Infrastructure Engineer II

Bank of America Corporation
Plano, TX

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!


This job is responsible for tool and service designs within a technical domain that enable business strategies in accordance with architectural governance, standards and policies. Key responsibilities include creating infrastructure tools and their integration as a service, facilitating deployment of technical solutions by developing templates, playbooks and automation used during implementation. Job expectations include looking for opportunities to improve efficiency when implementing and maintaining tools/services and embracing a culture of innovation and continuous improvement.

The Active Directory Security & GPO Engineering team is seeking an AD Security Engineer responsible for analysis, design, implementation coordination and 4th level escalation support of complex, enterprise level Active Directory solutions, specifically pertaining to security. The individual will work within the engineering organization, interacting with peer teams and partner groups, scaling and deploying improvement, consolidation and migration efforts within the enterprise. The candidate must be able to operate and function well in a multi-cultural, geographically dispersed virtual team environment.

Responsibilities:

  • Provides subject matter expertise and consulting services on a range of technologies and assists Technical Analysts and Infrastructure Engineers to ensure that technology solutions comply with enterprise system design and engineering standards

  • Assists with translating business requirements into technical definitions, reference models, blueprints, and playbooks for deployment in compliance with architecture standards and policies

  • Assists in the evaluation of reference models, blueprints and playbooks to ensure they are fit for purpose

  • Develops software solutions to address manual and repeatable work or inefficient processes

  • Conducts on-site evaluations of third-party products being considered for firm adoption

  • Promotes an inclusive and healthy working environment and helps to resolve organizational impediments/blockers

  • Contributes to the creation/selection of functional and non-functional product evaluation requirements within and across domains

  • Analysis, design, capacity planning and implementation of Active Directory Security Translate business needs into workable technology solutions that meet the requirements of internal customers and peer Active Directory Engineering and Operations teams

  • Responsible for developing standards, target states, roadmaps, effectively socializing and obtaining consensus across architecture, engineering and operations teams

  • Independently manage and perform engineering role for large scale Active Directory efforts and initiatives

  • Perform various functions and duties in support of audit and compliance deliverables – verification/remittance of directory security evidence

  • Develop detailed architecture, standards, design and implementation documentation

  • Analyze current Active Directory environment to identify both technical and operational challenges while making recommendations and developing solutions for improvement

  • Participate in or lead complex or high severity troubleshooting and incident/problem resolutions with other infrastructure teams

Required Qualifications:

  • At least 5-10 years of dedicated Active Directory engineering and architecture experience that includes designing, implementing and maintaining complex enterprise level (50K+ objects) Active Directory solutions and security models

  • Overarching broad and deep technical experience with Active Directory Security Extensive experience and advanced knowledge implementing Windows security concepts and policies, least-privilege design principles

  • Extensive knowledge of AD Security best-practices, latest security threats/trends and mitigation thereof

  • Experience with best practices for Active Directory disaster recovery, object management, security models and trust creation

  • Granular ACE permissions models meeting functional and technical requirements

  • Advanced PowerShell scripting experience and capabilities

  • Strong working knowledge of Windows Server operating systems platforms, DNS, networks, DMZs, firewalls, network security zones and IPv6

  • Deep, in-depth working knowledge of Kerberos (Microsoft and MIT/Heimdal) and NTLM authentication, MFA, SSO and federation technologies

  • Extensive and deep knowledge of Group Policy Objects (GPOs), engineering, implementing and 3rd party management solutions thereof

  • Strong knowledge of LDAP and ability to comfortably construct queries

  • Experience performing large scale upgrades, migrations, transitions and consolidation of Active Directory domains and forests

  • Experience and confidence to be the subject matter expert (SME) in an environment of this size and scale in order to coordinate technical efforts and resolve issues across multiple teams

  • Working knowledge of Certificate/CA/PKI infrastructure Excellent communication skills, including proven experience effectively communicating technical challenges and solutions to peers, customers and senior management.

  • Demonstrable expertise in DevOps methodologies.

  • Ability to automate process via orchestration products such as Jenkins, Terraform, Ansible, REST API, Chef, etc. Extensive expertise scripting via PowerShell, python, or similar.

Skills:

  • Analytical Thinking

  • Application Development

  • Automation

  • Production Support

  • Risk Management

  • Adaptability

  • Business Acumen

  • DevOps Practices

  • Solution Delivery Process

  • Solution Design

  • Architecture

  • Collaboration

  • Innovative Thinking

  • Stakeholder Management

  • Technical Strategy Development

Shift:

1st shift (United States of America)

Hours Per Week:

40
Posted 2026-03-09

Recommended Jobs

Fabricator

Gulf Copper & Mfg. Corp. and Sabine Surveyors Ltd.
Port Arthur, TX

Job Title Essential Duties and Responsibilities: This position is responsible for the following: Other duties may be assigned. # Accurately referring points, dimensions, and patterns on metal…

View Details
Posted 2026-03-09

Cook

Georgetown Behavioral Health Institute
Georgetown, TX

We are looking for a skilled Cook to prepare delicious meals according to menu. An excellent cook must be able to follow instructions in cooking and delivering well-prepared meals. They must be deft …

View Details
Posted 2026-02-13

Full-Time Faculty - Pipefitting

Lee College
Baytown, TX

Full-Time Faculty - Pipefitting Salary: Job Type: Full-Time Job Number: FY2300665 Location: McNair Center - Baytown, TX Division: Provost/Academic & Student Affairs Position …

View Details
Posted 2026-03-09

Junior Accountant Manufacturing

Confidential Recruiting Partners
Plano, TX

Our client is seeking a Junior Accountant  to support general accounting, job costing, sales tax compliance, and month‑end close activities in a manufacturing environment. This position interacts re…

View Details
Posted 2026-03-10

Sales Strategy and Operations Senior Manager

Equinix
Dallas, TX

Who are we? Equinix is the world’s digital infrastructure company®, shortening the path to connectivity to enable the innovations that enrich our work, life and planet.  A place where bold idea…

View Details
Posted 2026-03-03

Virtual Benefits Planning Coordinator

AO Globe Life
Waco, TX

Location: 100% Remote (U.S. Based) Compensation: $90,000–$120,000 per year  Extras: Weekly Pay | Equity Opportunity | Bonus Program | Vested Renewals Employment Type: Full-Time | Flexible …

View Details
Posted 2026-01-09

Final Mile Delivery & Installation - Independent Contractor Opportunity

Ryder
Lancaster, TX

Owner Operators - Furniture Home Delivery Lancaster, TX Warehouse Ryder Last Mile is looking to add to our expansive final mile delivery carrier network. We are looking for carriers that are interes…

View Details
Posted 2026-01-30

Hotel Steward/Dishwasher

Hyatt Hotels
San Antonio, TX

Description At Hyatt, we believe our guests select Hyatt because of our caring and attentive associates who are focused on providing authentic hospitality and meaningful experiences to each and ev…

View Details
Posted 2026-02-24

Assembler

Oldcastle Building Envelope
Terrell, TX

Assembler 2 - Nights Custom From apartments in New York to hospitals and stadiums in Dallas, libraries at prestigious universities to creating modern retail experiences, our teams contribute archi…

View Details
Posted 2026-03-09

Travel Nurse - PICU - Pediatric Intensive Care Job in McKinney, TX - $16,015 per Month (2 Years Experience Needed)

Vetted Health
Mckinney, TX

Vetted is seeking a RN - PICU - Pediatric Intensive Care for a travel job in McKinney, Texas . Must have 2+ years of experience. This contract pays approximately $16,015/month gross. Assi…

View Details
Posted 2026-03-09