Green Card Third Party Risk Management Jobs
Third Party Risk Management professionals with advanced degrees or strong specialized credentials qualify for EB-2 or EB-3 green card sponsorship through the PERM labor certification process. Financial institutions, consulting firms, and technology companies actively sponsor these roles, filing I-140 petitions to permanently bring qualified foreign talent onto their teams.
Find Green Card Third Party Risk Management JobsOverview
Showing 5 of 41+ Third Party Risk Management jobs










See all 41+ Third Party Risk Management Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Third Party Risk Management roles.
Get Access To All Jobs
Job Summary:
The Assurance Experienced Senior, Third Party Attestation will be responsible for the preparation of third-party attestation reports, including System and Organization Controls (SOC) 1, SOC 2, SOC 3, SOC for Cybersecurity and WebTrust for CAs, as well as HITRUST, SSPA, ISO, MRC and CSA STAR applying most areas of the governing standard as necessary and documenting, validating, testing, and assessing various control systems, including internal controls. Our TPA individuals specialize in these specific areas to understand the entire technology risk umbrella rather than maintaining overall knowledge in Information Technology General Control (ITGC) audit or IT audit.
Job Duties:
Control Environment
- Applies knowledge and understanding of the collective effect of various factors on establishing or enhancing effectiveness, or mitigating the risks, of specific policies and procedures by:
- Identifying and considering all applicable policies, laws, rules, and regulations of the firm, regulators, or other authoritative bodies as part of engagement team;
- Making constructive suggestions to improve client internal controls and accounting procedures;
- Documenting and validating the operating effectiveness of the clients’ internal control system;
- Supervising and reviewing the work of staff;
- Documenting business and IT processes and controls and tests key controls for service organizations in a variety of industries;
- Identifying and prioritizing key risks, and assesses their impact and likeliness of occurrence;
- Communicating to the client areas to improve processes, strengthen controls, mitigate risks, and/or increase efficiency;
- Developing and maintaining relationships with client personnel and management; and
- Ensuring technology is appropriately integrated into the examination process.
GAAS
- Applies knowledge and understanding of professional standards; application of the principles contained in professional standards; and the ability to document and communicate an understanding and application of professional standards on an engagement by:
- Developing and applying an intermediate knowledge of auditing theory, a sense of audit skepticism, and the use of BDO audit manuals;
- Applying auditing theory to various client situations;
- Documenting working papers and attestation reports in line with BDO policy, identifying deviations and notifying more senior team members in order to obtain appropriate approvals;
- Applying knowledge to identify instances where testing may be reduced or expanded and notifying more senior team members of the occurrence; and
- Contributing ideas and opinions to the engagement team.
Other
- Applies knowledge and understanding of governing principles; applying these principles to client transactions; and documenting and communicating an understanding and application of these principles by:
- Planning and executing attestation examinations including obtaining an understanding of the control environment, designing test plans, evaluating deficiencies and assessing the overall financial reporting control environment;
- Reading and reviewing clients’ reports, ensuring accuracy and completeness, and also ensuring that all supporting information is documented in the work papers and through appropriate testing;
- Preparing required communications to the Client and the Audit Committee, as applicable;
- Recognizing and applying new pronouncements to client situations;
- Identifying, analyzing and discussing alternative principles with the Manager, Senior Manager and engagement partner and the client, as needed;
- Identifying complex issues and brings them to the attention of superiors for resolution;
- Coaching less experienced team members in new areas.
Methodology
- Applies knowledge and application of BDO standards to guide effective and efficient delivery of quality services and products by:
- Completing all appropriate documentation of BDO work papers; and
- Ensuring assigned work is performed in accordance with BDO methodology and requirements.
Research
- Applies methodology used to seek or maintain information from authoritative sources and to draw conclusions regarding a target issue based on the information by:
- Researching basic and intermediate accounting topics and forming an initial opinion on the treatment independently.
Project Management
- Coordinate timing of planning, fieldwork, and review with audit team and client and assist engagement executives in developing the audit engagement budget and identify appropriate resources.
- Develop the draft audit engagement planning documents, audit programs and budgets;
- Establish with the engagement manager the responsibilities of individual audit staff for specific areas of audit work;
- Monitor and report engagement budget to actual and advise engagement executives of possible overruns.
Supervisory Responsibilities:
- Provides verbal and written performance feedback to Associates on assigned engagement teams.
