DevSecOps Capability Manager

Reposted 5 Days Ago
Be an Early Applicant
Skipton, North Yorkshire, England, GBR
In-Office
Senior level
Fintech • Payments • Financial Services
The Role
As a DevSecOps Capability Manager, you will lead the team's DevSecOps efforts, drive automation, enhance security across CI/CD pipelines, and manage team development while overseeing operational risk and governance.
Summary Generated by Built In

Hours:35 hours per week

Closing Date:Fri, 12 Jun 2026

As our DevSecOps Capability Manager, you’ll lead and scale Skipton’s DevSecOps capability to enable fast, safe and compliant software delivery across our product and platform teams. You will be accountable for embedding securebydesign principles, modern automation practices, and policyascode into our CI/CD ecosystem, ensuring that our engineering teams can deliver highquality change with confidence. 

You will drive improvements in lead time, deployment frequency, change failure rate and system reliability, all measured through our Engineering Scorecard. This role blends technical strategy, leadership, governance and handson capability development to strengthen our engineering foundations and support delivery of the Society’s Corporate Plan. 

 

What will you be doing? 

Value, Flow & Quality 

  • Owning lead time for changes and deploymentfrequency outcomes across shared pipelines and platforms. 

  • Publishing DORA and flow metrics monthly, using them to drive targeted improvements. 

  • Removing delivery bottlenecks through automation and policyascode, including trunkbased development, automated approvals for lowrisk changes, canary/bluegreen deployment and autorollback. 

  • Triggering “scorecard → investment” actions when performance thresholds are breached to restore flow, quality and reliability. 

Leadership & Capability Development 

  • Leading, coaching and developing a team of 3–5 DevSecOps Engineers. 

  • Defining and maintaining DevSecOps standards, patterns and best practices across engineering teams. 

  • Building a highperforming engineering culture focused on security, automation and continuous improvement. 

Strategy, Governance & Technical Direction 

  • Setting the strategy for DevSecOps capabilities, including pipeline standardisation and security automation. 

  • Establishing governance for secure CI/CD, infrastructureascode and cloud delivery. 

  • Defining and enforcing Observability Minimum Standards including tracing, SLOs, releaselinked annotations and dashboards. 

  • Mandating securityinthepipeline, including secrets protection, SAST/SCA/DAST, IaC scanning and WAF coverage for external apps. 

  • Governing Golden Path (ProdOS) templates, patterns and adoption levels. 

Operational Oversight & Risk Management 

  • Overseeing the reliability, performance and security posture of pipelines, platforms and engineering tooling. 

  • Ensuring effective vulnerability management, including remediation tracking and escalation. 

  • Providing leadership during incidents and postincident reviews, improving MTTR and rootcause clarity. 

  • Integrating telemetry across Azure, Defender, Entra and WAF to unify our security posture. 

  • Using SLO/errorbudget signals and observability insights to inform go/nogo and rollback decisions. 

Collaboration Across Technology & Business 

  • Acting as a senior advisor to Engineering Managers, Product Owners and Cyber Security teams. 

  • Ensuring strong alignment on security requirements, delivery processes and adoption of modern practices. 

  • Representing DevSecOps across governance forums and contributing to technologywide decisions. 

  • Acting as a visible advocate for safe, rapid delivery and sharing best practice internally and externally. 

Tooling, Automation & Platform Optimisation 

  • Leading decisions on DevSecOps tooling, including evaluation and lifecycle management. 

  • Driving automation across testing, security scanning, deployment, monitoring and compliance. 

  • Partnering with Cloud and Platform Engineering to ensure scalable, resilient and consistent DevSecOps ecosystems. 

  • Owning the Golden Path service catalogue, including pipelines, IaC modules and secure defaults. 

Business Continuity & Operational Resilience 

  • Embedding BCP and operationalresilience controls directly as policyascode. 

  • Ensuring pipelines produce auditready evidence for regulated environments. 

  • Running periodic gamedays with Release & Environments teams to validate recoverability. 

 

What do we need from you? 

Knowledge, skills & experience 

  • Strong leadership and peoplemanagement experience, particularly coaching senior engineers. 

  • Deep expertise in CI/CD design, automation and security integration. 

  • Strong understanding of cloud platforms, containerisation, infrastructureascode and modern delivery patterns. 

  • Demonstrated ability to address and remediate security risks at scale. 

  • Excellent communication and influencing skills across technical and nontechnical audiences. 

  • Proven track record of improving DORA and flow metrics through automation and modern engineering practices. 

  • Experience defining observability standards and implementing unified dashboards. 

  • Extensive experience in DevOps, security engineering or platform engineering within complex or regulated environments. 

  • Strong working knowledge of automated security tooling (SAST, SCA, DAST, secrets scanning, container scanning). 

  • Experience in cloud security, identity and access management, zerotrust principles and platform guardrails. 

  • Practical involvement in incident management and postincident review processes. 

