02 / Experience
Experience
Operating and automating cloud infrastructure since 2024, from a banking estate handling 20,000 transactions a day to distributed clusters running LLM inference.
May 2026 - Present
01
Cloud & DevOps Engineer - AWS / OCI
CashPlus · Casablanca · On-site
- Operate AWS infrastructure (EKS, ECS, EC2) for core banking and monétique services, 20,000+ transactions daily
- Architect highly available, multi-AZ environments with VPC, Aurora, DynamoDB, maintaining 99.9%+ payment uptime
- Led an end-to-end migration to OCI for a national-scale logistics platform handling domestic and international parcel transfers, including a DynamoDB-to-Oracle NoSQL data migration, optimized for cost and performance
- Establish secure VPN connectivity with banking and payment partners regionally, supporting 10+ external integrations
- Enforce perimeter security with Security Groups, NACLs, and AWS WAF, blocking common web and DDoS threats
- Maintain PCI-DSS compliance with CloudTrail audit logging and centralized CloudWatch monitoring
- Run CI/CD on self-hosted runners with OIDC federation for keyless AWS auth, deploying from a private Nexus registry
- Embed SAST and DAST security scanning into CI/CD pipelines, catching vulnerabilities and reducing CVE exposure pre-deployment across 15+ services
- Manage Terraform state with remote backends and state locking, enabling safe team collaboration across AWS and OCI
- Manage AWS IAM access control and partner with cross-functional engineering teams to align delivery with core banking release cycles
- Apply FinOps practices, including resource right-sizing, across the AWS estate, cutting monthly costs by roughly 20% while scaling serverless workloads
- EKS / ECS / EC2
- VPC / Aurora / DynamoDB
- OCI
- Terraform
- OIDC
- Nexus
- SAST/DAST
- VPN
- FinOps
- PCI-DSS
Feb 2025 - May 2026
02
Cloud & DevOps Engineer - On Premise / AWS
Leyton · Casablanca · Hybrid
- Built Jenkins pipelines for 10+ projects across multiple stacks, cutting average deployment time from hours to minutes
- Designed serverless pipelines with Lambda, SQS, and S3, processing 200+ events daily for event-driven workflows
- Replaced scheduled polling with S3 and Lambda event triggers, cutting notification latency from 60 seconds to under 2
- Migrated a 5-node Kubernetes cluster from v1.28 to v1.33 with zero downtime, using ETCD-backed rollback safety
- Scaled workloads with HPA between 2 and 10 replicas based on demand, cutting infrastructure costs by roughly 30%
- Tuned PostgreSQL connection handling with pgPool pooling, boosting query throughput by 35% under peak concurrent load
- Automated load testing across 5 servers, simulating 300+ concurrent users to validate stability ahead of every release
- Versioned Helm charts for 4+ applications stored in a managed Nexus registry, reducing deploys to a single command
- Provisioned a 3-node Kubeadm cluster to support distributed, multi-node workloads for Large Language Model inference
- Jenkins
- GitLab CI
- SonarQube
- Kubernetes
- Kubeadm
- Terraform
- Prometheus / Grafana
- Lambda / SQS / S3
- pgPool / pgBadger
- Odoo
Jun 2024 - Sep 2024
03
Azure Cloud & DevOps Intern
Betterfly Solutions · Casablanca
- Provisioned a secure 3-tier Azure environment with private VNets, Azure DNS, and Container Apps for the application
- Automated GitHub Actions pipelines for containerized services, with daily backups cutting recovery time roughly in half
- Terraform
- Azure Container Apps
- VNet
- Azure DNS
- GitHub Actions
- Docker
- Azure PostgreSQL