Cloud/DevSecOps Solutions Architect
Support and monitor cloud platform systems using ELK, Prometheus, Grafana, and other tools available through our platform and AWS
Configuration of platform components to balance cost, performance and availability
Troubleshoot and resolve system problems including AWS services, Kubernetes, Docker and other components of the platform
DevSecOps tool implementations and operations at the service and infrastructure level
Operational controls and automation for security infrastructure
Design and implement new applications and solutions into the platform
Design and implement devops and CI/CD processes using Git, Jenkins, AWS Cloud Formation and Kubernetes
Evaluate new technologies, solutions and provide recommendations.
Solution Architect Lead for the AWS Practice:
Collect and analyze customer needs.
Participate in pre-sales.
Drive a continuous improvement process - introduce new tools & automation based on real data analysis.
Design and implement AWS solutions using AWS and On-Promise environments.
AWS Cloud native application using K8s, Helm, Cloudformation, automatic scaling, Jenkins, Gitlab, AWS ECR, docker, bash scripts, ecsclt tools.
Investigate, design, implement and maintain security systems/tools to audit and monitor the environment using cloud native solutions such IAM, KMS, CloudWatch, WAF, Route53, Lambda, AWS Config, AWS Config rules, AWS WAF, AWS Guarduty, AWS Security hub, AWS Inspector, AWS Macie, AWS Firewall, AWS Security group, AWS Subnet firewall, AWS Nat Gateway, AWS Congnito, ….
Use AWS WAF to Mitigate OWASP’s Top 10 Web Application Vulnerabilities
Assist with and own remediation of escalated security events and incidents.
Design and implementation Security and Compliance Policies and Standards, Disaster Recovery Plans, Data and Information Backup and Recovery Guidelines.
Write Security document guideline that will be followed by all architects and implied into all projects. The document will treat all security aspects. Both, from the infrastructure side as well as in the application side.
Design and implement a Big Data project, using AWS Glue, AWS Athena, AWS Quicksight, SAAS Tableau, AWS Glue PySpark Transforms, S3, Parquet format, Redshift …
DevOps Consultant. Guide organizations in implementing the DevOps approach
Study of Splunk enterprise and Cloud solutions
Implementation of AWS Landing zone solution, AWS control tower.
Optimize costs associated with AWS resources.
Implement a ViodePlayer management solution (IoT) using AWS Greengrass, Lambda, S3, API GW, AWS cognito,...
Design and implement a WIFI device monitoring solution (IoT) using AWS Greengrass, Lambda, S3, API GW, Elasticsearch, Kibana, Cognito, Kenisis Firehose, ... .
Write a Security document that it will be served as reference in the client’s offers. The document treats all the security aspects for each AWS services.
Design and implement Asynchronous application to support the creation of new customer account into different Hyberscalers.
The solution leverages AWS Cognito, AWS API GW, AWS DynamoDB, AWS Lambda, AWS CloudStore.
Design and build AWS infrastructure to support EKS cluster, AWS Rabbitmq, AWS RDS, AWS ElasticSearch, AWS ElasticCache, AWS WAF, AWS EC2, AWS ELB, AWS S3, AWS SSO.
The design was done in the way to support different environments in different accounts leveraging Terraform and Ansible and Bash script.
The design also treats the performance, the security, and the cost-effective aspects. As well as keeping aligned with the best practices.
Working on Azure environment. Troubleshooting, Creating Alarms using terraform and Azure DevOps
Exposing athletes data metrics leveraging AWS Data exchange service and AWS Marketplace
Migrating SQL database 2012 to AWS Aurora leveraging AWS DMS.
Costs discovery with Cost Explorer, AWS Budgets, Migration evaluator, Cloudamize
Migrating Elasticsearch cluster from on-promise to AWS ES cluster.
Design IoT solution using AWS Greengrass, AWS IoT analytics, AWS IoT events, AWS IoT rules, AWS QuickSight, AWS equipment (SageMaker), AWS Lambda, AWS S3, AWS siteWise
Put in place the Migration Acceleration program: Assessment using Cloudamize, CloudEndure, MRA, Workshops, HDD, DAT, Mobilize, Migration.
