Vice President, Production Services Infrastructure Support
Location: Pittsburgh.
In this role, you’ll make an impact in the following ways:
- Lead complex security projects spanning routing, firewall policy, proxy, remote access security, secure web access, and cloud-delivered security controls
- Manage firewall estate, including rule creation, modification, cleanup, and retirement
- Support firewall routing, NAT and policy updates for secure access and migration requirements
- Design Panorama-managed firewall environments
- Engineer global remote access architecture
- Manage proxy and load balancer clusters
- Support proxy migration and enablement activities
- Implement approved security exceptions and policy tuning activities
- Drive automation and standardization of repeatable security services to enable self-service where appropriate
- Partner with stakeholders to improve service consumption, reduce manual effort, and scale policy delivery
To be successful in this role, we’re seeking the following:
- Strong experience with Palo Alto firewalls, routing (BGP), NAT, Panorama, GlobalProtect, and VPN technologies
- Strong experience with proxy technologies (Skyhigh), URL filtering, and PAC file management, including enterprise proxy migrations and policy optimization
- Strong experience with F5 Load balancing products, LTM/GTM, etc.
- Experience administering Zscaler ZIA and ZPA
- Strong understanding of secure web access controls and remote access security
- Demonstrated experience leading complex security or network security initiatives across multiple teams
- Experience simplifying manual security processes through automation and service standardization, including exposure to automation tooling, policy-as-code, workflow orchestration, or service catalogue enablement, and shaping self-service models for common security requests
- Strong troubleshooting, policy analysis, change validation, and stakeholder management skills
- Knowledge of Splunk, SolarWinds, network monitoring tools, and scripting experience
- Experience operating within large enterprise security-controlled change environments, handling broad user-impacting security changes
- Hands‑on experience designing and executing Cisco network changes in perimeter and DMZ environments; experience with Cisco ACI and SD‑WAN is beneficial
- Experience with multi‑cloud networking patterns, Azure, AWS, Aviatrix, etc., is beneficial
Benefits
Competitive compensation, benefits, and wellbeing programs, including flexible paid leave and paid volunteer time.
BNY is an Equal Employment Opportunity/Affirmative Action Employer – Underrepresented racial and ethnic groups / Females / Individuals with Disabilities / Protected Veterans.