Bank of America logo

Network Security Engineer - Network Access Control

Bank of America

On-siteWashington, DCseniorPosted 2h ago

Job description

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammatesโ€™ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.

We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.

Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Job Description:

The Network Security Engineer is responsible for supporting multiple security engineering efforts to deliver enterprise security capabilities. Key responsibilities include serving as a subject matter expert of security technology, overseeing major engineering milestones including the design, development, and implementation of systems, and reporting on key metrics. Job expectations include executing on engineering initiatives, partnering with cross-functional teams, solving complex issues within BofA's global network footprint.

Responsibilities:

  • Identify gaps in environment management standards adherence and work with appropriate partners to develop plans to close gaps.

  • Contribute to defining and ensuring security requirements are met based on BofA standards and policies.

  • Incorporate architecture components including threat models, diagrams, and technology requirements into solution development.

  • Utilize network, virtualization, and datacenter technologies to support deployment strategies.

  • Work across technology teams to understand and deliver system requirements.

  • Build and improve processes supporting system transformation, quality controls, dependency management, and workload management.

  • Perform and implement test suites including integration, regression, and performance testing.

  • Analyze test reports, identify issues, and triage root causes.

  • Document and communicate deployment, maintenance, support, and business functionality requirements.

  • Adhere to team delivery and release processes and cadence.

Required Qualifications:

  • 5+ years of hands-on experience with Cisco ISE and Cisco SNA in enterprise environments.

  • Experience designing and troubleshooting distributed Cisco ISE deployments (PAN, PSN, MnT nodes).

  • Experience with 802.1X authentication (wired and wireless) and MAC Authentication Bypass (MAB).

  • Experience with NetFlow/IPFIX analysis, behavioral analytics, East-West traffic visibility, insider threat detection, data exfiltration detection, and threat hunting.

  • Ability to work effectively with both technical and non-technical business owners.

  • Experience working in large enterprise environments.

Desired Qualifications:

  • Strong understanding of TCP/IP, Routing and Switching, BGP, OSPF, VLANs, VRFs, and RADIUS.

  • Experience with Cisco Catalyst, Nexus, and wireless infrastructure.

  • Experience with packet capture and protocol analysis using Wireshark.

  • Exposure to Skyhigh Secure Web Gateway (SWG).

  • Exposure to proxy policy categories.

Skills:

  • Influence

  • Result Orientation

  • Solution Design

  • Stakeholder Management

  • Technical Strategy Development

  • Access and Identity Management

  • Critical Thinking

  • Cyber Security

  • Information Systems Management

  • Risk Management

  • Collaboration

  • DevOps Practices

  • Financial Management

  • Solution Delivery Process

  • Test Engineering

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Shift:

1st shift (United States of America)

Hours Per Week:

40