02 / Experience

Experience

Operating and automating cloud infrastructure since 2024, from a banking estate handling 20,000 transactions a day to distributed clusters running LLM inference.

  1. May 2026 - Present

    01

    Cloud & DevOps Engineer - AWS / OCI

    CashPlus · Casablanca · On-site

    • Operate AWS infrastructure (EKS, ECS, EC2) for core banking and monétique services, 20,000+ transactions daily
    • Architect highly available, multi-AZ environments with VPC, Aurora, DynamoDB, maintaining 99.9%+ payment uptime
    • Led an end-to-end migration to OCI for a national-scale logistics platform handling domestic and international parcel transfers, including a DynamoDB-to-Oracle NoSQL data migration, optimized for cost and performance
    • Establish secure VPN connectivity with banking and payment partners regionally, supporting 10+ external integrations
    • Enforce perimeter security with Security Groups, NACLs, and AWS WAF, blocking common web and DDoS threats
    • Maintain PCI-DSS compliance with CloudTrail audit logging and centralized CloudWatch monitoring
    • Run CI/CD on self-hosted runners with OIDC federation for keyless AWS auth, deploying from a private Nexus registry
    • Embed SAST and DAST security scanning into CI/CD pipelines, catching vulnerabilities and reducing CVE exposure pre-deployment across 15+ services
    • Manage Terraform state with remote backends and state locking, enabling safe team collaboration across AWS and OCI
    • Manage AWS IAM access control and partner with cross-functional engineering teams to align delivery with core banking release cycles
    • Apply FinOps practices, including resource right-sizing, across the AWS estate, cutting monthly costs by roughly 20% while scaling serverless workloads
    • EKS / ECS / EC2
    • VPC / Aurora / DynamoDB
    • OCI
    • Terraform
    • OIDC
    • Nexus
    • SAST/DAST
    • VPN
    • FinOps
    • PCI-DSS
  2. Feb 2025 - May 2026

    02

    Cloud & DevOps Engineer - On Premise / AWS

    Leyton · Casablanca · Hybrid

    • Built Jenkins pipelines for 10+ projects across multiple stacks, cutting average deployment time from hours to minutes
    • Designed serverless pipelines with Lambda, SQS, and S3, processing 200+ events daily for event-driven workflows
    • Replaced scheduled polling with S3 and Lambda event triggers, cutting notification latency from 60 seconds to under 2
    • Migrated a 5-node Kubernetes cluster from v1.28 to v1.33 with zero downtime, using ETCD-backed rollback safety
    • Scaled workloads with HPA between 2 and 10 replicas based on demand, cutting infrastructure costs by roughly 30%
    • Tuned PostgreSQL connection handling with pgPool pooling, boosting query throughput by 35% under peak concurrent load
    • Automated load testing across 5 servers, simulating 300+ concurrent users to validate stability ahead of every release
    • Versioned Helm charts for 4+ applications stored in a managed Nexus registry, reducing deploys to a single command
    • Provisioned a 3-node Kubeadm cluster to support distributed, multi-node workloads for Large Language Model inference
    • Jenkins
    • GitLab CI
    • SonarQube
    • Kubernetes
    • Kubeadm
    • Terraform
    • Prometheus / Grafana
    • Lambda / SQS / S3
    • pgPool / pgBadger
    • Odoo
  3. Jun 2024 - Sep 2024

    03

    Azure Cloud & DevOps Intern

    Betterfly Solutions · Casablanca

    • Provisioned a secure 3-tier Azure environment with private VNets, Azure DNS, and Container Apps for the application
    • Automated GitHub Actions pipelines for containerized services, with daily backups cutting recovery time roughly in half
    • Terraform
    • Azure Container Apps
    • VNet
    • Azure DNS
    • GitHub Actions
    • Docker
    • Azure PostgreSQL