Senior Solution Architect

Bank of America Bank of America · Banking · Plano, TX +1

This role is responsible for defining and governing the API Gateway platform, architecting a patch and repave solution for compute infrastructure, establishing immutable container and VM patterns, and delivering a metadata store and infrastructure console to provide operational, cost, and compliance transparency to customers. The architect will operate at the intersection of platform engineering, security, operations, and developer experience—driving architectural standards, automation, and self-service capabilities across internal and external cloud consumers.

What you'd actually do

  1. Works across the business, operations and technology to create the solution intent and architectural vision for complex solutions and prioritize functional and non-functional requirements into a technology backlog to enable the technology roadmap and functionality to support evolving capabilities and services
  2. Contributes to the creation of the architecture roadmap of defined domains (Business, Application, Data, and Technology) in support of the product roadmap and the development of best practices including standardized templates
  3. Clarifies the architecture, assists with system design to support implementation, and provides solution options to resolve any architectural impediments
  4. Facilitates solution driven discussions, leads the design of complex architectures, and finds creative solutions through knowledge of domain, practical experiments, and proof of concepts while ensuring architecture is flexible, modular, and adaptable
  5. Educates team members on the technology practices, standardization strategies, and best practices to create innovative solutions

Skills

Required

  • 10+ years of experience in solution, platform, or enterprise architecture roles
  • Deep hands-on experience designing and operating API Gateways at scale
  • Strong knowledge of cloud-native architecture, CI/CD, and infrastructure as code
  • Proven experience with immutable infrastructure, image-based deployments, and automated patching or repaving strategies
  • Expertise in security, identity, policy-as-code, and observability patterns
  • Ability to balance architectural rigor with pragmatic delivery in complex, multi-team environments
  • Deep knowledge of CICD practices to enable platform management provisioning & configuration activities, and policy as code
  • Strong understanding of compute, storage, networking, identity, and secrets management across on-prem and cloud
  • Hands-on familiarity with AWS, Azure, GCP core services (IAM, VPC/VNet, EC2/VMs, Load Balancers, Key Vault/KMS)
  • Knowledge of Kubernetes, OpenShift, Ingress, and internal developer platforms (IDP)
  • API gateways, reverse proxies, DNS, certificates, routing, private endpoints, egress controls, and zero-trust patterns
  • Proficiency with REST, event-driven APIs, GraphQL, OpenAPI/Swagger, and contract-first design; clear standards for idempotency, pagination, error codes
  • Experience building or leveraging gateway capabilities to improve service availability and improve security standards - —including rate limiting, authN/Z, caching, logging etc
  • Deep familiarity with OAuth2/OIDC, mTLS, JWT, Scopes/Claims, and secrets rotation; strong understanding of least privilege and segmentation models
  • API portals, documentation quality, SDK strategy, versioning discipline, postman collections, service catalog

What the JD emphasized

  • Deep hands-on experience designing and operating API Gateways at scale
  • Proven experience with immutable infrastructure, image-based deployments, and automated patching or repaving strategies
  • Expertise in security, identity, policy-as-code, and observability patterns
  • Deep knowledge of CICD practices to enable platform management provisioning & configuration activities, and policy as code
  • Strong understanding of compute, storage, networking, identity, and secrets management across on-prem and cloud
  • Hands-on familiarity with AWS, Azure, GCP core services (IAM, VPC/VNet, EC2/VMs, Load Balancers, Key Vault/KMS)
  • Knowledge of Kubernetes, OpenShift, Ingress, and internal developer platforms (IDP)
  • API gateways, reverse proxies, DNS, certificates, routing, private endpoints, egress controls, and zero-trust patterns
  • Proficiency with REST, event-driven APIs, GraphQL, OpenAPI/Swagger, and contract-first design; clear standards for idempotency, pagination, error codes
  • Experience building or leveraging gateway capabilities to improve service availability and improve security standards - —including rate limiting, authN/Z, caching, logging etc
  • Deep familiarity with OAuth2/OIDC, mTLS, JWT, Scopes/Claims, and secrets rotation; strong understanding of least privilege and segmentation models