Miguel - Consultant EAI
Ref : 110208L001-
Profil
Consultant, Ingénieur de production, Architecte
-
Domicile
75019 PARIS
-
Tarif Journalier MoyenVoir le tarif
Skills & Recent Trainings
3x Certified
March 2020 :
[Validation Number: 35RXB4YCE21QQHGV]
- February 2020 :
[Validation Number: PG20P5W1P144Q5SV]
- May 2020 :
[Validation Number: 894Y5D9C3EV11QWG]
- Préparation : Certified Kubernetes Administrator (CKA) – Linux Foundation
- April 2020 : « AWS Lambda and the Serverless Framework » course
- January 2020 : « DevOps: CI/CD with Jenkins, Ansible, Kubernetes » course
- August 2019 : « Terraform : Automatisation in AWS infrastructure » course
- March 2019 : « DevOps : Kubernetes using Kops for AWS » course
Technical skills
Languages: Scripting “shell”, JSON, YAML, Terraform , Python2&3, Powershell, Java, SQL*PLUS, PHP
Tools/J2EE : Helm,Flux,Atlantis,Serverless, Git, DockerHub, Terraform, Jenkins, Ansible, VisualStudio Java 8&9
Technology / Tools:
Architecture :
Methodology : Kubectl, eksctl, REST API, RESTFul, Linux, HTTP/S, Encryption OpenSSL, OpenSSH, FTPS,etc
IaaS, PaaS, SaaS, Kubernetes(K8s)/Docker, GitHub, Cloud hybride, EKS/ECS, VMware
Agile, SAFe (Scaled Agile Framework), GitOps (CI/CD), IaC (Terraform), ITIL
Networking & Technical groups :
Meetup member : « DevOps Containers »
Meetup member :
« Amazon Web Service AWS Communauté France »
Meetup member: « FinOps Club France »
FinOps Fondation « Practitioner Community Member »
PROFESSIONAL EXPERIENCES
Mission « BPI France » : AWS SysOps/DevSecOps/GitOps [CI/CD]-Production Support K8s/EKS
(Since February 2022)
Mission of administration, expertise&support (L1 to L3) SysOps/DevSecOps/GitOps using AWS EKS Kubernetes (K8s)/Docker containers deployed in AWS infrastructures. Several K8s clusters [near of 70 nodes for Staging&Prod platforms. Administration, industrialization and deployments using CI/CD Jenkins pipelines in Production environments (Run mode) around GitOps tools (FluxCD/Helm, Atlantis).
SysOps/DevSecOps (CI/CD) using Jenkins + Artifactory + GitLab + Vault + Kubernetes/Docker :
Automation/Installation/Administration of CI-CD pipelines using Jenkins, GitLab; Artifactory,Vault, Kubernetes in order to build/deploy CI-CD platforms for internal BPI project teams (more than 150 CI-CD internal project platforms “end-to-end” running in parallel under an unique AWS EKS cluster infrastructure).
K8s Administration&Supervision&Monitoring of the AWS EKS cluster using docker containers: Fluentd+Prometheus => Grafana & Kibana & Datadog, several applications deployed using Helm : Helm Operator, GitLab, Jenkins, Sonar, Artifactory, Vault, etc.
Administration and configuration: Jenkins pipelines; JenkinsFiles, scripts shell, Phyton, etc
SAFe Agile methodology and deployments using JIRA & Jenkins stacks CI/CD
Incidents resolution and deep analysis from clients using EasyVista tools and JIRA (ITIL process).
Richfull environments using “DevSecOps” tools in order to provide a high level of CI-CD tooling for the BPI projects : GitLab, Jenkins, Artifactory, Sonar, Anchore/Grype, Jenkins Agents, Atlantis, Flux, SealedSecrets, etc
GitOps methodology :
« IaC » using Atlantis/Terraform: deployment of the AWS infra using Git MergeRequest as unique entry point.
« CI-CD » using Flux(CD)/Helm : the application layer in AWS EKS K8s cluster is done using Flux as unique entry point through Git MergeRequest(s). Any “manifest” K8s file in EKS is under the control of Flux and any “manual (without Git)” change done in the “manifest” EKS file is rectified by Flux (native auto-remediation tooling).
FinOps :
Optimization using the recommendations of the « CoE Cloud Shared Services » of BPI.
