Enterprise Data Product Operations Lead
Job Description
Bank of America is building an enterprise operating model that helps governed data products move from development to certification and publishing with consistent quality and controls. As the Enterprise Data Product Operations Lead (Senior Operations Analyst/Consultant within AMI), you will help establish and own the day-to-day practices, tool health standards, and risk and compliance execution that keep supported applications secure, regulated, and ready for audit.
This onsite role is based in Charlotte, NC (1st shift, 40 hours per week).
What you’ll do
- Establish, implement, and own the operational tasks that sustain a scalable operating model, including tools monitoring practices, standard quality routines, and control execution.
- Design and deliver a scalable operating approach for AMI’s core tools and platforms, including Starburst.
- Provide thought leadership that shapes strategic objectives and improves how enterprise data products are developed and consumed.
- Maintain supported applications and tools in compliance with external regulation and internal mandates, including access control and entitlements.
- Ensure risk, security, and compliance requirements are completed on time for supported applications.
- Monitor and maintain infrastructure health and performance, including vulnerability remediation, software upgrades, and other enhancements.
- Coordinate with service providers and partners to maintain environmental stability, compliance, and SLA adherence.
- Oversee risk/control design, implement access controls, establish QA practices, and run control testing and quality inspections.
- Own issue identification and remediation, track thematic trends, update test scripts, support coaching, and pursue opportunities for automation and AI.
- Support regulatory exams and audits through evidence, metrics, and required report-outs.
- Partner with executive stakeholders as a key influencer and decision-maker to align governance, risk, and operational strategies with enterprise objectives.
- Track and support development team security and risk activities, including application risk assessments.
What you’ll bring
- Innovative, forward-looking mindset with process redesign experience, with the ability to challenge the status quo constructively.
- Ability to lead through influence and translate complex technical topics into clear, executive-ready narratives.
- Self-directed, organized, results-oriented approach with strong attention to documentation and detail.
- Knowledge of industry regulations such as GDPR, HIPAA, SOX, and PCI-DSS, and the ability to ensure applications meet required standards.
- Experience identifying and mitigating compliance risks related to data privacy, security, and operational processes, including familiarity with vulnerability management and remediation techniques.
- Ability to translate technical requirements into business language for non-technical stakeholders, including understanding application architecture and integration points.
- Experience aligning application functionality with organizational goals and compliance requirements.
- Experience maintaining application inventory, lifecycle documentation, version control, and compliance records.
Helpful background
- Experience supporting technical, data, analytics, modeling, or data-platform teams and communicating complex concepts to non-subject-matter-expert audiences.
- Familiarity with data and data platforms, including cloud computing, machine learning, statistics, data science, BI, or AI-enabled capabilities.
- Understanding of relational and non-relational database concepts, including data modeling, query optimization, and secure data management.
- Adequate PowerPoint and Microsoft Office skills to create clear executive-ready materials.
- Familiarity with risk frameworks, Single Process Inventory (SPI), and IT governance models, including preparation of documentation and evidence for internal/external audit review.
Tools and compliance areas
Technologies: Starburst, GDPR, HIPAA, SOX, PCI-DSS