Security Compliance Program Manager

Posted 12 Days Ago
Be an Early Applicant
Holmdel, NJ, USA
Hybrid
100K-120K Annually
Entry level
Healthtech • Software
CentralReach is the #1 provider of SaaS software solutions for autism care.
The Role
Own and evolve the company-wide compliance program in partnership with Compliance, Information Security, Infrastructure, Legal, and leadership teams. Lead SOC 2, HIPAA, privacy, and security audits; translate frameworks into action plans; develop KPIs, dashboards, and reporting cadences; support monitoring and incident response; automate compliance processes; evaluate GRC tools; manage policies, vendor oversight, internal audits, and multiple concurrent compliance initiatives.
Summary Generated by Built In

CentralReach is a leading provider of autism and IDD care software for Applied Behavior Analysis (ABA), multidisciplinary therapy, and special education. Trusted by more than 200,000 users, we enable therapy providers, educators, and employers to scale the way they deliver ABA and related therapies with innovative technology, market-leading industry expertise, and world-class customer satisfaction. 

The Security Compliance Program Manager will own and drive CentralReach’s overall compliance program, working directly with the Chief Compliance Officer and Chief Information Security Officer. Beyond day-to-day maintenance and special projects, this role brings program ownership: translating regulatory and security standards into action plans, building KPIs and reporting cadences for leadership, developing metrics, monitoring, and incident response capabilities in partnership with Information Security and Infrastructure teams, and continually evolving the program’s processes and tooling.  

Key Accountabilities: 

  • Lead and Manage Third-Party and Internal Audits
    • SOC 2 Type 2
    • HIPAA Attestation
    • Privacy Audit  
    • Security Audits 
  • Compliance Program Strategy & Implementation
    • Translate requirements from regulatory and security frameworks (e.g., NIST 800-53, SOC 2, HIPAA) into concrete action items for cross-functional teams
    • Track progress and communicate compliance rollout status with the teams doing the work 
  • Program Reporting & Communication
    • Develop KPIs and dashboards to measure compliance program maturity, and report on them regularly to the Chief Compliance Officer and leadership
    • Partner with Information Security and IT leadership to continually evolve the compliance program 
  • Metrics, Monitoring & Incident Response
    • Partner with Security and Infrastructure teams to support automated identification, alerting, and response for compliance-relevant risks and incidents
    • Maintain the compliance/security Incident Response Plan
    • Support on-call and escalation planning for compliance and security incidents 
  • Compliance Process Development & Tooling
    • Create, implement, and automate recurring compliance processes, such as account and access reviews and employee onboarding/offboarding checks
    • Identify and evaluate GRC (governance, risk, and compliance) and compliance management tools to support the program 
  • Projects
    • Build out the compliance program KPI framework and reporting cadence for leadership
    • Manage Security and Compliance policy updates
    • Lead and manage required internal audits
    • Oversee Vendor Management
    • Implement security and compliance program 
  • Desired Skills and Experience: 
    • Experience working with auditors through internal and external security and compliance audits
    • Working knowledge of security and compliance frameworks (e.g., NIST 800-53, SOC 2, HIPAA, ISO 27001) and the ability to translate them into operational action plans
    • Experience developing KPIs, metrics, and reporting cadences for program and executive leadership
    • Familiarity with security monitoring, alerting, and incident response concepts
    • Experience with Business Continuity and Disaster Recovery planning
    • Process improvement and automation mindset, including experience evaluating and implementing GRC or compliance management tools
    • Strong cross-functional collaboration and stakeholder management, including with Information Security, Infrastructure, and Legal teams
    • Proven ability to manage multiple compliance initiatives simultaneously (e.g., audit cycles, risk assessments, policy rollouts) with competing timelines and cross-functional dependencies
    • Excellent written and verbal communication skills, with demonstrated ability to translate complex regulatory or legal requirements into clear, actionable guidance for non-compliance audiences
    • Detail-oriented approach to documenting audit findings, risk assessments, or corrective action plans, with follow-through on tracking items to closure
    • Analytical mindset with a track record of identifying root causes of process or control gaps and recommending sustainable fixes rather than short-term patches
Base Salary Range
$100,000$120,000 USD

Backed by Roper Technologies, Inc. (Nasdaq: ROP), CentralReach is entering an exciting phase of growth, innovation, and scale.  

