Vendor Risk Management Jobs for OPT Students
Vendor Risk Management jobs involve assessing third-party suppliers, auditing compliance frameworks, and managing contractual risk exposure. F-1 OPT students can work in this field during their 12-month authorization period, with STEM OPT extensions available for roles at qualifying employers in finance, consulting, and technology.
See All Vendor Risk Management JobsOverview
Showing 5 of 41+ Vendor Risk Management jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 41+ Vendor Risk Management jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Vendor Risk Management roles.
Get Access To All Jobs
INTRODUCTION
Vendor Risk Management - Data & Analytics & Reporting Lead - Chief Risk Office
LOCATION
Location
New York
BUSINESS AREA
Business Area
Legal, Compliance, and Risk
REF #
Ref #
10047824
DESCRIPTION & REQUIREMENTS
The energy of a newsroom, the pace of a trading floor, the buzz of a recent tech breakthrough; we work hard, and we work fast - while keeping up the quality and accuracy we're known for. It's what keeps us inventing and reinventing, all the time. Our culture is wide open, just like our spaces. We bring out the best in each other through collaboration. Through our countless volunteer projects, we also help network with the communities around us, too. You can do amazing work here. Work you couldn't do anywhere else. It's up to you to make it happen.
Bloomberg’s Chief Risk Office (CRO) Department plays a critical role in supporting our businesses and operations around the world. We move quickly and thoughtfully to help address the risks that are inherent with being the world’s leading financial news and information company. Our team is made up of talented and hardworking professionals who think creatively and work collaboratively in an open environment to deliver results, drive innovation, and solve difficult problems. Diversity and inclusion are essential to our success, and we strive to maintain an environment where our employees are empowered to make an impact. We also recognize the value of diversity and inclusion in cultivating a supportive workplace and the importance of giving back to our communities.
The CRO team provides coverage of both Bloomberg's regulated entities and products, and Bloomberg's non-regulated products and services. Our focus is to address risks and related issues by providing risk management as a service, focusing on providing and delivering value to help businesses and departments thoughtfully incorporate risk into decision making.
Vendor Risk Management (VRM) or third-party risk is part of the Chief Risk Office (CRO) and responsible for assisting Bloomberg departments and select subsidiaries of Bloomberg LP in the selection, assessment, mitigation, and continuous monitoring of risks introduced by vendors and other third-party service providers.
ROLE AND RESPONSIBILITIES
What’s the Role?
We are seeking a Vendor Risk Analytics & Reporting Lead to design and implement data-driven solutions that enable and enhance Bloomberg’s Vendor Risk Management program. This individual contributor role will focus on sourcing, integrating, and operationalizing internal and third-party data feeds to support automated risk identification, profiling, assessment, and continuous monitoring of vendor engagements - including owning and managing the Company’s Critical Vendor analysis and reporting.
You will work closely with risk assessors, technology teams, and cross-functional stakeholders to ensure data is leveraged effectively to drive insights, improve decision-making, and strengthen Bloomberg’s third-party risk posture.
Data Strategy & Integration
- Help define and own our Critical Vendor data-based methodology, as well as other key TPRM reporting frameworks. Establish and implement KRIs and KPIs across our vendor risk program.
- Identify and source internal and external data feeds relevant to vendor risk domains (e.g., InfoSec, privacy, resilience, regulatory).
- Design and implement data pipelines and integration workflows to support automated risk profiling, scoring and continuous monitoring.
- Collaborate with technology partners to ensure data architecture supports scalability, accuracy, and timeliness of risk insights.
- Maintain data dictionaries, lineage documentation, and governance protocols to ensure transparency and consistency.
Analytics & Reporting
- Develop dashboards and reporting tools that provide actionable insights into vendor risk exposure, trends, and performance.
- Support thematic and engagement-level risk assessments with data-driven analysis and visualizations.
- Partner with VRM leadership to define key performance indicators (KPIs) and metrics for program effectiveness.
- Deliver executive-ready reporting that supports strategic decision-making and regulatory compliance.
Collaboration & Enablement
- Work with Vendor Risk Managers to understand and take ownership of our TPRM data needs and help translate business requirements into technical solutions.
- Partner with Enterprise Risk, Compliance, and Legal teams to ensure reporting aligns with broader risk frameworks and obligations.
- Monitor industry trends and emerging technologies to continuously improve data capabilities and analytics maturity.
- Contribute to the development of training materials and documentation to support adoption of analytics tools across the VRM team.
BASIC QUALIFICATIONS
You’ll Need to Have:
- Bachelor’s or Master’s degree in Data Science, Information Systems, Risk Management, or equivalent industry experience.
- Extensive experience in vendor risk management and/or data analytics roles, with a focus on third party data integration and reporting.
- Proficiency in data visualization tools (e.g., QlikSense, Power BI) and analytics platforms.
- Experience with data engineering tools and languages (e.g., SQL, Python, ETL frameworks).
- Familiarity with third-party risk domains and vendor risk assessment methodologies.
