Senior Supply Chain Compliance Analyst (sox)

Weights & Biases Weights & Biases · Data AI · Bellevue, WA +2 · Supply Chain & Capacity Operations - G&A

This role is for a Senior Supply Chain Compliance Analyst (SOX) at CoreWeave, a cloud provider for AI. The analyst will be responsible for all supply chain related SOX and internal control activities, mapping operational processes to financial controls, and ensuring the supply chain organization is audit-ready. This involves owning SOX controls, partnering with Finance SOX and Internal Audit, coordinating audits, developing policies, monitoring control metrics, and creating training materials. The role requires experience in SOX 404, ERP/procurement platforms, process/control documentation, data analysis, and supporting audits. Experience in capital-intensive environments and public company SOX programs is preferred.

What you'd actually do

  1. Own the inventory of supply chain SOX controls (e.g., procure-to-pay, inventory, asset lifecycle, logistics) and keep process maps, control narratives, and RACI up to date.
  2. Partner with Finance SOX, Internal Audit, IT, and supply chain process owners to design and operate effective controls in NetSuite and Coupa (approvals, reconciliations, 3-way match, SoD, access).
  3. Coordinate and support walkthroughs, evidence collection, and audit requests for supply chain, tracking issues and remediation plans to closure.
  4. Develop and maintain policies and SOPs for key supply chain processes (indirect procurement, inventory management, asset tagging, vendor onboarding and commitments).
  5. Monitor control health metrics (e.g., approval timeliness, exception rates, inventory variances) and use them to surface risks and drive continuous improvement.

Skills

Required

  • Supply Chain Management, Business, Accounting, Finance, Information Systems, Engineering
  • 3–6 years of experience
  • SOX 404 and internal control concepts
  • ERP or procurement platform experience
  • document processes and controls
  • Comfort working with data and reports
  • supporting internal or external audits
  • Strong organizational skills
  • high attention to detail
  • manage multiple workstreams against deadlines

Nice to have

  • cloud infrastructure, data centers, semiconductor, networking, hardware manufacturing, or other capital-intensive environments
  • public-company SOX program
  • NetSuite
  • Coupa
  • governance and compliance frameworks
  • CPA, CIA, CISA, CISM, CSCP/CSCA
  • facilitating workshops or training

What the JD emphasized

  • SOX 404
  • public company SOX program