AWS EKS cluster : spots instances when necessary, cluster nodes (“bottle rocket”), autoscalling optimization; etc
SLA&Costs according to NO Production platforms (Staging/PreProd)
Security:
Installations & security aspects : AWS SSM , Vault, Sealed Secrets
Encryption/Decryption : SSL flows, certificates, AWS Certificate Manager (ACM), etc
Knowledge in other technical aspects:
Linux, Jenkins, GitLab, Artifactory, Sonar,Vault, Nginx, Python, JSON, YAML, VisualStudio, SailPoint, ServiceNow, JIRA , etc
Mission « CIB BNP Paribas » : SysOps/DevOps[CI/CD] Production Support Kubernetes/Docker
(December 2020 – January 2022)
Mission full english spoken of support, expertise (L1 to L3 support) SysOps/DevOps using Kubernetes (K8s)/Docker containers deployed in a private cloud (Marketplace). Several K8s clusters [more than 250 nodes using the Dev, Staging&Prod platforms] hosting a big datalake and Intelligence Artificial (IA) applications. Administration, industrialization and deployments using CI/CD Jenkins in Production environments (Run mode).
SysOps/DevOps (CI/CD) using Jenkins + Artifactory + Bitbucket + Ansible + Kubernetes/Docker :
Automation/Installation/Administration CI/CD pipeline using Jenkins, Artifactory, Ansible Tower, CyberArk, Kubernetes.
K8s Administration : K8s DashboarUI & Kibana, Resource Quotas, Namespaces, Users management, Nodes maintenance, Pod Security Policies, Taints&Tolerations, Healthchecks, secrets, volumes, affinity, Helm, etc.
Administration and configuration: Dockerfile, Playbooks, scripts shell, etc
Debugging and production support (ITIL process)
Agile methodology and deployments using JIRA & Jenkins stacks CI/CD
Incidents resolution and deep analysis from clients using ServiceNow tools and JIRA (ITIL process).
Richfull environments using “dockerisation” but other technologies : Apache servers, Nginx, Oracle & Postgree DB’s, LoadBalancing, AVI technologies (VIP’s), https protocols and certificates, NAS shares, S3 buckets, etc
Supervision&Monitoring : ELK stack Installation/configuration (log&search patterns platform)
FinOps :
« Best Practices »: taxonomy/tagging of ressources, tracking of unused resources, tools and scripting.
Review&optimization shell scripts for launching only the necessary resources in the private cloud.
Security:
Installations & security aspects using secrets and CyberArk
Encryption/Decryption of flows using the transfert of data for AI applications (PGP tools)
Knowledge in other technical aspects:
Linux, CyberArk, Jenkins, Git, Ansible, Nginx, Python, JSON, YAML, VisualStudio, SailPoint, ServiceNow, JIRA, Alteryx, etc
Mission :SysOps/DevOps Cloud AWS Infrastructure Terraform&Kubernetes [Kops-EKS] /
Serveless / Security – DevOps[CI/CD] (February 2019 – December 2020)
Mission « SysOps/expertise Cloud » for NOAE consulting: technical support (N1 to N3) in cloud infrastructure with AWS. “Best Practices » in installation&administration infrastructure with AWS, industrialization on deployments (Infrastructure as Code / IaC) using Terraform. Administration of Kubernetes/Docker (DevOps) and deployments charts.
SysOps/DevOps (CI/CD) using Jenkins + Maven + Git + Ansible + Dockerhub + Kubernetes :
Automation/Installation/Administration CI/CD pipeline using Jenkins, Git, Ansible, Dockerhub, Kubernetes.
Installations & security aspects: full “On-premises”, “Hybrid”; full “cloud”.
Administration and configuration: Dockerfile, Playbooks, scripts shells, etc
SysOps Kubernetes(K8s) / Docker expert using “Kops” & EKS :
« Best Practices” in administration, deployment of Kubernetes clusters with AWS.
Installations & security aspects of K8s : full “On-premises”, “Hybrid”; full “cloud”.
“Installation Manual” using “kops” & “kubectl” & “eksctl”: prerequisites ELB LoadBalancer (Route 53 and the “on-premise” DNS).
