Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
This job is responsible for partnering with engineering and technology teams to improve reliability and observability for the services it supports. Key responsibilities include planning and implementing instrumentation, tooling, ticketing, alerting and on call routines as defined in observability designs, and engaging in production triage and Problem Management. Job expectations include supporting code enhancements to automate services and improve reliability and observability while expanding knowledge to identify gaps in the observability design or implementation. The Active Directory Infrastructure Operations (ADIO) team is seeking a highly skilled Active Directory (AD) Subject Matter Expert (SME) to support and maintain a large-scale corporate enterprise environment. This role requires deep expertise in AD authentication services and infrastructure, with a focus on ensuring reliability, security, and optimal performance. The ideal candidate will be responsible for diagnosing and resolving production issues, managing AD-related infrastructure, and collaborating with cross-functional teams to ensure smooth operations. This includes proactive maintenance, troubleshooting, and automation of administrative tasks to enhance efficiency and minimize downtime. The candidate will be required to cover weeknight and weekends on a as needed basis. Responsibilities:
- Provide expert-level support for Active Directory authentication services, ensuring high availability and security of AD environments across multiple domains and forests
- Diagnose and resolve complex authentication and authorization issues across domain and cross-forest environments
- Perform root cause analysis (RCA) and defect identification for production issues, coordinating fixes and managing code deployments
- Maintain the health of AD-related infrastructure and services, including replication, domain controllers, and security policies
- Manage Group Policy Objects (GPOs) and troubleshoot policy conflicts, permissions issues, and security configurations
- Monitor and respond to AD security incidents, escalating when necessary and working to mitigate risks proactively
- Automate routine tasks using PowerShell, VBScript, or other scripting technologies to improve operational efficiency
- Perform installation, configuration, and lifecycle management of Active Directory and related systems
- Work collaboratively with global IT teams, including application support teams, network engineers, and security teams, to ensure AD services are optimized and aligned with business needs
- Support Active Directory operations in DMZ environments, ensuring secure authentication across firewalled networks
- Implement and follow ITIL best practices, ensuring change management and incident response align with industry standards
- Document AD infrastructure, policies, configurations, and troubleshooting procedures to support knowledge sharing and operational efficiency
- Manage and oversee onshore and offshore contractors, delegating tasks to improve team efficiency
- Infrastructure Monitoring including Alert and Capacity
Required Qualifications:
- 5+ years of hands-on experience supporting Active Directory authentication services in large-scale enterprise environments
- Expertise in multi-domain and multi-forest AD environments, including cross-domain authentication and trust relationships
- Proficiency in AD troubleshooting tools such as DCDiag, Netdiag, Repadmin, and DFRSdiag
- Strong understanding of Group Policy Object (GPO) management, including troubleshooting GPO-related issues
- Experience working with Windows Server 2012, 2016, and later versions
- Hands-on experience with PowerShell and/or VB scripting to automate administrative tasks and resolve complex issues
- Experience with AD Domain Name System (ADDNS), Dynamic Host Configuration Protocol (DHCP), and Distributed File System (DFS)
- Knowledge of enterprise storage, network infrastructure, and virtualization technologies (SCVMM/Hyper-V, VMware)
- Strong understanding of security best practices, including Kerberos authentication, NTLM, AD Federation Services (ADFS), and multi-factor authentication (MFA)
- Experience working with SQL databases in relation to AD-integrated applications
- Familiarity with ITIL processes, including incident, change, and problem management
Desired Qualifications:
- Experience supporting HP/Dell server platforms in an enterprise environment
- Microsoft System Center Configuration Manager (SCCM) experience
- Experience using Splunk for log analysis and security event monitoring
- Familiarity with Active Directory Certificate Services (ADCS) and Public Key Infrastructure (PKI)
- Experience working in hybrid AD environments with Azure Active Directory (Azure AD) and cloud-based authentication services
?Skills:
- Analytical Thinking
- Application Development
- Automation
- Production Support
- Result Orientation
- Adaptability
- Collaboration
- DevOps Practices
- Solution Delivery Process
- Technical Strategy Development
- Influence
- Innovative Thinking
- Risk Management
- Solution Design
- Stakeholder Management
Shift: 1st shift (United States of America)
Hours Per Week: 40
Pay Transparency details US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101)Pay and benefits informationPay range$95,000.00 - $156,200.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.5 years experience
|