Compliance Manager

procaresolutions

Denver (CO)

On-site

USD 120,000 - 180,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision
HSA

Job summary

Procare Solutions is seeking a Compliance Manager in Denver to own the SOC 2 Type 2 program across multiple products and support SOX, privacy, PCI, and HIPAA compliance efforts. You will lead a small team, coordinate with Engineering and IT, and translate regulatory requirements into auditable controls for business units.

The ideal candidate has 4+ years in compliance or IT audit, familiar with GDPR/CCPA, PCIDSS, and common control frameworks, and experienced with cloud environments.

Qualifications

  • 4+ years of experience in compliance, information security, or IT audit with direct SOC 2 Type 2 involvement.
  • Working knowledge of SOX ITGC concepts, privacy frameworks (GDPR/CCPA), and PCIDSS requirements.
  • Experience reviewing contract terms and managing or mentoring junior team members.
  • Familiarity with multiple control frameworks (HIPAA, NIST CSF, ISO27001).

Responsibilities

  • Own the end-to-end SOC 2 Type 2 audit lifecycle including scoping, control design, evidence collection, auditor liaison, remediation tracking, and continuous monitoring.
  • Support ITGC testing and coordination with internal/external auditors for financial reporting compliance.
  • Lead privacy audits and dpas documentation (GDPR/CCPA).
  • Support PCI assessments including scoping and control validation with engineering teams.
  • Review and track DPAs with customers, vendors and subprocessors.
  • Assess vendor risk and contractual data protection requirements.
  • Design, implement and monitor controls with Engineering, IT and Security.
  • Maintain and evolve compliance policies, procedures, and control narratives; ensure training is delivered.
  • Serve as a point of contact for auditors and customer security questionnaires.
  • Identify opportunities to automate evidence collection and improve control monitoring.

Skills

SOC 2 Type II audits
ITGC/SOX
Privacy frameworks
Regulatory compliance
Vendor risk management

Education

Bachelor's degree

Tools

Vanta
Drata
OneTrust
ServiceNow GRC

Job description

About Procare

For over 30 years, Procare Solutions has been dedicated to empowering early childhood educators by providing products and services that enable them to focus on the care, safety and education of children. We recognize the responsibility that comes with nurturing and educating children, which is why our child care management solutions are designed to automate business processes, help ensure safety and compliance, communicate with families and provide educational resources and training to help teachers and children thrive.

Over 40,000 satisfied customers have chosen Procare Solutions as their trusted partner in providing exceptional care for young minds.

A Little About the Role

We're looking for a Compliance Manager to own and mature our compliance program as we scale. You'll be the primary driver of our SOC 2 Type 2 audit program for 5 products, and will provide critical support across SOX, privacy, PCI, HIPAA, and additional regulatory and professional framework compliance efforts. This is a hands‑on role for someone who enjoys building repeatable processes, working cross‑functionally with engineering and IT teams, and translating regulatory and contractual requirements into practical, auditable controls for business units.

You'll lead a small team: analysts, contractors, stakeholders - making this a great opportunity for someone ready to take on people leadership while staying close to the technical and operational details of compliance work.

