Information Security GRC Lead

Company: Halfords Group PLC

Location:

Posted: May 3rd, 2026

Job no: 564968
Work type: Full time
Site: Redditch
Categories: IT
Location: Worcestershire
Salary: Competitive salary + Car allowance
Business Area: Halfords Support Centre

About us

Halfords is on a journey - building the future of motoring and cycling and looking for people who want to help shape what comes next. We’re a place for cocreators: people who want to make a real impact, take ownership and be part of something that’s still evolving.

Technology at Halfords is at a turning point. We’re modernising our foundations, sharpening our delivery, and ensuring every technology decision is connected to real commercial and customer outcomes.

We're looking for people who act as trusted advisors to the business, take end-to-end accountability for outcomes, and can balance pace with long-term architectural integrity. Innovation here means practical, scalable solutions, not ideas that stay on whiteboards.

Halfords operates a hybrid working policy – this position will be based 3 days per week at our support centre in Redditch, West Midlands.

About the role

As Information Security GRC Lead within our Technology Information Security function, you'll own the governance, risk, and compliance capability for the organisation end to end. It’s a key role within the function where you’ll be responsible for ensuring security risks are understood and managed at the right level, compliance obligations are met without becoming a drag on delivery, and decision-makers have what they need to act with confidence.

Day to day, you'll maintain the security policy framework, own the technology and cyber risk register, and lead PCI DSS Level 4 and Cyber Essentials Plus assurance and audit coordination. You'll independently assess and challenge technical security controls from technology teams and third-party suppliers, coordinate internal audits and UK GDPR reviews, and deliver clear compliance reporting to Technology Leadership and the Board.

This role requires genuine technical credibility alongside strong governance instincts. You'll need to be equally comfortable challenging a control gap with an engineering team as presenting compliance status to an audit committee. If you want to own a GRC function with real organisational reach, this is a strong platform to do it from.

Key responsibilities

About you

Not sure you meet all the criteria? We'd encourage you to take the wheel and apply anyway! At Halfords we are committed to creating an inclusive workplace for our colleagues. We're an equal opportunities employer and proud to welcome applications from all backgrounds and embrace diversity within our one Halfords Family.

Halfords operates a hybrid working policy – this position will be based 3 days per week at our support centre in Redditch, West Midlands.

#J-18808-Ljbffr
Apply Now