about Oscar and his role as a Visual Merchandising Manager. July 12, 2024 Article Our People Stories Visual Merchandising Content Hub Related Content - Instore
-
Ikram My Primark StoryMeet Ikram, a Team Leader at our Sawgrass Mills store! Find out more about her story and the role of a Team Leader. July 12, 2024 Article Our People Stories In-store Content Hub Related Content - Instore
-
Emeir My Primark StoryFind out about Emeir's amazing career journey at Primark. July 25, 2024 Article Our People Stories Marketing & Brand Content Hub Related Content - Head office
-
Let's Talk Adaptive with Ann Marie & ChristineAs part of our adaptive range launch, Ann Marie and Christine sat down to chat about their involvement in bringing the product to life. February 13, 2025 Article Our People Stories Values & Diversity Buying, Merchandising & Design Content Hub Related Content - Buying, Merchandising & Design
-
Meet Daniela, Our Senior SEO ManagerWe caught up with Daniela to dive into the world of SEO at Primark. January 20, 2025 Article Our People Stories Digital, Tech & Data Content Hub Related Content - Head office Related Content - Digital, Tech & Data Related Content - Digital
-
Meet Humphrey, our Head of Digital ExperienceWe sat down with Humphrey Rose to talk about our Digital journey, what we're working on and the opportunities that brings for our colleagues to make a huge impact. January 20, 2025 Article Our People Stories Digital, Tech & Data Content Hub Related Content - Digital, Tech & Data Related Content - Digital
-
Meet Lauren, Our Ecommerce Trading ManagerWe caught up with Lauren to talk about her role within Digital at Primark. January 29, 2025 Article Our People Stories Digital, Tech & Data Content Hub Related Content - Digital, Tech & Data Related Content - Digital
-
PRIMARK IS A TOP EMPLOYER!We're thrilled to be named a Top Employer for 2025 for a second consecutive year. February 19, 2025 Article Our People Stories Content Hub
Sign Up for
job alerts
Sign up for email job alerts for future roles with Primark using the form! We will use the details you provide only to inform you about future vacancies that match your search criteria if and when they become available.