  • Demonstrable delivery of policyascode and complianceascode in regulated environments. 

Behaviours 

  • Strategic thinker with the ability to influence and shape technology decisions. 

  • Empowers and develops others, creating a supportive, growthfocused team environment. 

  • Outcomeoriented, maintaining balance between security, speed and reliability. 

  • Collaborative and influential, building trust across diverse teams. 

  • Continuousimprovement mindset, simplifying and enhancing engineering practices. 

  • Calm under pressure, particularly during incidents or complex challenges. 

  • Visible champion for modern engineering ways of working and DevSecOps adoption. 

 

Who are we? 

Not just another building society. Not just another job. We’re the fourth biggest building society in the UK and what makes us a bit different is that we're a mutual organisation. We don't have shareholders; we're owned by our members. 
Our colleagues say Skipton's a great place to work, and you could be one of them, bringing with you new ideas on how we can keep customers at the heart of what we do. Whatever your background, and whatever your goals, we'll help you take the next step towards a better future. 

 

What’s in it for you? 

Skipton values work/life balance and we are proud to support hybrid and flexible working, where possible. We have a newly refurbished head office which offers a vibrant and collaborative working space. 
We have a range of other benefits available to you including: 

  • Annual discretionary bonus scheme 

  • 25 days standard annual leave + bank holidays + rising 1 day per year of service to a maximum of 30 days 

  • Holiday trading scheme allowing the ability to buy and sell additional annual leave days 

  • Matching employer pension contribution (up to 10% per annum) 

  • Colleague mortgage (conditions apply) 

  • Salary sacrifice scheme for hybrid & electric car 

  • A commitment to training and development 

  • Private medical insurance for all our colleagues 

  • 3 paid volunteering days per annum 

  • Diverse and inclusive colleague networks available for you to join including our Carers and Pride Alliance groups 

  • We care about your health and wellbeing – we provide a range of benefits that support this including cycle to work initiative and discounted gym membership 

 

Skills Required

  • Strong leadership and people management experience
  • Deep expertise in CI/CD design, automation and security integration
  • Strong understanding of cloud platforms, containerisation, infrastructure as code and modern delivery patterns
  • Demonstrated ability to address and remediate security risks at scale
  • Excellent communication and influencing skills across technical and non-technical audiences
  • Proven track record of improving DORA and flow metrics through automation and modern engineering practices
  • Experience defining observability standards and implementing unified dashboards
  • Extensive experience in DevOps, security engineering or platform engineering within complex or regulated environments
  • Strong working knowledge of automated security tooling (SAST, SCA, DAST, secrets scanning, container scanning)
  • Experience in cloud security, identity and access management, zero trust principles and platform guardrails
  • Practical involvement in incident management and post-incident review processes
  • Demonstrable delivery of policy as code and compliance as code in regulated environments
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Manchester
1,963 Employees
Year Founded: 1853

What We Do

Not just another building society. Not just another job. Imagine how good it would feel to help someone choose the mortgage they’ll use to buy their first home. Or the account they’ll use to save for it. We’ve been helping people make big financial decisions since 1853. It’s why over a million customers trust us as a good place for their money, and why our colleagues say we’re a good place to work. The Bailey (our head office) The Bailey is the vibrant hub where you’ll find all our central functions. We’re always looking for new talent because we love hearing new ideas. You can choose from a variety of roles that range from marketing and IT, through to audit, risk, products, digital and more – or maybe you’ll join our lively contact centre team. We’re based in Skipton, just a short train ride from Bradford and Leeds, we’re a stone’s throw from the A65 and have some cracking views of the Yorkshire Dales. Our network of UK branches Our branch colleagues are the face of Skipton Building Society. They’re relationship-builders, team workers, great talkers and they’re brilliant at listening too. Everything they do is designed to help customers make the best financial decisions, whether that’s choosing the right kind of savings account or having a full financial review. The Skipton culture Happy colleagues mean happy customers. So, when we recruit, we don’t just think about what’s in it for us, we think about what’s in it for you. It’s one of the reasons we’ve been recognised as one of The Times Best Companies to Work for the last 6 years. Mind, body and spirit With our colleagues’ support, we’ve created a culture that promotes diversity and inclusion. We understand the rich diversity in our Society, and how harnessing that diversity through effective inclusive practice has profound benefits for individuals, teams and the Society it self. This includes a progressive approach to personal well-being.

Similar Jobs

Mastercard Logo Mastercard

Apprentice - Cabling Engineer

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Loughton, Epping Forest, Essex, England, GBR
38800 Employees

Mastercard Logo Mastercard

Senior Counsel

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
London, Greater London, England, GBR
38800 Employees
In-Office
London, Greater London, England, GBR
25000 Employees

Mastercard Logo Mastercard

Senior Security Monitoring and Response Analyst

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
London, Greater London, England, GBR
38800 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
31 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account