Senior Architect Perimeter & DMZ
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
This job is responsible for defining an architectural vision and solution that supports the strategic outcomes of the Business' Products and Services. Key responsibilities include defining the target operating environment, designing for client resiliency, assisting with solution design, and defining non-functional requirements. Job expectations include working with stakeholders and service providers aligned to the Business' strategic objectives, evaluating the impact of strategic design decisions, and contributing to the architecture roadmap.
Position Summary:
This role leads the network security architecture for perimeter services, external connectivity, and modern DMZ design. It ensures secure exposure of workloads and services across internet, partner, and third-party channels in line with the evolving access patterns and zero trust principles.
Responsibilities:
- Works across the business, operations and technology to create the solution intent and architectural vision for complex solutions and prioritize functional and non-functional requirements into a technology backlog to enable the technology roadmap and functionality to support evolving capabilities and services
- Contributes to the creation of the architecture roadmap of defined domains (Business, Application, Data, and Technology) in support of the product roadmap and the development of best practices including standardized templates
- Clarifies the architecture, assists with system design to support implementation, and provides solution options to resolve any architectural impediments
- Facilitates solution driven discussions, leads the design of complex architectures, and finds creative solutions through knowledge of domain, practical experiments, and proof of concepts while ensuring architecture is flexible, modular, and adaptable
- Educates team members on the technology practices, standardization strategies, and best practices to create innovative solutions
- Supports the team as needed to select the technology stack required for solutions and helps select preferred technology products
- Performs design and code reviews to ensure all non-functional requirements are sufficiently met (for example, security, performance, maintainability, scalability, usability, and reliability)
- Defines scalable and secure designs for ingress/egress. Internet facing services, B2B integration, and third-party access. The role drives the modernization of perimeter controls including firewalls, proxies, segmentation, and decentralized internet breakout strategies.
- Designs secure architecture for inbound and outbound services, including zero trust ingress.
- Acts as a design authority across programs involving network segmentation, partner access, and external service hosting.
- Develops reusable frameworks to standardize policy enforcement, inspection, and observability
- Partners with security, infrastructure, and application teams to embed security into network and perimeter designs.
- Provides thought leadership, influences product direction, and ensures adoption of approved patterns.
- Acts as mentor to engineering and security teams, embedding “secure by design” principles across delivery
Required Qualifications:
- 10+ years of progressive infrastructure / network / security engineering experience with 5+ years in architecture or senior technical leadership roles
- Must have experience taking ownership of perimeter security and DMZ architectures for large-scale, high-availability enterprise environments
- Proven delivery experience in regulated industries (financial services strongly preferred) with strong understanding of audit, risk, and control expectations
- Strong experience leading cross-functional initiatives involving Network, Security, App teams, IAM, SRE/Operations, and Governance/Risk/Compliance (GRC)
- Deep expertise designing and implementing segmented DMZ and perimeter architectures.
- Experience embedding security measures.
- Familiarity with threat modeling for internet-facing applications and partner connectivity
- Demonstrated ability to create and enforce reference architectures, standards, patterns, and guardrails.
Desired Qualifications:
- Hands-on experience with one or more of: Palo Alto, Fortinet, Check Point, Cisco, Juniper SRX F5, HAProxy, NGINX, cloud LBs, Akamai/Cloudflare (WAF/DDoS/CDN), Imperva, API gateways (Apigee, Kong, Mulesoft, AWS API Gateway / Azure APIM) SIEM integrations (Splunk, Sentinel, QRadar)
- Security/network certifications such as: CISSP / CCSP (security architecture), PCNSE/CCNP Security, GIAC (e.g., GSEC, GCIA), or equivalent
Skills:
- Analytical Thinking
- Architecture
- Result Orientation
- Solution Design
- Technical Strategy Development
- Application Development
- Collaboration
- Data Management
- DevOps Practices
- Risk Management
- Agile Practices
- Automation
- Influence
- Solution Delivery Process
- Test Engineering
Shift:
1st shift (United States of America)Hours Per Week:
40Learn more about this role
[Music in background throughout]
On screen copy:
Bank of America® logo
Technology Architect
Technology Architect: At Bank of America, I help shape the technology strategy that powers our global business.
[Technology Architect writing code at his desk]
As a Technology Architect, I design the systems and frameworks that our organization runs on; developing the digital ecosystem that our enterprise depends on every day – from designing systems to setting technical standards across the organization.
[Technology Architect instructing a colleague one-on-one]
I guide team members through large-scale projects that make a massive impact on operations. And I rely on daily, cross-team collaboration, whether I’m reviewing designs or mentoring engineers.
On screen copy:
● Strategic planning
● Architecture reviews
● Team collaboration
Every day is different, but almost all of them involve strategic planning, architecture reviews, and working with all of our stakeholders to align on a path forward.
[Technology Architect leading discussion in a meeting room]
On screen copy:
Balancing:
● Innovation
● Risk
● Scalability
● Compliance
Sometimes my work is a tightrope walk, balancing innovation with risk, scalability, and compliance. Performance versus cost, security versus usability – there are trade-offs I need to weigh to find the best outcome for Bank of America and our clients.
On screen copy:
Leadership development
My role puts me in a unique position for leadership development, enterprise exposure, and gaining technical depth that will only help me grow professionally. And staying active in forums and knowledge-sharing platforms helps keep me in-the-know and inspired. I love bringing what I learn to my work with engineers, product designers, business partners and beyond. That’s where the real magic happens. It’s all about new ideas and creative solutions for cross-functional success.
[Technology Architect shaking hands with supervisor]
There’s a sense of accomplishment knowing the work we do has impact, but feeling supported and valued is a big piece of it too.
On screen copy:
Competitive benefits
With competitive benefits, recognition programs, and exciting career mobility, I feel motivated to take on the future of this industry. I’m helping to build systems that are secure, scalable, and ready for what’s next.
On screen copy:
Build relationships
Build communities
Build careers
We all have goals.
Pursue yours at Bank of America.
We all have goals. Pursue yours at Bank of America.
Narrator: What would you like the power to do? Bank of America.
On screen copy:
What would you like the power to do?®
Bank of America® logo
Learn more at careers.bankofamerica.com
On screen disclosure:
EOE disability/veteran. ©2025 Bank of America Corporation. All rights reserved.
MAP 8651724 Expiration Date: 06/05/2027
[End of transcript]