IT Analyst - SOX

the ClientRosemead, CA
Hybrid

About The Position

The contingent worker will act as both a business analyst and SOX analyst, supporting IT SOX, business controls, quality management, and control documentation activities. The role will partner with business, IT, internal audit, SOX Governance, external auditors, and leadership to develop, assess, document, test, and remediate internal controls across assigned portfolios, including control design and operating effectiveness. This includes ITGCs, automated/configurable controls, access controls, change management, SDLC controls, reports/IPE, interface controls, deficiency management, and control evidence. The role will also evaluate existing SOX, operational, and compliance controls to identify opportunities for automation, simplification, standardization, and improved control efficiency while maintaining audit defensibility. This role is looking for a highly skilled internal controls professional who can operate independently, deal with ambiguity, and move work forward without needing step-by-step direction. The person should be resourceful, proactive, and comfortable working across business, IT, SOX Governance, internal audit, external auditors, and senior leadership. Candidate must bring strong critical thinking, a learning mindset, and confidence using AI and digital tools to modernize analysis, documentation, reporting, and control execution while maintaining audit defensibility.

Requirements

  • 7 years of experience implementing internal control policies, processes, controls, and system improvements.
  • Strong SOX, regulatory, operational controls, risk management, audit coordination, and business analysis experience.
  • Ability to lead cross-functional teams, assess complex problems, develop control documentation, manage RACM and narratives, support control testing, evaluate control design and operating effectiveness, synthesize data/process flows, and communicate clearly with frontline teams through executive leadership.
  • Must have strong knowledge of ITGCs and control domains including access, change management, SDLC, automated/configurable controls, reporting, interfaces, control deficiency management, and control evidence.
  • Must demonstrate strong critical thinking, sound judgment, learning mindset, resourcefulness, and the ability to deal with ambiguity and challenge existing control designs and processes constructively.
  • Must be comfortable using AI and digital tools to modernize work, improve analysis, streamline documentation, and increase efficiency.

Nice To Haves

  • Experience with large-scale software implementations and/or enterprise business process control environments.
  • Utility industry experience.
  • Professional training or certifications in audit such as CIA, CISA, CRISC, or equivalent, quality management, controls, risk, or project delivery.
  • Experience liaising with internal/external auditors and producing executive-level presentations, SOX status reports, governance materials, control deficiency memos, remediation plans, scoping memos, process flows, control design and operating effectiveness assessments, testing support documentation, issue logs, decision logs, and control narratives.
  • Experience identifying opportunities to automate or simplify SOX controls, reduce manual effort, improve evidence quality, and modernize control documentation using AI-enabled or digital productivity tools is strongly preferred.

Responsibilities

  • Serve as overall lead/project manager/assessor for assigned portfolios.
  • Lead control deficiency review for IT SOX controls.
  • Lead document management for risk, audit, and control matrices (RACMs), and control narratives.
  • Support scoping assessments, IT project SDLC control assessment and design, robotic process automation design reviews, scoping memos, remediation plans, governance reporting, and executive-ready status updates.
  • Perform business analysis activities, including stakeholder interviews, requirements gathering, current-state and future-state process mapping, gap analysis, action tracking, and translating control needs into process or documentation requirements.
  • Evaluate current SOX, operational, and compliance controls and related processes for control design, operating effectiveness, automation, simplification, standardization, and documentation improvement opportunities without weakening control effectiveness or audit readiness.

Benefits

  • Medical, Vision, and Dental Insurance Plans
  • 401k Retirement Fund
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service