Working with Us
Challenging. Meaningful. Life-changing. Those aren’t words that are usually associated with a job. But working at Bristol Myers Squibb is anything but usual. Here, uniquely interesting work happens every day, in every department. From optimizing a production line to the latest breakthroughs in cell therapy, this is work that transforms the lives of patients, and the careers of those who do it. You’ll get the chance to grow and thrive through opportunities uncommon in scale and scope, alongside high-achieving teams. Take your career farther than you thought possible.
Bristol Myers Squibb recognizes the importance of balance and flexibility in our work environment. We offer a wide variety of competitive benefits, services and programs that provide our employees with the resources to pursue their goals, both at work and in their personal lives. Read more: careers.bms.com/working-with-us.
Position Summary:
Bristol Myers Squibb Cloud Engineering is seeking a Senior Cloud Architect with deep expertise in Microsoft Azure infrastructure and advanced cloud networking. Based in Lawrenceville, NJ, this role is responsible for architecting, securing, automating, and operating global cloud platforms that power AI services, data analytics pipelines, financial systems, and scientific computing workloads across the enterprise.
Azure is the primary platform, but the organization also leverages AWS and GCP, and multi-cloud experience is highly desirable. This position offers the opportunity to design foundational cloud architectures that directly support life-saving scientific and medical innovations within a mission-driven organization.
Key Responsibilities:
Design, architect, and secure global Azure cloud environments with a strong emphasis on advanced networking, including ExpressRoute, Virtual WAN, Private Link, DNS architecture, and multi-region connectivity.
Deliver scalable, highly available, and secure cloud infrastructure supporting AI/ML platforms, data analytics ecosystems, regulated enterprise applications, and scientific computing workloads.
Develop and maintain Infrastructure-as-Code using Terraform and Bicep, including modular designs, automation frameworks, and end-to-end deployment pipelines.
Build automation solutions using Python for provisioning, configuration validation, compliance checks, and operational workflows.
Collaborate with Corporate Security, Network Engineering, Application Engineering, and Architecture teams to ensure design consistency, compliance, and operational excellence.
Lead cloud design reviews, enforce architecture best practices, and drive standardization of platform patterns and networking frameworks across multiple business units.
Support cloud migration initiatives, operational readiness, disaster recovery strategies, and zero-trust networking implementations.
Influence and drive continuous improvement across cloud governance, automation, observability, and security integrations.
Experience Requirements:
8+ years of experience in cloud infrastructure, cloud networking, and enterprise IT architecture.
5+ years of hands-on engineering and architecture experience in Azure, with strong capabilities in designing large-scale cloud networking solutions.
Proven background operating highly available, globally distributed, and secure cloud environments supporting mission-critical workloads.
Experience in enterprise or regulated industries such as biotech, pharma, financial services, or healthcare preferred.
Technical Qualifications:
Deep hands-on expertise with Azure networking and core infrastructure services, including ExpressRoute, Global Reach, Virtual WAN, VPN Gateways, VNets, subnetting, peering, routing/UDRs, BGP, IPAM, DNS/Private DNS Resolver.
Strong understanding of identity and access controls, including RBAC, PIM, and cloud IAM patterns.
Hands-on experience building and automating infrastructure using Terraform, Bicep, and Git-based CI/CD pipelines.
Automation and scripting expertise in Python (preferred) and/or PowerShell.
Strong ability to troubleshoot complex cloud networking issues, routing asymmetry, DNS behavior, SNAT limitations, and packet-level flow analysis.
Preferred Qualifications:
Experience with next-generation firewalls and virtual security appliances (e.g., Palo Alto, Check Point, Fortinet).
Understanding of advanced compute/networking capabilities such as Azure VM Scale Sets, global load balancing, and multi-region architectures.
Experience with multi-cloud networking, including AWS Transit Gateway, GCP VPC, or hybrid multi-cloud routing.
Exposure to SD-WAN, SASE architectures, zero-trust frameworks, or multi-cloud networking platforms.
Strong network diagnostic experience using tools such as Wireshark, tcpdump, or cloud-native packet capture.
Familiarity with container networking (AKS) and service mesh patterns is a plus.
Education Requirements:
Bachelor’s degree in Computer Science, Engineering, or related technical field preferred.
Relevant certifications are desirable, such as: AZ-700, AZ-305, Terraform Associate.
If you come across a role that intrigues you but doesn’t perfectly line up with your resume, we encourage you to apply anyway. You could be one step away from work that will transform your life and career.
