At a Glance
- Tasks: Lead governance, risk, and compliance initiatives in a cutting-edge AI infrastructure company.
- Company: Join Era4, a mission-driven start-up transforming energy sites into modern data centres.
- Benefits: Enjoy hybrid work, competitive salary, and opportunities for professional growth.
- Other info: Be part of a diverse team committed to operational excellence and sustainability.
- Why this job: Make a real impact on regulatory compliance in a fast-paced, innovative environment.
- Qualifications: Experience in GRC roles within IT/cloud services and strong understanding of UK/EU regulations.
The predicted salary is between 48000 - 72000 ÂŁ per year.
Era4 develops, owns and operates AI infrastructure across the UK, powered by renewable energy. Converting legacy industrial and energy sites into modern data‑centre facilities, Era4 is combining brownfield regeneration opportunities with cleaner, efficient, scalable compute capacity for healthcare, research, finance, enterprise, and public‑sector organisations.
This role is responsible for building and operationalising our governance, quality, risk, security, and regulatory compliance programme, ensuring our platform meets UK and global regulatory standards (e.g., EU AI Act, GDPR, HIPAA, CCPA, DORA) and the specialised needs of regulated and public‑sector clients with strict regulatory, security and sovereignty requirements. This role blends regulatory intelligence, AI governance, corporate risk management, and cloud infrastructure compliance. You will collaborate deeply across engineering, security, legal, product, and operations teams to embed robust GRC controls across data centre, energy generation, GPU cluster environments, and customer onboarding and delivery models. You will be instrumental in ensuring Era4 meets these high standards and can provide credible assurance to customers, auditors and regulators.
This is an opportunity to join a mission‑led AI business that is redefining infrastructure, intelligence, and impact for enterprise customers.
Key Responsibilities- Governance and frameworks: Maintain governance, risk, and compliance frameworks, including regulatory horizon scanning (EU AI Act, ATAA, GDPR, CCPA, HIPAA, DORA). Keep policies, standards, and procedures up to date and aligned with operational realities. Document ownership, accountability, and escalation paths for GRC matters and support reporting for operational leadership. Operate the corporate risk management process, including risk identification and assessment with operational teams. Maintain the corporate risk register and track mitigations and actions. Escalate material risks and support risk input into operational change initiatives.
- Compliance and assurance: Support the ISMS, BMS, EMS and other management systems with ISO 27001 as a baseline. Coordinate internal and external audits and manage audit evidence. Track remediation actions and support responses to customer security and compliance requests.
- Operational collaboration: Act as a day‑to‑day GRC partner to Operations, Facilities, Engineering, Security and IT. Provide practical guidance on risk and compliance expectations. Support incident reviews, business continuity, and operational resilience assurance. Identify opportunities to improve GRC processes, tooling, reporting, and documentation. Monitor regulatory and standards changes and highlight operational impacts. Help embed a risk‑aware culture across Operations and the wider business.
Expertise working in a governance, risk, compliance, or assurance role within IT/cloud services for a regulated, operational, or infrastructure heavy environment. Hands-on experience supporting ISO 27001, ISO9001, or other ISO certifications in live operational settings. Strong understanding of UK and EU regulatory frameworks as they apply to Era4 and its customers (GDPR, UK GDPR, NIS, NIS2, DORA etc). Familiarity with UK government high‑assurance security requirements and Critical National Infrastructure requirements. Experience participating in external audits and assurance activities. Understanding of operational risk in technical or facilities based environments.
One or more would be an advantage:
- Led or significantly shaped parts of a GRC or compliance programme.
- Exposure to multiple frameworks or assurance models such as SOC 2, PCI DSS, or similar.
- Experience in high performance computing, data centres, cloud infrastructure, telecommunications, or other high availability environments.
- Experience supporting large customer assurance or due diligence processes.
- Exposure to physical security, operational resilience, or critical facilities risk.
- Experience scaling or maturing GRC processes in a growing organisation.
- Familiarity with UK government high‑assurance security requirements.
Why Join Era4
You’ll be joining a mission‑driven start‑up building critical national infrastructure, where operational excellence directly enables growth. This role offers high visibility with leadership, real autonomy, and the chance to shape how a next‑generation company operates at scale.
Diversity & Inclusion
Era4 is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Executive & Operations London (Hybrid) United Kingdom - Hybrid (Visit to London office required)
GRC Manager in London employer: Era4
Contact Detail:
Era4 Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land GRC Manager in London
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect with potential colleagues on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching Era4 and its mission. Understand their GRC needs and think about how your experience aligns with their goals. This will help you stand out and show that you're genuinely interested in the role.
✨Tip Number 3
Practice common interview questions related to governance, risk, and compliance. Be ready to share specific examples from your past roles that demonstrate your expertise and problem-solving skills in these areas.
✨Tip Number 4
Don’t forget to follow up after your interview! A quick thank-you email can leave a lasting impression and shows your enthusiasm for the position. Plus, it keeps you on their radar as they make their decision.
We think you need these skills to ace GRC Manager in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the GRC Manager role. Highlight your experience with governance, risk, and compliance frameworks, especially in IT/cloud services. We want to see how your skills align with our mission at Era4!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about AI infrastructure and how you can contribute to our goals. Be sure to mention any relevant regulatory frameworks you’re familiar with.
Showcase Your Collaboration Skills: This role involves working closely with various teams. In your application, share examples of how you've successfully collaborated across departments in previous roles. We love seeing teamwork in action!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our mission-driven team!
How to prepare for a job interview at Era4
✨Know Your Regulations
Familiarise yourself with key regulations like GDPR, HIPAA, and the EU AI Act. Be prepared to discuss how these frameworks impact governance, risk, and compliance in a cloud infrastructure context.
✨Showcase Your Collaboration Skills
This role requires working closely with various teams. Prepare examples of how you've successfully collaborated with engineering, legal, or operations teams in past roles to implement GRC controls.
✨Demonstrate Your Risk Management Expertise
Be ready to talk about your experience with risk identification and assessment. Share specific instances where you’ve managed risks in operational settings, especially in regulated environments.
✨Highlight Your Continuous Improvement Mindset
Era4 values innovation in GRC processes. Think of ways you've improved compliance or risk management processes in previous roles and be ready to share those insights during the interview.