- Supervises the work assignments of Associates on assigned engagement teams.
- Teach/coach associates to provide on the job learning.
- Other duties as required.
Qualifications, Knowledge, Skills and Abilities:
Education:
- Bachelors degree in Accounting, Computer Science, Management Information Systems, Business Administration, Managerial Marketing and Entrepreneurship, Finance or Economics, required.
- Masters degree in Accounting and minor or dual major in Information Systems or other relevant advanced degree, preferred.
Experience:
- More than three (3) years of prior experience in IT, internal or external audit, required.
- More than one (1) year of prior supervisory experience, preferred.
- Experience performing internal control reviews, preferred.
- Experience performing SOC, WebTrust, HITRUST, SOX, ISO 27001 and security/privacy advisory engagements, preferred.
License/Certifications:
One or more of the following certifications are preferred:
- Certified Public Accountant (CPA)
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- ISO 27001 Lead Auditor certification
- HITRUST Certified Common Security Framework Professional (CCSFP)
- Certified Internal Auditor (CIA)
- Certified Information Security Manager (CISM)
- Certified Ethical Hacker (C | EH)
- Certified in Risk and Information Systems Control (CRISC)
- Certified in the Governance of Enterprise IT (CGEIT)
Software:
- Proficiency in Microsoft Office Suite, specifically Word, Excel and PowerPoint, required.
- Prior experience with various applications (e.g., ERP systems), operating systems (e.g., UNIX, Windows); and databases (e.g., Oracle, SQL) beneficial, preferred.
- Exposure to cloud platforms, SaaS applications, security and engineering tools, and other industry software, preferred.
Other Knowledge, Skills & Abilities:
- Basic understanding and experience planning and coordinating the stages to perform technology-focused audits and assessments.
- Knowledge of internal controls and professional standards and regulations (SOC, ISO, WebTrust, HITRUST, Sarbanes-Oxley, etc.).
- Knowledge of data analytics and emerging technologies desired.
- Strong verbal and written communication skills with the ability to adapt style and messaging to effectively communicate and interact with professionals at all levels both within the client organization and the firm.
- Ability to successfully multi-task while working independently and within a group environment.
- Solid analytical and diagnostic skills and ability to break down complex issues and implementing appropriate resolutions.
- Capable of working in a demanding, deadline driven environment with a focus on details and accuracy.
- Solid project management skills.
- Ability to travel as necessary.
Individual salaries that are offered to a candidate are determined after consideration of numerous factors including but not limited to the candidate’s qualifications, experience, skills, and geography.
California Range: $87,000 - $130,000
Illinois Range: $80,000 - $109,000
Minnesota Range: $85,000 - $100,000
NYC/Long Island/Westchester Range: $90,000 - $115,000
Join us at BDO, where you will find more than a career, you’ll find a place where your work is impactful, and you are valued for your individuality. We offer flexibility and opportunities for advancement. Our culture is centered around making meaningful connections, approaching interactions with curiosity, and being true to yourself, all while making a positive difference in the world.
At BDO, our purpose of helping people thrive every day is at the heart of everything we do. Together, we are focused on delivering exceptional and sustainable outcomes and value for our people, our clients, and our communities. BDO is proud to be an ESOP company, reflecting a culture that puts people first, by sharing financially in our growth in value with our U.S. team. BDO professionals provide assurance, tax and advisory services for a diverse range of clients across the U.S. and in over 160 countries through our global organization.
BDO is the first large accounting and advisory organization to implement an Employee Stock Ownership Plan (ESOP). A qualified retirement plan, the ESOP offers participants a stake in the firm’s success through beneficial ownership and a unique opportunity to enhance their financial well-being. The ESOP stands as a compelling addition to our comprehensive compensation and Total Rewards benefits offerings. The annual allocation to the ESOP is fully funded by BDO through investments in company stock and grants employees the chance to grow their wealth over time as their shares vest and grow in value with the firm’s success, with no employee contributions.
We are committed to delivering exceptional experiences to middle market leaders by sharing insight-driven perspectives, helping companies take business as usual to better than usual. With industry knowledge and experience, a breadth and depth of resources, and unwavering commitment to quality, we pride ourselves on:
- Welcoming diverse perspectives and understanding the experience of our professionals and clients.
- Empowering team members to explore their full potential.
