We’re Pentland Brands; a dynamic, global family business, and proud owners and licensees of many iconic active and footwear brands. With a community of over 1,300 team members worldwide, we embrace diversity and inclusion, and champion growth and development. Our success is built on teamwork, courage, innovation, and an unwavering commitment to excellence.
WHAT’S THE MISSION FOR THIS ROLE?
We are looking for an experienced Interim Head of Data Protection to join Pentland Brands on a 9-month fixed term contract. The primary purpose of this role is to lead on a data governance review across the UK and major oversees subsidiaries. The Interim Head of Data Protection will review, design and oversee the implementation of many of our Company processes and operations involving consumer PII, ensuring we are compliant with data protection principles in the UK as well as other relevant global locations.
The Interim Head of Data Protection will play a pivotal role in the future data governance for Pentland Brands by ensuring that all relevant teams have the right systems and processes in place to manage consumer PII effectively and in embedding a culture of accountability across those departments.
You will need to be available to start on or before 3 February 2025.
WHAT DOES THIS ROLE DO?
As our Interim Head of Data Protection, you will be responsible for:
Data Collection & Consent Management
- Consolidate and clarify categories of PII collected, ensuring only the minimum data needed is held.
- Obtain and document explicit customer consent for data collection and usage.
- Track and document PII processing activities across the organization.
Customer Data Management
- Publish transparent privacy policies on brand websites detailing data collection, usage, rights, storage, and sharing.
- Ensure policy alignment with local legal regulations (e.g., GDPR, CCPA) and establish consistent marketing data practices across brands.
- Support relevant teams in mapping personal data.
Technical Data Security
- Implement access controls and encryption for secure PII storage and transit.
- Conduct regular audits and establish data processing impact assessment procedures.
Data Minimization & Retention
- Develop and refresh policies for data retention and secure deletion.
- Ensure compliance with Subject Access and data erasure requests.
Incident Response
- Refresh the data breach response plan and define notification protocols for stakeholders and authorities.
Training & Awareness
- Enhance employee training on data privacy best practices and reinforce the importance of PII protection.
Third-Party Data Controls
- Establish vendor agreements enforcing data protection standards.
- Ensure customer consent is obtained before sharing PII with third parties.
Customer Rights Management
- Streamline processes for handling data access, correction, and deletion requests.
- Review and optimize opt-out mechanisms for marketing and data collection consent.
WHAT DO I BRING TO THE ROLE?
You just might be our next superstar if you have the following skills and experience:
- Proven experience as a Head of Data Protection/ DPO or similar data governance leadership role, ideally in a consumer-focused organization.
- Deep understanding of GDPR, Data Protection Act, CCPA, and other global data protection frameworks
- Expertise in managing cross-functional data governance projects involving Legal, IT, Marketing, and other key stakeholders.
- Strong track record of implementing privacy-by-design principles and creating robust PII governance frameworks.
- Exceptional communication skills to engage and influence stakeholders at all levels.
- Pragmatic approach with the ability to provide clear, concise advice which balances compliance and business risk
- Experience with direct-to-consumer business models and eCommerce platforms would be preferred
We want you to live our company principles, bringing a strong consumer focus, while always looking for ways to improve and grow in your role. Take ownership of your work and be proactive in solving problems whilst communicating openly and treating everyone with respect and kindness. And, of course, let your creativity shine by bringing your unique style and individuality to the Pentland Brands Team.
Interim Head of Data Protection | London | Employment type: 9 Month FTC, Full time / hybrid working
Must be available to start on or before 3 February 2025.
WHAT’S IN IT FOR ME?
- Salary + discretionary bonus
- 25 Days Holiday: Increases with length of service and the option to purchase additional days to suit your needs. (pro-rated for 9-month FTC)
- Discounts: Brand discounts (including friends and family and JD Sports), Sample Sales, and other retail discounts and perks.
- Family-Friendly Benefits: Generous enhanced parental leave policies
- Health Perks: Choose from a variety of health-related perks including medical cash plan, critical illness cover, life assurance, gym and fitness discounts, dental insurance, eye care, and health screening to maintain your wellbeing.
- Travel Perks: Take advantage of our season ticket loan, cycle to work schemes, electric car schemes, and discounts on home charging units to support eco-friendly commuting.
- Flexible Working: We offer hybrid working (3 days office, 2 days from home) and flexible working hours, allowing you to start your day earlier or later to help with commute costs or personal commitments.
As an equal opportunity employer, we’re committed to fostering diversity and creating an inclusive culture across our business, stores, and office environment.