Recognized as one of the best places to work over 10 times by organizations such as Inc, Built In, and NJBIZ, our culture is centered around impact, inclusion, and flexibility. As a hybrid company with collaborative offices in Ft. Lauderdale, FL; Holmdel, NJ; and Verona, Italy, we foster a workplace where top talent can thrive and make a real difference in the lives of those we serve.
We offer competitive compensation, comprehensive health benefits, generous PTO, 401(k) matching, and paid parental leave to our full-time employees. Our team members also enjoy hybrid work schedules, career development support, wellness programs, and opportunities to give back through CR Cares™, our community engagement initiative.

Be part of a market leader driving the future of care. Explore opportunities at centralreach.com/careers.  

Protecting your information is important to us.  Please take a moment to review our Notice of Privacy Practices for Job Applicants. Applicant-Privacy-Notice-110725 to understand how we collect, use, store, and protect your personal information during the recruitment process. 

Skills Required

  • Experience working with auditors through internal and external security and compliance audits
  • Working knowledge of NIST 800-53, SOC 2, HIPAA, and ISO 27001 frameworks
  • Ability to translate regulatory and security frameworks into operational action plans
  • Experience developing KPIs, metrics, dashboards, and reporting cadences for program and executive leadership
  • Familiarity with security monitoring, alerting, and incident response concepts
  • Experience with Business Continuity and Disaster Recovery planning
  • Process improvement and automation experience
  • Experience evaluating and implementing GRC or compliance management tools
  • Strong cross-functional collaboration and stakeholder management skills
  • Experience collaborating with Information Security, Infrastructure, and Legal teams
  • Ability to manage multiple compliance initiatives simultaneously with competing timelines and cross-functional dependencies
  • Excellent written and verbal communication skills
  • Ability to translate complex regulatory or legal requirements into clear, actionable guidance for non-compliance audiences
  • Detail-oriented documentation and follow-through for audit findings, risk assessments, and corrective action plans
  • Analytical mindset with experience identifying root causes of process or control gaps and recommending sustainable fixes
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fort Lauderdale, FL
400 Employees
Year Founded: 2012

What We Do

CentralReach’s story started in 2012 at an ABA clinic in Pompano Beach, Florida. The company's founder, a practicing Board Certified Behavior Analyst, was drowning in manual work – from paper billing and clinical data collection to clinical reporting.. With client outcomes in mind, she created a technology-based solution that reduced time-consuming administrative work and freed her to spend time where it matters most – serving clients. Today, under the leadership of Chris Sullens, award-winning CEO in the technology space, CentralReach remains committed to its founding mission: leveraging technology to support individuals with autism and intellectual and developmental disabilities and addressing the growing Autism and IDD care gap. Now the leader in its field, CentralReach continually strives to propel the industry forward through cutting-edge technology, an unrelenting commitment to excellence, and a culture devoted to serving the growing neurodiverse population. Trusted by more than 115,000 users, we enable therapy providers, educators, and employers to scale the way they deliver Applied Behavior Analysis therapy with innovative technology, market-leading industry expertise, and world-class customer satisfaction.

Why Work With Us

We are a mission-driven team who are lucky to get to impact and advance the future of autism and IDD care software. CentralReach is growing quickly, which provides the opportunity to learn and grow from within. We strive to provide career pathing opportunities, as well as leadership and management development training opportunities.

Gallery

Gallery

Similar Jobs

Hybrid
2 Locations
289097 Employees

PwC Logo PwC

Florham Park - Tax - Intern - Winter 2028 - Destination CPA

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
Florham Park, NJ, USA
370000 Employees
29K-48K Hourly
Hybrid
Jersey City, NJ, USA
289097 Employees

Comcast Logo Comcast

Reliability Engineer

Digital Media • Information Technology • News + Entertainment
Hybrid
Mount Laurel, NJ, USA
115000 Employees
79K-118K Annually

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account