- Our talented team who brings varying skills, knowledge and experience to proactively help our clients navigate an expanding array of complex challenges and opportunities.
- Celebrating ingenuity and innovation to transform our business and help our clients transform theirs.
- Focus on resilience and sustainability to positively impact our people, clients, and communities.
- BDO Total Rewards that encompass so much more than traditional “benefits.” Benefits may be subject to eligibility requirements.
Equal Opportunity Employer, including disability/vets.
See all 41+ Green Card Third Party Risk Management Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Green Card Third Party Risk Management Jobs.
Get Access To All JobsTips for Finding Green Card Sponsorship in Third Party Risk Management
Document your risk management credentials early
Gather degree certificates, professional certifications like CISA or CRISC, and performance reviews before starting your search. PERM requires the employer to advertise the role at your specific qualifications, so your credentials must be airtight from day one.
Target financial services and regulated industries first
Banks, insurance carriers, and fintech companies face mandatory third-party oversight requirements, creating consistent demand for this role. These employers file PERM petitions regularly and often have established immigration workflows rather than building a case from scratch for you.
Verify employer PERM filing history before accepting offers
Use the OFLC Wage Search to check whether a prospective employer has filed PERM applications for similar risk roles. An employer with zero prior filings will face a steeper internal approval process, which can delay your case by months.
Clarify whether the role qualifies under EB-2 or EB-3
Roles requiring a master's degree or equivalent specialized expertise typically qualify for EB-2, while bachelor's-level positions fall under EB-3. Confirm this distinction with the hiring team before the offer stage, because the category affects your priority date and wait time if you're from a backlogged country.
Use Migrate Mate to find green card sponsoring employers
Search for Third Party Risk Management roles filtered by green card sponsorship history on Migrate Mate. The platform surfaces employers who have previously sponsored similar positions, so you spend less time on outreach to companies that haven't committed to sponsorship.
Negotiate green card sponsorship terms in your offer letter
Ask your employer to explicitly commit to filing the I-140 and covering PERM-related legal fees before you sign. Without written commitment, sponsorship can be deprioritized or withdrawn after you've already joined, leaving your status in a difficult position.
Green Card Third Party Risk Management: Frequently Asked Questions
Do Third Party Risk Management roles typically qualify for EB-2 or EB-3 green card sponsorship?
Most Third Party Risk Management positions qualify for either EB-2 or EB-3 depending on the degree requirement the employer sets. Roles requiring a master's degree or its equivalent in a specialized field like information security or financial risk qualify for EB-2. Roles requiring a bachelor's degree in a relevant discipline typically qualify for EB-3. The employer defines the minimum requirements during the PERM process, which directly determines your category.
How does the green card process differ from H-1B sponsorship for this role?
The H-1B visa is a temporary work visa with a three-year initial term and an annual lottery for new applicants. The green card process, led by PERM labor certification and followed by the I-140 petition, creates permanent residency rather than temporary status. There is no annual cap lottery at the EB-3 level for most nationalities, and once your priority date is current, you can adjust status inside the U.S. without leaving. The tradeoff is a longer total timeline, often two to four years for PERM approval, I-140 adjudication, and visa availability combined.
Which industries are most likely to sponsor green cards for risk management professionals?
Financial services firms including banks, asset managers, and insurance companies sponsor Third Party Risk Management roles most consistently, driven by regulatory requirements from bodies like the OCC and FFIEC. Technology companies with enterprise compliance obligations and large consulting firms that staff risk engagements at regulated clients also file PERM petitions for this role category. These employers have established legal infrastructure to handle PERM filings, which reduces delays compared to first-time sponsors.
How can I find employers that have sponsored green cards for risk management roles before?
Migrate Mate lets you search for Third Party Risk Management positions filtered specifically by green card sponsorship history. Focusing on employers with prior PERM filings in this job category means the company already understands the process, has relationships with immigration counsel, and is less likely to back out during the multi-year sponsorship timeline. This is especially useful for candidates from countries with longer priority date backlogs, where employer commitment over several years matters most.
What happens to my green card case if I change employers after PERM is filed?
If you change employers before your I-140 is approved, the PERM filing is tied to the original employer and cannot be transferred. You'd need your new employer to restart the PERM process. If your I-140 has been approved and your priority date is within 180 days of being current, federal law allows you to port the approved petition to a new employer in a same or similar occupational category without losing your place in the queue. USCIS evaluates portability requests on a case-by-case basis.