GRC Coordinator

GRC Coordinator

Full-Time 35000 - 40000 £ / year (est.) Home office (partial)
CAPACITY

At a Glance

  • Tasks: Coordinate compliance requests and manage Third-Party Risk Management processes.
  • Company: Join a dynamic AI startup with experienced leaders from top tech companies.
  • Benefits: Enjoy private health insurance, flexible work, and 25 days paid leave.
  • Other info: Be part of a diverse team that values innovation and community engagement.
  • Why this job: Kickstart your career in Governance, Risk & Compliance with mentorship and growth opportunities.
  • Qualifications: Organisational skills and a proactive attitude; interest in compliance or security is a plus.

The predicted salary is between 35000 - 40000 £ per year.

We're looking for a well-organised, detail-focused GRC Coordinator to join our growing Governance, Risk & Compliance (GRC) team. This is a great opportunity for someone early in their compliance or security career, or moving across from an administrative, audit-support, or IT-support background, who wants to build a career in GRC within a growing SaaS group.

You'll be the organisational engine of the GRC team, owning our Third-Party Risk Management (TPRM) process day to day, triaging and coordinating incoming compliance requests, and keeping our work logged, prioritised, and moving. You won't be expected to be an expert in every framework we work with, you'll own the structure and flow of the work, and grow your knowledge with direct guidance and real mentorship.

You'll report to the Director of GRC and work closely with the Senior Director of Global Risk & Compliance, with genuine room to grow as you develop.

Responsibilities:

  • Own the day-to-day running of our Third-Party Risk Management (TPRM) process, coordinating vendor due diligence from intake through to sign-off with guidance from the wider team.
  • Send, track, and chase vendor security questionnaires and assurance evidence (e.g. ISO 27001 certificates, SOC 2 reports, penetration test summaries).
  • Maintain the vendor register, risk tiering, and reassessment schedules, keeping records accurate and audit-ready.
  • Act as the first point of contact for incoming GRC requests including security questionnaires, customer and prospect due diligence, and general queries relating to ISO 27001, ISO 42001, GDPR and other data protection regulations, SOC 2, HIPAA, and PCI DSS.
  • Triage and prioritise incoming requests, log them in Jira, and assign them to the right GRC team member, tracking each through to completion.
  • Chase outstanding security awareness training, following up with individuals and managers to drive completion rates up.
  • Attend team and stakeholder meetings, take clear notes, and capture actions in Jira.
  • Help gather and organise compliance evidence for internal and external audits, under direction from the Director of GRC and the Senior Director of Global Risk & Compliance.
  • Keep GRC documentation and trackers tidy, current, and audit-ready.
  • Suggest improvements to how we organise and run GRC operations as you learn the ropes.

Requirements:

Essential

  • Right to work in the UK without sponsorship; we are unable to offer visa sponsorship for this role.
  • Highly organised, with the ability to juggle and prioritise multiple requests and deadlines without dropping things.
  • Strong written and verbal communication; clear, professional, and concise.
  • Comfortable with everyday workplace and collaboration tools, and quick to pick up new systems (we use Jira to log and track work).
  • A methodical, detail-oriented approach and a genuine interest in building a career in compliance, security, or risk.
  • Reliable and proactive when working independently in a remote setting.
  • Willingness to travel occasionally to our European or US offices.

Desirable

  • Some exposure to compliance, GRC, risk, audit, information security, or a related coordination/administrative role.
  • Awareness of one or more common frameworks or regulations (ISO 27001, ISO 42001, SOC 2, GDPR, HIPAA, PCI DSS); a willingness to learn matters more than deep expertise.
  • Familiarity with Jira, Vanta, KnowBe4, or similar GRC / ticketing / training tools.
  • Experience in a SaaS / software or fast-growth, multi-entity business.
  • A foundational qualification, or study towards one (e.g. ISO 27001 Foundation, BCS/ISEB Data Protection, CIPP/E).

You are motivated by:

  • Hustle: You inspire others to work as hard as you. You will find a way, no matter how hard the task is.
  • Ownership: You have an owner/builder mentality. You care about what you deliver and own your mistakes.
  • Proactivity: You don’t wait for someone to tell you what to do or what problems to solve. You are always looking for ways to learn and improve.
  • Excellence: You set a high bar and surpass expectations. You hit your goals and ask for more.
  • Humility: You are not above any task in the organization and are willing to drop what you’re doing to help a teammate.

What you can expect from us:

The team: Capacity team members enjoy the opportunity and benefits of working at an artificial intelligence startup, but with leaders who’ve worked at places like Apple, Ebay, Visa, Answers.com, Oracle, Boeing, and many more world-class companies. The culture at Capacity encourages innovation, independent problem solving, and collaboration as we continue to mature our product in the ever-changing world of AI.

We provide:

  • Private health insurance
  • Company Profits Interest Units or Profits Interest Units Appreciation Rights eligibility
  • 25 days paid leave plus bank holidays
  • Pension
  • Group life assurance
  • Group income protection
  • Flexible work environment
  • A supportive, diverse workplace where we prioritize respect for each other and our clients
  • A fun and collaborative team culture

Salary range: The expected base salary for the role is between £30,000 and £42,000; actual salary will be commensurate with a candidate's experience, skill and location.

Still unsure? At Capacity we value more than just hard skills. Our goal is to build a holistic and diverse team. If you aren’t sure if you qualify, just apply! We will carefully consider your application and are always grateful for any time and effort invested in Capacity.

But wait, there’s more! At Capacity we believe in more than just building amazing products and helping our customers. Although we are a remote workforce, we remember the neighborhood where we started. We still strive to elevate our community by furthering access to education and careers in the tech space. Our affiliated nonprofit, Create A Loop, brings rigorous computer science courses to underserved communities with little to no access to formal computer science education. There are many opportunities for our Capacity team members to serve and educate our Create A Loop students throughout the year.

GRC Coordinator employer: CAPACITY

At Capacity, we pride ourselves on being an exceptional employer that fosters a supportive and innovative work culture. As a GRC Coordinator, you'll benefit from comprehensive mentorship, flexible working conditions, and a commitment to employee growth within a dynamic SaaS environment. Our team is dedicated to not only achieving excellence in our field but also giving back to the community through initiatives like Create A Loop, ensuring that your work here is both meaningful and rewarding.

CAPACITY

Contact Details:

CAPACITY Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land GRC Coordinator

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like CAPACITY looking for candidates who are engaged and informed.

We think you need these skills to ace GRC Coordinator

Organisational Skills
Attention to Detail
Communication Skills
Jira
Compliance Knowledge
Risk Management
Vendor Management

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at CAPACITY. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at CAPACITY

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with CAPACITY’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!