Full-Time

Sr Analyst IT Internal Controls

Posted on 3/13/2025

Medline

Medline

5,001-10,000 employees

Provider of medical supplies and healthcare solutions

Compensation Overview

$96.2k - $144.6kAnnually

+ Bonus + Incentive

Senior

Northbrook, IL, USA

Hybrid role requiring onsite presence 3 days per week (Tuesday, Wednesday, Thursday) at Northfield, IL, transitioning to Northbrook, IL later this year.

Category
Cybersecurity
IT & Security
Required Skills
Visio
Word/Pages/Docs
Excel/Numbers/Sheets
PowerPoint/Keynote/Slides
Requirements
  • Bachelor’s degree in Information Technology, Information Security, Computer Science, Business, Accounting, or related field.
  • At least 3 years of experience in IT internal controls, external audit, internal audit, or a related role.
  • Experience designing, implementing, and/or testing IT general controls (i.e., SDLC, change management, access management, and interfaces/integrations).
  • Familiarity with using modern GRC tools to effectively manage IT internal control execution and testing.
  • In-depth understanding of IT General Controls (i.e., Change Management, Access, IT Operations), SDLC, and application controls.
  • Knowledge of SOX audit scoping, testing, and sampling methodologies.
  • Experience developing and maintaining IT internal control documentation (e.g., risk control matrices, narratives, process flow diagrams, etc.).
  • Familiarity with SOC 1 report reviews and documenting complementary user entity controls.
  • Knowledgeable on managing and mitigating segregation of duties violations.
  • Strong written and verbal skills, including a demonstrated ability to translate complex or technical information into concepts that are easily understood.
  • Strong analytical, problem solving, and critical thinking skills, including the ability to anticipate issues and to design appropriate solutions.
  • Detail and deadline oriented, with the ability to tackle multiple tasks and priorities simultaneously.
  • Proficient with Microsoft Office Suite (Word, Excel, PowerPoint, SharePoint, Visio).
Responsibilities
  • Support all aspects of IT compliance with internal control requirements, including designing, implementing, documenting, and testing IT controls and processes.
  • Collaborate with IT, finance, and other cross-functional teams to identify and document key IT controls and processes that are subject to compliance.
  • Create and maintain IT controls environment documentation (e.g., process flows, narratives, control matrices, role security matrices, etc.) by conducting walkthroughs, identifying relevant information, and documenting key details.
  • Assess the impact of new business initiatives, system implementations, and IT policy changes on the IT internal controls environment. Provide guidance and training to support compliance.
  • Conduct regular assessments and audits of IT internal controls to ensure compliance with requirements and identify any potential compliance risks or issues.
  • Identify control gaps, evaluate risk, and develop corrective action plans to address deficiencies, enabling sustainable control processes.
  • Develop and implement IT compliance policies, procedures, and guidelines to ensure adherence to regulations and industry standards.
  • Support the timely delivery of necessary documentation and evidence to internal and external auditors.
  • Support the selection, configuration, and adoption of GRC tools to facilitate IT internal controls initiatives.
  • Execute or facilitate the execution of IT internal controls activities, where applicable.
  • Suggest efficiencies and continuous improvement opportunities related to the IT internal controls program.
  • Provide training on IT internal controls, as needed.
  • Collaborate with cross-functional teams to develop, implement, and remediate IT internal controls.
  • Monitor and report on control effectiveness and other program key performance indicators via metrics and dashboards.
  • Stay current on changes to the IT internal controls regulatory environment and their impact to Medline.
Desired Qualifications
  • CISA, CISSP, CIA, CPA, CRISC, or CISM

Medline supplies medical products and healthcare solutions to clients like hospitals and nursing homes. They offer a variety of items, including protective gear and wound care supplies, and operate on a business-to-business model. Medline stands out from competitors with its focus on sustainability and investments in domestic supply chains. The company's goal is to improve healthcare delivery through reliable products and services.

Company Size

5,001-10,000

Company Stage

Grant

Total Funding

$500K

Headquarters

Mundelein, Illinois

Founded

1966

Simplify Jobs

Simplify's Take

What believers are saying

  • Growing demand for home diagnostics aligns with Medline's product offerings.
  • AI integration in supply chain management enhances Medline's operational efficiency.
  • Medline's commitment to sustainability meets the rising demand for eco-friendly supplies.

