Post Job Free
Sign in

Infrastructure Security Engineer - Windows/Azure/AD

Location:
Edmonton, AB, Canada
Posted:
October 04, 2026

Contact this candidate

Resume:

ADE ADEPOJU

Infrastructure Engineer Information Security

825-***-**** *********@*****.***

SUMMARY

Infrastructure engineer with a security background and 8+ years in the field. Today I build, patch, and maintain Windows Server environments in Azure and on VMware, and I manage Active Directory and access for a healthcare network. Before that I spent years in security operations, risk, and compliance in financial organizations, so I look at a server the way an engineer and an analyst would: how it gets built, how it gets monitored, and what an auditor will ask about it. CISM, CEH, and ISO 27001 Lead Implementer certified.

KEY SKILLS

•Windows Server & Azure Infrastructure

•Network & System Security

•Active Directory & Entra ID

•Vulnerability & Patch Management (Ivanti)

•PowerShell & Jenkins Automation

•Access Control & Authentication

•VMware vSphere & Horizon

•Risk Management & Compliance

•Incident & Change Management

•System Monitoring & SIEM

•Business Continuity & Disaster Recovery

•Information Systems Audit

EXPERIENCE

Infrastructure Engineer, Sentara Health August 2023 – Present

•Build Windows Server systems in Azure and on VMware, from the build sheet through handoff, and retire the old ones when they're replaced. Builds cover sizing, disks, networking, domain join, and security agents like CrowdStrike and Beyond Trust, and SQL hosts get their own storage layout. For replacements at hospital sites, I move the old server's IP to the new one, then decommission the old server.

•Run the Jenkins pipelines that provision Azure servers and the verification jobs that follow them. Before closing a ticket, I check each build against its spec: DNS and IP, CPU and RAM, disks, local admin groups, and patch state.

•Patch daily with Ivanti Neurons and Security Controls, and sideload updates where the console can't reach. When a scan stalls, I track down the cause, whether it's Remote Registry, SMB, a pending reboot, or an installer error. I also work the Neurons dashboards for risky devices like end-of-life systems and unencrypted drives.

•Respond to server and Active Directory incidents from first report to resolution, and record what was done. I also carry out scheduled maintenance windows, including patch cycles, IP changes, and the monthly instant clone image updates for the Epic session host farms in Horizon and vCenter.

•Work through the Active Directory security assessment findings with a teammate. My share covers turning on missing audit policies through Group Policy, securing about 90 DNS zones that allowed nonsecure updates, and reviewing 89 GPOs that grant broad local admin rights.

•Work cases with Microsoft support to set up the Active Directory on demand assessment and clear Entra Connect sync errors.

•Handle access requests: Azure role assignments, PIM reactivations, network security group changes, account unlocks, server access groups, and domain join failures. I also map printers on servers.

•Keep every request documented and report status at the daily huddle.

Information Security Professional, Union Bank PLC Feb 2021 – Aug 2023

•Drove implementation of the enterprise cybersecurity strategy and kept leadership updated on metrics, issues, and progress along the way.

•Owned the full lifecycle of enterprise security policies and standards, drafting and updating them in line with ISO 27001, PCIDSS, NDPA, CBN CSF, and NIST, and tracking emerging practices worth adopting.

•Reviewed SLAs and assessed risk across both third-party and internally built systems, then followed open vulnerabilities through to closure.

•Delivered consulting support, onsite and remote, to clients rolling out PCI DSS and ISO 27001 programs, building their policies and documentation and getting them ready for certification.

•Presented findings to clients and internal stakeholders, coordinated on requirements, and mentored a few junior consultants along the way.

•Monitored the data center and broader infrastructure around the clock to stay within SLA, analyzing and escalating incidents per the Incident Handling Classification Standard.

Infrastructure and SOC Analyst, Etranzact PLC Feb 2018 – Feb 2021

•Worked in a 24x7 SOC monitoring, reporting, and escalating security events per documented procedures, with threat hunting analysis in ArcSight SIEM each shift.

•Kept watch on user, application, and network access across the environment, defending against unauthorized access to physical assets: intrusion detection, email/spam filtering, web filtering.

•Provided incident response support once an incident was confirmed, then handled the investigation, documentation, and reporting on both the issue and any broader trend it pointed to.

•Analyzed and responded to newly disclosed software and hardware vulnerabilities, providing threat analysis and advisory support to the wider team.

•Ran monthly patch deployments bank wide and kept the whole process compliant with PCI DSS and ISO 27001.

•Configured monitoring policies and alerts across databases and a stack of tools: SIEM, FIM, DAM, EDR, WAF, NAC.

•Documented every case handled during my shift and brought open action items to the turnover meetings.

Incident Analyst, First Bank PLC Jul 2015 – Feb 2018

•Managed the rollout of ISO 27001 and PCIDSS standards to keep the organization compliant.

•Administered the identity and access management application and installed and troubleshot two factor authentication on end-user systems.

•Investigated phishing attacks as they came in and led the remediation work afterward.

•Owned change control for the organization, communicating application changes and looping in the responsible teams for review.

•Conducted threat monitoring and analysis covering Trojan attacks, vulnerable software versions, malicious processes, and unauthorized reconnaissance, using AlienVault SIEM, WAF, Carbon Black, and McAfee ePO.

•Detected file changes and managed file integrity monitoring configuration and policies using NNT.

EDUCATION

B.Sc., Obafemi Awolowo University, IleIfe, Osun State, Nigeria (Feb 2008 – Mar 2012)

PROFESSIONAL CERTIFICATIONS

•CISM

•Cisco CyberOps

•Certificate in Cyber Security (ISC2)

•Cisco CCNA

•Certified Ethical Hacker (CEH)

•ISO 27001 Lead Implementer (ISMS)



Contact this candidate