Migrating from Windows RDS to AWS Appstream 2.0. AWS VPN, Fortigate, AWS Appstream 2.0, Active Directory, ADFS, WAP
Migrate VMWARE to VMC on AWS Cloud. Design the solution to fit the business requirements. Ensure the solution fits well the client budgets. Build HA solution. PRA solution. Backup solution.s
Design and implement Azure infrastructure using terraform and PowerShell script. The project consists of putting in place the SAP ecosystem in the Azure infrastructure. We use many Azure services such as, VMs, Key Vault, shared storages, disks, encryptions, Roles and permissions…
Besides that, you used a logic volume for extra disk performance and zero down time scaling out…
Design and implement a monitoring solution for the services deployed on K8s, using the CI / CD approach of Gitlab and using the following tools: Prometheus, Grafana, Sonarqube, Helm, Bash, Docker, ...
The solution is to provide an overview of the different environments. This leads to the creation of various Dashboards such as KPI API, MongoDB, Elasticsearch, API metrics,…. Also, configuring Prometheus to report the appropriate metrics as well as sending alerts. In addition, the automation of the generation of unit test coverage reports and the quality of the code that will be used by Sonarqube to determine the maturity of the application. Always following the CI / CD approach.
System Administrator skills to manage shared tools and computer hardware
DevOps Lead for Cloud Network Managed Service:
Implement CI/CD approach (e.g., AWS DevOps, Azure DevOps, Docker, Jenkins, Bitbucket, etc)
Infrastructure automation and scripting using Terraform, Cloudformation, Python, Bash, Go, Ansible, Bash, PowerShell, etc…
Containers, container orchestration and deployment (e.g. Docker, Kubernetes, Helm, Fluxd, etc)
Stay on top of industry trends and best practices whilst recognizing opportunities for automation, design & development, and other solutions in a comprehensive manner to boost operational efficiency.
Take ownership of the design implementation, serving as a role model for the team, in terms of coding principles and best practices, work ethic and behavior, being adaptive to take on a variety of work.
Perform infrequent off-hours work as necessary to ensure uninterrupted business operations
Interact and communicate effectively with team members, receiving feedback, addressing conflict and more
Continuously learning new skills, strive to enhance the quality of products and code, conduct analysis and research, implement and review solutions efficiently
Implementation of a monitoring solution AWS Cloudwatch, AWS Kinesis, AWS S3, AWS CW Insights, AWS CW events, AWS Lambda, etc, Tableau, AWS Appsteam 2.0, ...
Implementation of logging solution, AWS CloudTrail, AWS S3, …
Multi cloud deployment
Responsibilities
Big data architect
System monitoring
DevOps tools developer
Build Elasticsearch service (Elasticsearch, Searchguard, NRPE, SSL, KIBANA, Index retention, …)
Create a python application to fetch cloudflare logs and forward them to Elasticserach through Fluentd
Create a multi-threaded python application to forward Mister-auto applications logs to Elasticsearch through Fluentd
Design monitoring system for GCP instances and applications
Responsibilities
Research and development
Infrastructure design
Infrastructure troubleshooting
Infrastructure support and maintenance
Back-end technologies
Programming language: JAVA 7, GO, BASH, Ruby, ...
Infrastructure services and technology: AWS EC2, AWS RDS, AWS S3, Docker,
Virtual-box, Cloudfoundry, Bosh, Redis, RabbitMQ, Sensu, fluentd, elasticsearch, Grafana, Consul
Developing environment: Eclipse, idea intellij, JIRA, Agile methodology
Application servers: Tomcat 7, JBOSS 7, Jetty.
Frameworks: Spring (IOC, MVC, data), spring boot, J2EE, JPA/Hibernate, Git, Maven, SVN.
Build automation tools: Maven, Gradle
Scripting: Bash script, ruby, Go, Python
Font-end
Developing internal web applications
Font-end
Developing internal web applications
Web technologies: AngularJs framework,JavaScript, JQuery, Bootstrap 3, HTML 5, JSON.
Security
Applications security: Spring OAuth2, SSL certificate
Servers security: Security group (AWS) , Linux firewall. SELinux, Ssh keys, unidirectional communication, SSL, containers.
Files security: encrypted files with GPG.
Network security: sTunnel, rsync configuration.
Supported filesystems
XFS, EXT4, direct-lvm (devicemapper)
High Availability
Automate disaster recovery
Automate Backup
HA-proxy
apache2.4
Virtual IP Address
Zuul
Monitoring
Monitoring tools: Heartbeat, corosync, PaceMaker, cr...