What you’ll do:
  • SOC 2 Type2: Own the end‑to‑end audit lifecycle – scoping, control design, evidence collection, auditor liaison, remediation tracking, and continuous monitoring between audit cycles.
  • SOX Support: Assist with IT general controls (ITGCs) testing, walkthroughs, and coordination with internal audit and external auditors to support financial reporting compliance.
  • Privacy Audits: Support privacy compliance efforts (e.g., GDPR, CCPA/CPRA) including audit prep, control validation, and documentation of data‑handling practices.
  • PCI Compliance: Support PCIDSS assessments, including scoping, control validation, and coordination with payment processing and engineering teams.
  • Data Processing Addendums (DPAs): Review, negotiate and track DPAs with customers, vendors and subprocessors, ensuring alignment with our data protection commitments and privacy obligations.
  • Vendor & Third‑Party Risk: Assess subprocessors and vendors for compliance posture and contractual data protection requirements.
  • Controls Oversight: Partner with Engineering, IT and Security teams to design, implement and monitor controls; maintain a strong evidence trail and control library.
  • Policy & Process: Maintain and evolve compliance policies, procedures and control narratives to reflect the current environment and audit requirements, including ensuring NEO and annual training is released and accurate.
  • Audit Readiness: Serve as a key point of contact for external auditors, customer security questionnaires and due diligence requests.
  • Continuous Improvement: Identify opportunities to automate evidence collection and streamline control monitoring using GRC tooling.
Our ideal candidate will have:
  • 4+ years’ of experience in compliance, information security, or IT audit, with direct experience running or supporting SOC 2 Type2 audits.
  • Working knowledge of SOX ITGC concepts, privacy frameworks (GDPR/CCPA), and PCIDSS requirements – you don’t need to be a deep expert in all four, but you should be comfortable supporting each.
  • Experience reviewing contract terms.
  • Familiarity with common control frameworks (e.g., HIPAA, AICPA Trust Services Criteria, NIST CSF, ISO27001).
  • Prior experience managing or mentoring junior team members or contractors.
  • Strong written and verbal communication skills – you can explain control requirements to engineers and translate technical detail for auditors and leadership.
  • Comfortable working in a fast‑paced SaaS environment with evolving systems and processes.
  • Bachelor’s degree in a related field, or equivalent practical experience.
  • Experience working with GRC platforms (e.g., Vanta, Drata, OneTrust, ServiceNow GRC) is a strong plus.
  • Relevant certifications: CISA, CISM, CIPP/E, CIPP/US, or similar.
  • Experience supporting multiple concurrent audit cycles in a SaaS or cloud environment.
  • Experience with cloud infrastructure (AWS, GCP, or Azure) and understanding of how technical controls map to compliance requirements.
Physical Requirements:

This position works most of the time in a fixed office location and may involve sitting and/or standing for prolonged periods.

Frequently required to communicate verbally and in writing (mostly email) with customers, prospects, and other employees.

Use of computer, telephone and other office equipment for the greater part of the workday.

Occasional… may be required for this position.

Why Procare?

Excellent comprehensive benefits packages including: medical, dental, & vision plans.

HSA op

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Compliance Manager
Compliance Manager

Procare Solutions • Denver (CO)

Hybrid
USD 139,000 - 151,000
Medical, dental, & vision plans
HSA with employer contributions
Vacation, holidays, sick days, and PTO
+1
Compliance Manager: SOC 2, Privacy & Hybrid Role
Compliance Manager: SOC 2, Privacy & Hybrid Role

Procare Solutions • Denver (CO)

Hybrid
USD 139,000 - 151,000
Medical, dental, & vision plans
HSA with employer contributions
Vacation, holidays, sick days, and PTO
+1
Vice President, Information Security
Vice President, Information Security

The Security Executive Council • Denver (CO)

On-site
USD 200,000 - 250,000
Comprehensive benefits including medical, dental, and vision plans
401K Plan with employer match
Tuition Reimbursement and Professional Development
+1
SaaS Compliance Manager: SOC 2, Privacy & ITGCs
SaaS Compliance Manager: SOC 2, Privacy & ITGCs

procaresolutions • Denver (CO)

On-site
USD 120,000 - 180,000
Medical, dental, vision
HSA
Compliance Team Lead
Compliance Team Lead

Cyber74 • United States

Hybrid
USD 99,000 - 121,000
Workplace Manager
Workplace Manager

Procare Solutions • Denver (CO)

On-site
USD 72,000 - 84,000
Medical benefits
Dental benefits
Vision benefits
+5
Security and Compliance Manager
Security and Compliance Manager

Rezilient Health • United States

On-site
USD 90,000 - 130,000
Generous PTO
Paid family leave
Comprehensive medical, dental, vision, and life insurance
+1
Senior Manager of Governance, Risk, and Compliance
Senior Manager of Governance, Risk, and Compliance

Maven Clinic • United States

On-site
USD 140,000 - 180,000
Parental leave
401K matching
Professional development stipend
+2
Security Compliance Program Manager
Security Compliance Program Manager

Centralreach-8 • Holmdel Township (NJ)

Hybrid
USD 100,000 - 120,000
Health benefits
401(k) matching
Paid parental leave
+1
Senior Compliance Engineer
Senior Compliance Engineer

Estuary • United States

On-site
USD 160,000 - 210,000