Oluwaferanmi David Adeoye

Cloud Security Engineer · DevSecOps

Oluwaferanmi
David Adeoye

Azure cloud security engineer focused on Zero Trust architecture, Defender for Cloud, and baking security into CI/CD pipelines. Based in Lagos, Nigeria — open to remote opportunities.

Microsoft Certified
Azure
Cloud Security
Zero Trust
DevSecOps

Building secure cloud foundations

I specialize in Azure cloud security — designing and implementing Zero Trust architectures, Defender for Cloud posture management, Microsoft Sentinel SIEM/SOAR, and identity governance with Microsoft Entra ID.

On the DevSecOps side, I embed security controls directly into CI/CD pipelines: secrets scanning, IaC security with Checkov and Bicep, container image scanning, and policy-as-code with Azure Policy and OPA. I use Terraform and Bicep to provision hardened, least-privilege infrastructure at scale.

With seven Microsoft certifications and hands-on experience across the full Azure security stack, I bridge the gap between security policy, platform engineering, and developer workflows.

Introduction video

Technical skills

Azure Security

  • Microsoft Defender for Cloud
  • Microsoft Sentinel
  • Azure Security Center
  • Azure Firewall / NSGs
  • Azure Key Vault
  • Azure Policy

Identity & Access

  • Microsoft Entra ID
  • Conditional Access
  • PIM / Access Reviews
  • Zero Trust
  • IAM / RBAC

DevSecOps

  • CI/CD Security (GitHub Actions)
  • Checkov / IaC Scanning
  • Container Image Scanning
  • Secrets Scanning
  • OPA / Policy-as-Code
  • SAST / DAST

DevOps & Infrastructure

  • Terraform
  • Bicep
  • Kubernetes / AKS
  • Docker
  • Azure DevOps
  • GitHub Actions

Observability

  • Azure Monitor
  • Log Analytics Workspace
  • Prometheus / Grafana

Development

  • Python
  • TypeScript / Node.js
  • Bash / PowerShell

Certifications & education

AZ-104Azure Administrator AssociateMicrosoft
SC-200Security Operations Analyst AssociateMicrosoft
SC-300Identity and Access Administrator AssociateMicrosoft
SC-400Information Protection Administrator AssociateMicrosoft
SC-500Microsoft Cloud and AI Security Engineer AssociateMicrosoft
SC-900Security, Compliance, and Identity FundamentalsMicrosoft
AZ-900Azure FundamentalsMicrosoft
KCNAKubernetes and Cloud Native AssociateCNCF

B.Sc, Chemistry

University of Ibadan, Nigeria · 2019–2024

Selected projects

01

Azure Zero Trust Security Architecture

End-to-end Zero Trust implementation on Azure — Entra ID conditional access, Defender for Cloud CSPM, Microsoft Sentinel SIEM with custom KQL detection rules, and Privileged Identity Management for just-in-time access.

  • Entra ID
  • Defender for Cloud
  • Microsoft Sentinel
  • PIM
02

DevSecOps Pipeline with Azure DevOps

Security-first CI/CD pipeline integrating Checkov for IaC scanning, Trivy for container image scanning, OWASP ZAP for DAST, and GitHub Advanced Security for secrets detection — all gating deployments in Azure DevOps.

  • Azure DevOps
  • Checkov
  • Trivy
  • GitHub Actions
  • OPA
03

Hardened Azure Infrastructure with Bicep & Key Vault

Bicep-based IaC provisioning Key Vault, storage, and AKS under Zero Trust principles — no hardcoded secrets, managed identity auth, least-privilege RBAC, and Azure Policy guardrails enforced at the subscription level.

  • Azure
  • Bicep
  • Key Vault
  • Azure Policy
  • AKS

Let's connect

Open to cloud security roles, consulting engagements, and collaboration on identity and Zero Trust projects. Reach out and I'll get back to you promptly.