GRC Manager

GRC Manager

Full-Time 48000 - 72000 ÂŁ / year (est.) No home office possible
E

At a Glance

  • Tasks: Build and operationalise governance, risk, and compliance programmes for AI infrastructure.
  • Company: Join Era4, a mission-driven start-up redefining AI infrastructure with renewable energy.
  • Benefits: Enjoy hybrid work, autonomy, and the chance to shape a next-gen company.
  • Why this job: Make a real impact in a growing organisation focused on operational excellence.
  • Qualifications: Experience in GRC roles within IT/cloud services and understanding of regulatory frameworks.
  • Other info: Diversity and inclusion are at our core; we celebrate every unique voice.

The predicted salary is between 48000 - 72000 ÂŁ per year.

Era4 develops, owns and operates AI infrastructure across the UK, powered by renewable energy. Converting legacy industrial and energy sites into modern data‑centre facilities, Era4 is combining brownfield regeneration opportunities with cleaner, efficient, scalable compute capacity for healthcare, research, finance, enterprise, and public‑sector organisations.

This role is responsible for building and operationalising our governance, quality, risk, security, and regulatory compliance programme, ensuring our platform meets UK and global regulatory standards (e.g., EU AI Act, GDPR, HIPAA, CCPA, DORA) and the specialised needs of regulated and public‑sector clients with strict regulatory, security and sovereignty requirements. This role blends regulatory intelligence, AI governance, corporate risk management, and cloud infrastructure compliance. You will collaborate deeply across engineering, security, legal, product, and operations teams to embed robust GRC controls across data centre, energy generation, GPU cluster environments, and customer onboarding and delivery models. You will be instrumental in ensuring Era4 meets these high standards and can provide credible assurance to customers, auditors and regulators.

This is an opportunity to join a mission‑led AI business that is redefining infrastructure, intelligence, and impact for enterprise customers.

Key Responsibilities
  • Governance and frameworks: Maintain governance, risk, and compliance frameworks, including regulatory horizon scanning (EU AI Act, ATAA, GDPR, CCPA, HIPAA, DORA). Keep policies, standards, and procedures up to date and aligned with operational realities. Document ownership, accountability, and escalation paths for GRC matters and support reporting for operational leadership. Operate the corporate risk management process, including risk identification and assessment with operational teams. Maintain the corporate risk register and track mitigations and actions. Escalate material risks and support risk input into operational change initiatives.
  • Compliance and assurance: Support the ISMS, BMS, EMS and other management systems with ISO 27001 as a baseline. Coordinate internal and external audits and manage audit evidence. Track remediation actions and support responses to customer security and compliance requests.
  • Operational collaboration: Act as a day‑to‑day GRC partner to Operations, Facilities, Engineering, Security and IT. Provide practical guidance on risk and compliance expectations. Support incident reviews, business continuity, and operational resilience assurance. Identify opportunities to improve GRC processes, tooling, reporting, and documentation. Monitor regulatory and standards changes and highlight operational impacts. Help embed a risk‑aware culture across Operations and the wider business.

Expertise working in a governance, risk, compliance, or assurance role within IT/cloud services for a regulated, operational, or infrastructure heavy environment. Hands-on experience supporting ISO 27001, ISO9001, or other ISO certifications in live operational settings. Strong understanding of UK and EU regulatory frameworks as they apply to Era4 and its customers (GDPR, UK GDPR, NIS, NIS2, DORA etc). Familiarity with UK government high‑assurance security requirements and Critical National Infrastructure requirements. Experience participating in external audits and assurance activities. Understanding of operational risk in technical or facilities based environments.

One or more would be an advantage:

  • Led or significantly shaped parts of a GRC or compliance programme.
  • Exposure to multiple frameworks or assurance models such as SOC 2, PCI DSS, or similar.
  • Experience in high performance computing, data centres, cloud infrastructure, telecommunications, or other high availability environments.
  • Experience supporting large customer assurance or due diligence processes.
  • Exposure to physical security, operational resilience, or critical facilities risk.
  • Experience scaling or maturing GRC processes in a growing organisation.
  • Familiarity with UK government high‑assurance security requirements.

Why Join Era4

You’ll be joining a mission‑driven start‑up building critical national infrastructure, where operational excellence directly enables growth. This role offers high visibility with leadership, real autonomy, and the chance to shape how a next‑generation company operates at scale.

Diversity & Inclusion

Era4 is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Executive & Operations London (Hybrid) United Kingdom - Hybrid (Visit to London office required)

GRC Manager employer: Era4

Era4 is an exceptional employer, offering a unique opportunity to work at the forefront of AI infrastructure development in the UK. With a strong commitment to operational excellence and a mission-driven culture, employees enjoy high visibility with leadership, real autonomy, and the chance to shape the future of critical national infrastructure. The company fosters a diverse and inclusive environment, providing ample opportunities for professional growth and collaboration across various teams.
E

Contact Detail:

Era4 Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land GRC Manager

✨Tip Number 1

Network like a pro! Reach out to people in the industry, attend events, and connect with potential colleagues on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching Era4 and its mission. Understand their values and how your skills align with their goals. This will help you stand out and show that you're genuinely interested in being part of their team.

✨Tip Number 3

Practice common interview questions and tailor your answers to highlight your experience in governance, risk, and compliance. Use specific examples from your past roles to demonstrate your expertise and problem-solving abilities.

✨Tip Number 4

Don’t forget to follow up after your interview! A quick thank-you email can leave a lasting impression and shows your enthusiasm for the role. Plus, it keeps you on their radar as they make their decision.

We think you need these skills to ace GRC Manager

Governance, Risk, and Compliance (GRC)
Regulatory Intelligence
ISO 27001
GDPR
HIPAA
CCPA
DORA
Risk Management
Audit Coordination
Operational Resilience
Cloud Infrastructure Compliance
Data Centre Operations
Communication Skills
Collaboration Across Teams
Incident Management

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the GRC Manager role. Highlight your experience with governance, risk, and compliance frameworks, especially in IT/cloud services. We want to see how your skills align with our mission at Era4!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about AI infrastructure and how you can contribute to our goals. Be sure to mention any relevant regulatory frameworks you’re familiar with.

Showcase Your Collaboration Skills: This role involves working closely with various teams. In your application, share examples of how you've successfully collaborated across departments in previous roles. We love seeing teamwork in action!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from us. Let’s get started on this journey together!

How to prepare for a job interview at Era4

✨Know Your Regulations

Familiarise yourself with the key regulations mentioned in the job description, like GDPR and the EU AI Act. Be prepared to discuss how these regulations impact governance and compliance in a tech environment.

✨Showcase Your Collaboration Skills

This role requires working closely with various teams. Think of examples from your past experiences where you successfully collaborated across departments, especially in risk management or compliance contexts.

✨Prepare for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills in GRC situations. Practice articulating how you would handle specific compliance challenges or risk assessments in a data centre environment.

✨Demonstrate Continuous Improvement Mindset

Era4 values innovation in processes. Be ready to share ideas on how you’ve improved GRC processes in previous roles, and how you can contribute to enhancing their frameworks and operational resilience.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>