- Understanding of regulatory requirements and frameworks (e.g., GDPR, DORA, NIST, ISO).
- Excellent communication skills, with the ability to translate complex data into clear, actionable insights.
- Experience working in cross-functional environments and managing multiple stakeholder priorities.
Please note we use years of experience as a guide but we certainly will consider applications from all candidates who are able to demonstrate the skills necessary for the role.
PREFERRED QUALIFICATIONS
We’d Love to See:
- Experience building automated risk scoring models or continuous monitoring solutions.
- Familiarity with vendor risk platforms and tools (e.g., Archer, ServiceNow, SIG, VSAQ).
- Knowledge of cloud-based data architectures and security practices.
- Experience supporting regulatory audits or compliance reporting related to third-party risk.
COMPENSATION
Salary Range = 130000 - 180000 USD Annually + Benefits + Bonus
The referenced salary range is based on the Company's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level.
We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) +match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns.

INTRODUCTION
Vendor Risk Management - Data & Analytics & Reporting Lead - Chief Risk Office
LOCATION
Location
New York
BUSINESS AREA
Business Area
Legal, Compliance, and Risk
REF #
Ref #
10047824
DESCRIPTION & REQUIREMENTS
The energy of a newsroom, the pace of a trading floor, the buzz of a recent tech breakthrough; we work hard, and we work fast - while keeping up the quality and accuracy we're known for. It's what keeps us inventing and reinventing, all the time. Our culture is wide open, just like our spaces. We bring out the best in each other through collaboration. Through our countless volunteer projects, we also help network with the communities around us, too. You can do amazing work here. Work you couldn't do anywhere else. It's up to you to make it happen.
Bloomberg’s Chief Risk Office (CRO) Department plays a critical role in supporting our businesses and operations around the world. We move quickly and thoughtfully to help address the risks that are inherent with being the world’s leading financial news and information company. Our team is made up of talented and hardworking professionals who think creatively and work collaboratively in an open environment to deliver results, drive innovation, and solve difficult problems. Diversity and inclusion are essential to our success, and we strive to maintain an environment where our employees are empowered to make an impact. We also recognize the value of diversity and inclusion in cultivating a supportive workplace and the importance of giving back to our communities.
The CRO team provides coverage of both Bloomberg's regulated entities and products, and Bloomberg's non-regulated products and services. Our focus is to address risks and related issues by providing risk management as a service, focusing on providing and delivering value to help businesses and departments thoughtfully incorporate risk into decision making.
Vendor Risk Management (VRM) or third-party risk is part of the Chief Risk Office (CRO) and responsible for assisting Bloomberg departments and select subsidiaries of Bloomberg LP in the selection, assessment, mitigation, and continuous monitoring of risks introduced by vendors and other third-party service providers.
ROLE AND RESPONSIBILITIES
What’s the Role?
We are seeking a Vendor Risk Analytics & Reporting Lead to design and implement data-driven solutions that enable and enhance Bloomberg’s Vendor Risk Management program. This individual contributor role will focus on sourcing, integrating, and operationalizing internal and third-party data feeds to support automated risk identification, profiling, assessment, and continuous monitoring of vendor engagements - including owning and managing the Company’s Critical Vendor analysis and reporting.
You will work closely with risk assessors, technology teams, and cross-functional stakeholders to ensure data is leveraged effectively to drive insights, improve decision-making, and strengthen Bloomberg’s third-party risk posture.
Data Strategy & Integration
- Help define and own our Critical Vendor data-based methodology, as well as other key TPRM reporting frameworks. Establish and implement KRIs and KPIs across our vendor risk program.
- Identify and source internal and external data feeds relevant to vendor risk domains (e.g., InfoSec, privacy, resilience, regulatory).
- Design and implement data pipelines and integration workflows to support automated risk profiling, scoring and continuous monitoring.
- Collaborate with technology partners to ensure data architecture supports scalability, accuracy, and timeliness of risk insights.
- Maintain data dictionaries, lineage documentation, and governance protocols to ensure transparency and consistency.
Analytics & Reporting
- Develop dashboards and reporting tools that provide actionable insights into vendor risk exposure, trends, and performance.
- Support thematic and engagement-level risk assessments with data-driven analysis and visualizations.
- Partner with VRM leadership to define key performance indicators (KPIs) and metrics for program effectiveness.
- Deliver executive-ready reporting that supports strategic decision-making and regulatory compliance.
Collaboration & Enablement
- Work with Vendor Risk Managers to understand and take ownership of our TPRM data needs and help translate business requirements into technical solutions.
- Partner with Enterprise Risk, Compliance, and Legal teams to ensure reporting aligns with broader risk frameworks and obligations.
- Monitor industry trends and emerging technologies to continuously improve data capabilities and analytics maturity.
- Contribute to the development of training materials and documentation to support adoption of analytics tools across the VRM team.
BASIC QUALIFICATIONS
You’ll Need to Have:
- Bachelor’s or Master’s degree in Data Science, Information Systems, Risk Management, or equivalent industry experience.
