DevOps · DevSecOps · Cloud

Zayyad Ahmed

Zayyad Ahmed
Terraform
Azure · AWS
Automation
AWSAzureTerraformKubernetesDockerGitHub Actionsn8nZapierMakePower AutomateArgoCDDevSecOps AWSAzureTerraformKubernetesDockerGitHub Actionsn8nZapierMakePower AutomateArgoCDDevSecOps
01

About

I'm a DevOps and DevSecOps engineer with over three years of experience building and securing cloud infrastructure for companies in Nigeria, the United States and the United Kingdom. I usually handle things end to end: writing Terraform for a new environment, setting up the CI/CD around it, and keeping deployments predictable. More recently I've started using automation tools like n8n, Make and Power Automate to cut out manual, repetitive work. Coming from a penetration-testing background, I also tend to spot security gaps early, before they turn into problems in production.

I started in offensive security, doing penetration testing and red-team work, before moving into infrastructure. That shapes how I build: pipelines that catch problems instead of shipping them. I add SAST, DAST and dependency scanning to CI/CD, keep secrets out of source control, and harden the environments my deployments run in. I'm also starting to use automation tools to speed up the repetitive parts of security work.

3+
Years experience
3
Countries worked
AWS · Azure
Cloud platforms
6+
Certifications
02

Skills & Tooling

🛡️DevSecOps & Security

SAST / DASTSecrets managementVulnerability assessmentBurp SuiteOWASP ZAPNmapSIEMPenetration testing

⚙️Workflow Automation

n8nZapierMakePower AutomateAPI integrations

☁️Cloud

AWSMicrosoft AzureContainer AppsKey VaultCosmos DBVirtual Machines

📐Infrastructure as Code

TerraformAnsible

📦Containers & Orchestration

DockerKubernetesHelm

🔁CI / CD

GitHub ActionsAzure DevOpsArgoCDGitOps

📊Monitoring & Logging

PrometheusGrafanaCloudWatch

⌨️Scripting & OS

PythonBashLinux
03

Experience

Feb 2026 — Present
Remote · UK

DevOps & DevSecOps Engineer · FraudWatch360

Own CI/CD and container delivery for security-critical services at a threat-intelligence firm. Built security scanning — SAST, DAST and dependency checks — directly into the delivery pipeline.
  • Integrated automated SAST, DAST and dependency scanning into CI/CD, cutting security defects reaching production by ~30%.
  • Hardened container images and removed hard-coded secrets across 8 services, reducing the attack surface.
  • Standardized deployment pipelines, reducing release time by ~35%.
Jan 2026 — Jun 2026
Remote · USA

Cloud, DevOps & DevSecOps Engineer · Heunets

Stood up an entire Azure environment in Terraform with Azure DevOps CI/CD. Centralized secrets in Key Vault and enforced role-based access across the whole Azure estate.
  • Provisioned 100% of the company's Azure environment as code in Terraform (Container Apps, VMs, Key Vault, Cosmos DB), enabling full rebuilds in ~15 minutes.
  • Built CI/CD through Azure DevOps, cutting deployment time by ~40% and removing manual release errors.
  • Centralized secrets in Key Vault and enforced role-based access across 20+ resources.
  • Automated business workflows with Power Automate, Power Apps and M365, saving roughly 5 hours/week for non-engineering teams.
Jul 2025 — Feb 2026
Contabo VPS

DevOps Engineer · Falgates Nigeria Limited

Containerized a legacy ERP and built CI/CD from scratch on VPS infrastructure. Hardened the deployment — reverse proxy, TLS, scheduled backups and access control.
  • Containerized a legacy ERP with Docker, reducing environment-related failures by ~30%.
  • Built CI/CD from scratch, cutting deployment time from ~30 minutes to ~5 minutes.
  • Configured reverse proxy, SSL and automated backups, sustaining ~99.5% uptime for daily operations.
Nov 2024 — Apr 2025
AWS

DevOps Engineer · SabiRide

Ran AWS infra and GitHub Actions pipelines for a live ride-hailing platform. Set up monitoring and alerting to catch issues before users felt them.
  • Managed AWS infrastructure for a live ride-hailing platform serving 500 users, maintaining ~99.5% availability.
  • Built GitHub Actions pipelines that reduced release-cycle time by ~30%.
  • Set up monitoring and alerting, cutting incident detection time by ~40%.
2022 — 2023
Security foundation

Red Team Engineer & Cybersecurity Analyst · Virtual Testing Foundation · KadaHive

The offensive-security grounding that powers how I approach DevSecOps today. Penetration testing, attack simulation and incident response across two security roles.
  • Ran penetration tests uncovering 10+ critical vulnerabilities and delivering remediation that strengthened defenses.
  • Monitored security events and ran vulnerability assessments across 15+ systems to reduce exposure.
04

Selected Work

// azure · terraform

Azure environment in Terraform

Set up a full Azure environment in Terraform, including compute, data and secrets, so it could be reviewed, versioned and rebuilt instead of configured by hand. CI/CD ran through Azure DevOps.

TerraformAzureContainer AppsKey VaultCosmos DB
// docker · ci/cd

Containerizing a legacy ERP

Moved a monolithic ERP off a fragile manual deployment and onto Docker on VPS infrastructure, with a pipeline that ships on push and a reverse-proxy, TLS and backup setup behind it.

DockerCI/CDNginxLinux
// devsecops

Security checks in the pipeline

For a threat-intelligence platform, added SAST, DAST and dependency scanning to the delivery process so issues are caught at build time, with secrets kept outside source control.

DevSecOpsSAST/DASTGitHub ActionsSecrets mgmt

These are summaries of professional engagements; specifics are kept high-level to respect client confidentiality. Architecture walkthroughs available on request.

05

Certifications

ISC2 Certified in Cybersecurity (CC)2022
Cisco NDG Linux Essentials2024
Cisco Cybersecurity Essentials2021
Offensive Security Path — TryHackMe2023
DevOps Engineering — Darey.io2024–2025
06

Education

B.Eng, Computer EngineeringAhmadu Bello University, Zaria · 2025

Get in touch.

Open to DevOps, DevSecOps and Cloud Engineering roles, remote or relocation. Email is the fastest way to reach me.