What critics are saying

  • IPO market volatility could impact Medline's planned public offering in 2025.
  • Leadership transitions, like Jim Pigott's retirement, may affect strategic continuity.
  • Reliance on automation systems poses risks of technical failures or cybersecurity threats.

What makes Medline unique

  • Medline's extensive product catalog covers protective gear, wound care, and home diagnostics.
  • The company has a robust domestic supply chain infrastructure supporting sustainability and resilience.
  • Medline's B2B model directly serves healthcare providers and institutions efficiently.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Life Insurance

Disability Insurance

401(k) Company Match

Paid Vacation

Paid Sick Leave

Company News

PR Newswire
Mar 11th, 2025
Medline Awards Distribution Center Of The Year And Safe Awards

Five Awards Given in Each Category for Different Size FacilitiesNORTHFIELD, Ill., March 11, 2025 /PRNewswire/ -- Medline, the largest provider of medical-surgical products and supply chain solutions serving all points of care, announced this week its Distribution Center of the Year and Safety, Awareness for Everyone (SAFE) Award recipients to its top-performing facilities. These awards are given to the top-performing Medline distribution centers in the United States across its four tiers of size, as determined by the sales volume distributed out of each facility. Medline team members who work at these facilities take pride in knowing they are providing the highest-quality consistent, reliable and safe service to the company's healthcare customers

PR Newswire
Mar 11th, 2025
Swisslog And Medline Collaboration Results In New Autostore Installation In Aurora, Colorado

ATLANTA, March 11, 2025 /PRNewswire/ -- Swisslog, a leading provider of best-in class warehouse automation and software, today announced that long-time customer Medline will deploy an AutoStore system optimized by Swisslog's SynQ software within its Aurora, Colo. facility. When completed, it will be the 24th AutoStore system installation since the two companies began working together more than a decade ago

PR Newswire
Feb 24th, 2025
Mmcap Infuse Awards Medline National Cooperative Agreement Extension

Medline's dedicated government team and robust distribution network continue supporting state and local municipalitiesNORTHFIELD, Ill., Feb. 24, 2025 /PRNewswire/ -- Medline, the largest provider of medical-surgical products and supply chain solutions serving all points of care, today announced it has been awarded a contract extension from MMCAP Infuse to continue the distribution of medical-surgical supplies for local and state municipalities.Through this agreement, more than 35,000 MMCAP Infuse members representing state agencies, counties, cities and school districts across all 50 states are receiving access to negotiated pricing on Medline's extensive portfolio of essential medical supplies. Medline can support these MMCAP Infuse members through its differentiated network of 45 distribution centers in the U.S. and a fleet of more than 2,000 MedTrans trucks."Our agreement with MMCAP Infuse has allowed us to position Medline as a strategic partner to help decrease supply costs and improve operational efficiencies," said Brad Mariam, executive vice president of Medline Non-Acute Care. "Our dedicated government team remains steadfast in its mission to support state and local agencies. We look forward to continuing our efforts toward delivering exceptional value through our MMCAP Infuse contract extension."Medline has extensive experience serving many areas and agencies of federal, state and local government, including the CDC, FEMA, health departments, veterans' homes, prisons, hospitals, clinics, public schools, higher education institutions, medical examiners' offices, law enforcement agencies and emergency medical services providers

PYMNTS
Jan 12th, 2025
Investment Bankers Banking On An Ipo Turnaround In 2025

Investment bankers are reportedly preparing for a dealmaking uptick in equity capital markets this year. Optimism among Wall Street’s banks is being fueled by a promising stable of initial public offerings (IPOs) by high-profile companies, Reuters reported late Friday (Jan. 10). Among these companies are liquified natural gas producer Venture Global, medical supplier Medline, and cybersecurity firm Sailpoint, the report said, citing sources familiar with the matter

PYMNTS
Jan 5th, 2025
Wall Street Reportedly Prepping Private Equity-Fueled Ipo Revival

Will 2025 bring about a revival in the initial public offering (IPO) market?. As the Financial Times (FT) reported Sunday (Jan. 5), it’s a rebound Wall Street banks are preparing for, as private equity companies turn to the equities markets to offload some of their high-profile holdings. The report noted that a number of private equity-backed firms have already filed IPO paperwork, among them the medical devices company Medline and software maker Genesys