- Extensive experience in vendor risk management and/or data analytics roles, with a focus on third party data integration and reporting.
- Proficiency in data visualization tools (e.g., QlikSense, Power BI) and analytics platforms.
- Experience with data engineering tools and languages (e.g., SQL, Python, ETL frameworks).
- Familiarity with third-party risk domains and vendor risk assessment methodologies.
- Understanding of regulatory requirements and frameworks (e.g., GDPR, DORA, NIST, ISO).
- Excellent communication skills, with the ability to translate complex data into clear, actionable insights.
- Experience working in cross-functional environments and managing multiple stakeholder priorities.
Please note we use years of experience as a guide but we certainly will consider applications from all candidates who are able to demonstrate the skills necessary for the role.
PREFERRED QUALIFICATIONS
We’d Love to See:
- Experience building automated risk scoring models or continuous monitoring solutions.
- Familiarity with vendor risk platforms and tools (e.g., Archer, ServiceNow, SIG, VSAQ).
- Knowledge of cloud-based data architectures and security practices.
- Experience supporting regulatory audits or compliance reporting related to third-party risk.
COMPENSATION
Salary Range = 130000 - 180000 USD Annually + Benefits + Bonus
The referenced salary range is based on the Company's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level.
We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) +match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns.
How to Get Visa Sponsorship in Vendor Risk Management
Lead with your risk assessment coursework
Hiring managers in vendor risk want candidates who understand due diligence frameworks. Highlight coursework in risk management, auditing, or compliance directly on your resume. Specific course names signal technical readiness faster than generic degree titles.
Target financial services and consulting firms
Banks, insurance companies, and Big Four consulting firms run large vendor risk functions and have established OPT hiring pipelines. These employers understand work authorization timelines and are more likely to offer H-1B sponsorship when your OPT period ends.
Get familiar with third-party risk frameworks
Employers expect fluency with frameworks like NIST, ISO 27001, and SOC 2. Even self-study exposure gives you a concrete talking point in interviews and demonstrates you can contribute from day one without extensive onboarding.
Disclose your OPT timeline early in the process
Tell recruiters your OPT start date and STEM extension eligibility in the first conversation. Employers who cannot accommodate your timeline will exit early, saving you time. Those who proceed know exactly what they are committing to.
Pursue certifications that signal credibility
Certifications like CISA or the Certified Third Party Risk Professional credential materially strengthen your profile. Many OPT students underestimate how much a single relevant certification can offset concerns about limited domestic work experience.
Emphasize analytical tools experience on your resume
Vendor risk roles increasingly rely on GRC platforms and data analysis. Proficiency in tools like Excel, SQL, or governance software gives employers confidence you can handle risk scoring and reporting without a long ramp-up period.
Vendor Risk Management jobs are hiring across the US. Find yours.
Find Vendor Risk Management JobsSee all 41+ Vendor Risk Management jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Vendor Risk Management roles.
Get Access To All JobsFrequently Asked Questions
Can F-1 OPT students work in Vendor Risk Management legally?
Yes. Vendor Risk Management is a qualifying field for F-1 OPT work authorization when the role is directly related to your degree. Business, finance, information systems, and cybersecurity graduates commonly meet this requirement. Confirm the connection between your specific degree and job duties with your Designated School Official before accepting an offer to ensure your employment remains compliant.
Are Vendor Risk Management roles eligible for STEM OPT extension?
Many are, but it depends on your degree field and the employer. If you hold a STEM-designated degree in information systems, data analytics, computer science, or a related discipline, and your employer is enrolled in E-Verify, you can apply for a 24-month STEM OPT extension. Risk roles at technology companies and fintech firms are strong candidates because the analytical work often aligns directly with STEM classifications.
Where can I find Vendor Risk Management jobs that are open to OPT students?
Migrate Mate lists Vendor Risk Management positions from employers who are actively open to hiring F-1 OPT candidates. Filtering by OPT eligibility saves significant time compared to applying broadly and discovering work authorization issues late in the process. Employers on the platform understand the timeline and sponsorship expectations upfront.
Do Vendor Risk Management employers typically sponsor H-1B visas after OPT?
Sponsorship rates are highest at large financial institutions, consulting firms, and enterprise technology companies with dedicated vendor risk functions. Smaller firms and startups are less likely to sponsor because the legal costs and administrative process are harder to absorb. When evaluating offers during OPT, ask directly about the company's H-1B history and whether the legal team handles sponsorship internally or outsources it.
What academic backgrounds qualify OPT students for Vendor Risk Management roles?
The most common qualifying degrees are business administration, finance, information systems, cybersecurity, and supply chain management. Some employers also hire from statistics and data analytics programs, particularly for roles that involve quantitative risk scoring. Your resume should explicitly connect your degree coursework to the specific duties in the job description, which also helps your DSO verify OPT compliance.
See which Vendor Risk Management employers are hiring and sponsoring visas right now.
Search Vendor Risk Management Jobs