Compensation Overview:
The starting compensation range(s) for this role are listed above for a full-time employee (FTE) basis. Additional incentive cash and stock opportunities (based on eligibility) may be available. The starting pay rate takes into account characteristics of the job, such as required skills, where the job is performed, the employee’s work schedule, job-related knowledge, and experience. Final, individual compensation will be decided based on demonstrated experience.
Eligibility for specific benefits listed on our careers site may vary based on the job and location. For more on benefits, please visit https://careers.bms.com/life-at-bms/.
Benefit offerings are subject to the terms and conditions of the applicable plans in effect at the time and may require enrollment. Our benefits include:
Health Coverage: Medical, pharmacy, dental, and vision care.
Wellbeing Support: Programs such as BMS Well-Being Account, BMS Living Life Better, and Employee Assistance Programs (EAP).
Financial Well-being and Protection: 401(k) plan, short- and long-term disability, life insurance, accident insurance, supplemental health insurance, business travel protection, personal liability protection, identity theft benefit, legal support, and survivor support.
Work-life benefits include:
Paid Time Off
US Exempt Employees: flexible time off (unlimited, with manager approval, 11 paid national holidays (not applicable to employees in Phoenix, AZ, Puerto Rico or Rayzebio employees)
Phoenix, AZ, Puerto Rico and Rayzebio Exempt, Non-Exempt, Hourly Employees: 160 hours annual paid vacation for new hires with manager approval, 11 national holidays, and 3 optional holidays
Based on eligibility*, additional time off for employees may include unlimited paid sick time, up to 2 paid volunteer days per year, summer hours flexibility, leaves of absence for medical, personal, parental, caregiver, bereavement, and military needs and an annual Global Shutdown between Christmas and New Years Day.
All global employees full and part-time who are actively employed at and paid directly by BMS at the end of the calendar year are eligible to take advantage of the Global Shutdown.
*Eligibility Disclosure: The summer hours program is for United States (U.S.) office-based employees due to the unique nature of their work. Summer hours are generally not available for field sales and manufacturing operations and may also be limited for the capability centers. Employees in remote-by-design or lab-based roles may be eligible for summer hours, depending on the nature of their work, and should discuss eligibility with their manager. Employees covered under a collective bargaining agreement should consult that document to determine if they are eligible. Contractors, leased workers and other service providers are not eligible to participate in the program.
Uniquely Interesting Work, Life-changing Careers
With a single vision as inspiring as “Transforming patients’ lives through science™ ”, every BMS employee plays an integral role in work that goes far beyond ordinary. Each of us is empowered to apply our individual talents and unique perspectives in a supportive culture, promoting global participation in clinical trials, while our shared values of passion, innovation, urgency, accountability, inclusion and integrity bring out the highest potential of each of our colleagues.
On-site Protocol
BMS has an occupancy structure that determines where an employee is required to conduct their work. This structure includes site-essential, site-by-design, field-based and remote-by-design jobs. The occupancy type that you are assigned is determined by the nature and responsibilities of your role:
Site-essential roles require 100% of shifts onsite at your assigned facility. Site-by-design roles may be eligible for a hybrid work model with at least 50% onsite at your assigned facility. For these roles, onsite presence is considered an essential job function and is critical to collaboration, innovation, productivity, and a positive Company culture. For field-based and remote-by-design roles the ability to physically travel to visit customers, patients or business partners and to attend meetings on behalf of BMS as directed is an essential job function.
Supporting People with Disabilities
BMS is dedicated to ensuring that people with disabilities can excel through a transparent recruitment process, reasonable workplace accommodations/adjustments and ongoing support in their roles. Applicants can request a reasonable workplace accommodation/adjustment prior to accepting a job offer. If you require reasonable accommodations/adjustments in completing this application, or in any part of the recruitment process, direct your inquiries to adastaffingsupport@bms.com. Visit careers.bms.com/eeo-accessibility to access our complete Equal Employment Opportunity statement.
Candidate Rights
BMS will consider for employment qualified applicants with arrest and conviction records, pursuant to applicable laws in your area.
If you live in or expect to work from Los Angeles County if hired for this position, please visit this page for important additional information: https://careers.bms.com/california-residents/
Data Protection
We will never request payments, financial information, or social security numbers during our application or recruitment process. Learn more about protecting yourself at https://careers.bms.com/fraud-protection.
Any data processed in connection with role applications will be treated in accordance with applicable data privacy policies and regulations.
If you believe that the job posting is missing information required by local law or incorrect in any way, please contact BMS at TAEnablement@bms.com. Please provide the Job Title and Requisition number so we can review. Communications related to your application should not be sent to this email and you will not receive a response. Inquiries related to the status of your application should be directed to Chat with Ripley.
R1599832 : Senior Cloud Architect