K8s Administration : K8s Dashboard UI, Resource Quotas, Namespaces, Users management, Nodes maintenance, Pod Security Policies, Healthchecks, Liveness&readiness probes, secrets, volumes, affinity, Helm, etc.
Installing Kubernetes using EKS (Elastic Kubernetes Service of AWS): IAM roles for Service Accounts.
« IaC » using Terraform:
« Best Practices » & security using Terraform.
Scripting with Terraform and AWS & GCP providers (some examples also with Azure Provider ).
"Standard patterns": scripts for deploying VPCs, subnets, security groups , NACL’s, internet Gateways, Routing Tables, EC2, S3, ELB Classic, Elastic Load Balancing v2 (ALB/NLB), EBS, Autoscaling, EFS, Kubernetes clusters, etc
Very good skills developing under Terraform
FinOps :
« Best Practices »: taxonomy/tagging of cloud resources, tracking of unused resources, tools and scripting.
Review&optimization in the Terraform scripts for launching only the necessary resources on the cloud.
Study/review of cloud compute services (EC2): "On-Demand Instances"vs" Reserved Instances"vs"Scheduled Instances"vs"Spot Instances"vs"Dedicated Hosts"
Worshops with operational teams: accountability of the teams on costs.
Security:
Installation and configuration : VPC Flow Logs, CloudTrail, AWS Config , Trusted Advisor, Inspector , Macie.
Best practices using and configuring AW SIAM Roles & Access
Supervision& Logging & Monitoring:
ELK stack : Installation/configuration (log&search patterns platform)
Prometheus + Grafana : supervision
DataNet : installation/configuration on a Kubernetes cluster.
AWS Serveless : Lambda & Auto-remediation
Integration in the cloud : installation and configuration of “serverless” tools
Documentation & security baselines to deploy and configure Lambda.
Uses cases : auto-recovery/auto-remediation in incident response/monitoring (Cloudwatch & SNS & AWS Config)
Knowledge in other technical aspects:
Linux, Serverless, Jenkins, Git, Ansible, Tomcat, Python, nodejs, JSON, YAML, CloudFormation, CloudWatch, CloudTrail, VisualStudio, Powershell, Hyper-V, Vagrant, Lambda, S3, Dynamo DB, API Gateway, Route 53, CloudFront , Organizations, Kinesis Data Streams, Cloud Trail, Amazon Elastic Container Service (ECS), etc
University & Schools :
1996/1999 : ÉCOLE NATIONALE SUPÉRIEURE DES TÉLÉCOMMUNICATIONS
(Télécom Paris)
1993/1996 : Classes Préparatoires Math Sup, Math Spé TA (La Rochelle)
FOREIGN LANGUAGES :
Anglais/French : Fluent
Espagnol : Mother tongue
Skills & Recent Trainings
March 2020
[Validation Number: 35RXB4YCE21QQHGV]
February 2020
[Validation Number: PG20P5W1P144Q5SV]
May 2020
[Validation Number: 894Y5D9C3EV11QWG]
Formateur FINOPS: «********/
September 2019: 10 979 - Introduction to Microsoft AZURE for IT Professionals
April 2020 : « AWS Lambda and the Serverless Framework course
- January 2020 DevOps: CI/CD with Jenkins, Ansible, Kubernetes course
- August 2019 : Terraform Automatisation in AWS infrastructure course
- March 2019 : DevOps : Kubernetes using Kops for AWS course
Technical skills
Languages: Scripting shell” JSON, YAML, Terraform , Python2&3, Powershell, Java, SQL*PLUS, PHP
Tools/J2EE : Serverless, Git, DockerHub, Terraform, Jenkins, Ansible, VisualStudio Vagrant, Java 8&9
Technology / Tools: Kops, kubectl eksctl, REST API, RESTFul, HTTP/S, Encryption, SSH, FTPS, SFTP
Architecture : IaaS, PaaS, SaaS Kubernetes(K8s)/Docker, GitHub, Cloud hybride Hyper-V, VMware
Methodology : Agile, DevOps (CI/CD), Infrastructure as Code (Terraform), ITIL
Networking & Technical groups
Meetup member : « DevOps Containers »
Meetup member : « Amazon Web Service AWS Communauté France »
Meetup member: « FinOps Club France »
FinOps Fondation « Practitioner Community Member
Enregistrer tout