Role Snapshot
Manager of DevOps leads the Security DevOps team within UNC Chapel Hill's Information Security Office, overseeing security technology outcomes across the entire ISO portfolio. This role sets technical direction, owns operational results, and drives implementation of security tooling and infrastructure initiatives critical to the university's cybersecurity program.
Key Responsibilities: Sets technical priorities in alignment with institutional security strategy, manages vendor selection and contracts, oversees solution architecture and technical standards, and builds/develops an engineering team across software development, automation, operations, and user experience. Collaborates with ISO teams and university partners including central IT, procurement, and legal to ensure well-integrated security technology decisions.
Skills & Tools: Strong expertise in DevOps practices, cloud infrastructure, security tooling, and vendor management; demonstrated ability to lead engineering teams and drive implementation of complex security systems. Excellent communication and cross-functional collaboration skills to coordinate across multiple departments and stakeholders.
Qualifications: Bachelor's degree in Computer Science, Engineering, or related field with 8+ years of experience in DevOps, systems engineering, or security infrastructure roles, including at least 3 years in a management or technical leadership position. Proven experience managing engineering teams, vendor relationships, and large-scale security technology implementations.
Location: Remote
Compensation: $160Kโ$220K/yr (estimated)
Job Description
This position is a 100% remote work arrangement, consistent with System Office policy. UNC Chapel Hill employees are generally required to reside in North Carolina, within a reasonable commuting distance of their assigned duty station.
The Information Security Office (ISO) coordinates the University's cybersecurity program. ISO operates critical common controls, evaluates security performance and proposed changes to the program, and works continuously to improve the institution's response to cyber risk. ISO reports on program effectiveness and direction to the Chancellor, Provost, and Board of Trustees.
Within ISO, the Security DevOps team is the default owner of security tooling across all ISO functions. The team delivers security outcomes across identity infrastructure, security data management, the unified security self-service portal, and is the owner of common controls not assigned to another ISO team. The team operates on a buy-before-build model, prioritizing integration work over custom development when feasible. The Security DevOps team operates as a program-advancing engineering team it defines technical requirements and implementation approach within its portfolio, drives implementation, and owns the results, operating to technical and operational standards the team sets to ensure rigor, reliability, security, and adaptability.
The Manager of Security DevOps is accountable for security technology outcomes across the entire ISO portfolio. This role sets the technical direction for the team's portfolio and owns the operational results. The team's priorities are set by the manager in response to the institution's written security strategy and in consultation with the CISO. For major security initiatives, desired outcomes, policy direction, and business process requirements are established through structured analysis led by the Analysis, Architecture, and Communications (AAC) team; the Manager of Security DevOps partners with AAC in planning the technical implementation and owns solution architecture, technical standards, and delivery. The Manager oversees the use of modern DevOps practices, focusing on sustainable, scalable, and secure practices. Careful attention is paid to automation and integration, deploying commercially available or open-source systems, reducing the number of lines of in-house code. The buy-before-build model means vendor selection, contract negotiation, and ongoing vendor management are core responsibilities. The manager builds, manages, and develops an engineering team operating across software development, automation, operations, and user experience functions. This role requires active coordination across ISO teams and with University partners including central IT, procurement, legal, and academic units to ensure security technology decisions are well-integrated with institutional operations.
The Information Security Office (ISO) coordinates the University's cybersecurity program. ISO operates critical common controls, evaluates security performance and proposed changes to the program, and works continuously to improve the institution's response to cyber risk. ISO reports on program effectiveness and direction to the Chancellor, Provost, and Board of Trustees.
Within ISO, the Security DevOps team is the default owner of security tooling across all ISO functions. The team delivers security outcomes across identity infrastructure, security data management, the unified security self-service portal, and is the owner of common controls not assigned to another ISO team. The team operates on a buy-before-build model, prioritizing integration work over custom development when feasible. The Security DevOps team operates as a program-advancing engineering team it defines technical requirements and implementation approach within its portfolio, drives implementation, and owns the results, operating to technical and operational standards the team sets to ensure rigor, reliability, security, and adaptability.
The Manager of Security DevOps is accountable for security technology outcomes across the entire ISO portfolio. This role sets the technical direction for the team's portfolio and owns the operational results. The team's priorities are set by the manager in response to the institution's written security strategy and in consultation with the CISO. For major security initiatives, desired outcomes, policy direction, and business process requirements are established through structured analysis led by the Analysis, Architecture, and Communications (AAC) team; the Manager of Security DevOps partners with AAC in planning the technical implementation and owns solution architecture, technical standards, and delivery. The Manager oversees the use of modern DevOps practices, focusing on sustainable, scalable, and secure practices. Careful attention is paid to automation and integration, deploying commercially available or open-source systems, reducing the number of lines of in-house code. The buy-before-build model means vendor selection, contract negotiation, and ongoing vendor management are core responsibilities. The manager builds, manages, and develops an engineering team operating across software development, automation, operations, and user experience functions. This role requires active coordination across ISO teams and with University partners including central IT, procurement, legal, and academic units to ensure security technology decisions are well-integrated with institutional operations.

