BNP PARISBAS CIB, Banking
octobre 2018 - aujourd'hui
Paris, France Position: Network Consultant
Actually, I hold the position of Network Consultant BNP ParisBas CIB since October 2018.
My role is to manage (with Network team) the Network framework in main offices in Paris and different European sites.
I handle Datacenter architecture based on Vxlan technology over Nexus 9K switches and low latency connections for
market access
I participate in improvement projects and lead some of them (Standardize campus sites of different entities in different
EMEA countries basing on BNP recommendation and NAC best practices, HLD and LLD documentation)
Total, Oil Sector
août 2017 - septembre 2018
Luanda, Angola Position: Network and ToIP Supervisor
I held the position of data and ToIP supervisor at Total Angola (recommended by Total Gabon managers)
My job was to manage ToIP Framework composed by three CUCM cluster installed on UCS and VMware environment
(about about 20 CUCM servers (Publisher, subscriber and TFTP) and also core network composed by many nexus 7K and
5K switches.
My scoop also encompasses :
- Create knowledge base articles and technical procedures
- Writes regular statistical reports about different networks
- Network Improvements and DATA project track
Total, Oil Sector
septembre 2014 - juillet 2017
Gabon, Port-Gentil Position: DATA Network Supervisor and Consultant
I occupied the position of data supervisor and consultant at Total Gabon for three years, My scoop of work was to manage
the hole of DATA infrastructure which involves CISCO switches and routers, Riverbed steelheads and checkpoint/ASA
firewalls (700 devices) spread over five different networks including Oil production network.
Team management (5 persons) and interim coordinator of Telecom Contract
avril 2012 - juillet 2015
Fidelity Worldwide investment, Financial services
Tunisia/UK, Tunis/London Position: Senior Network and Voice engineer
I worked with Fidelity Word wide investment for two years as senior Network engineer. The main activities was to
supervise and monitor the international network infrastructure, troubleshoot level two/three problems and participate in
different projects for FIL and HRA in different sites in the world (Tunisia, UK, Paris, India, Luxemburg, Madrid …). Network
framework contains various technologies like CISCO (switches, routers, call manager, WAAS, Nexus...), Juniper and
Riverbed… (1500 devices)
Advancia, IT integrator and training center
janvier 2008 - février 2012
Tunisia/UK, Tunis/London Position: Senior Network and System engineer, CISCO Trainer
IT Infrastructure engineer and team leader and CISCO Trainer at Advancia IT system, Key skills: Network (Cisco,
Riverbed) and Microsoft system (AD, Exchange )
Technical support of biggest Tunisian customer’s account including Banks, ministries, Private groups and
telecom operators
Project management - Cisco and Microsoft Technologies
Microsoft & CISCO Certified Trainer MCT & CCSI
PROJECTS
DC bubble routing review – BNP CIB – In progress, The aim of this project is to review the routing design of the core
Datacenter and interconnect it to the MAN using BGP peering instead of OSPF routing
• ISE Migration -BNP CIB: This project is to migrate the network access control of all EMEA sites to a new Radius
server based on Cisco ISE 2.6 with NACv2 configuration (Dynamic vlan allocation )
• Review campus designs for all BNP entities and countries in EMEA and Asia Pac regions – In progress : The aim is
to configure regional pops formed by core routers (Cisco NEXUS N9K) and Campus / Extranet Firewall (Fortinet) and
segregate campus profiles via end to end VRFs (from campus site to POP). I created the HLD and LLD document for
this migration that involve different advanced routing features and protocols (OSPF, BGP, VRF leaking ..)
We follow the onboarding of entity and regions with local IT teams in EMEA region.
Achievement for this project :
- BNP REAL ESTATE onboarding in France, Germany, UK, Spain, Italy and Poland
- BNP CARDIF Onboarding in France, Italy, Poland (In progress) and UK (In progress)
- BNP PF Onboarding in Nordics (Sweden, Norway and Denmark) and UK (in progress)
- BNP CIB MEA standardization ( in progress)
• Internet guest project, TOTAL Gabon: The project goal is to give a guest internet access to different users in
Onshore and offshore platforms. We ate a new network to insure theses connections. Access is controlled by
Ucopia system
• ToIP Project, TOTAL Gabon: Migration from the old PABX system (MATRA) to ToIP infrastructure managed by a
cluster of three CUCM (v9.1.2). ASA firewalls cluster is configured to ensure DATA and voice segregation
• RADAR Project, TOTAL Gabon: Implementing new secured network to insure data transfer of the new RADAR
system installed in different offshore sites. DATA protection is assured by IPSEC tunnels on Checkpoint Firewalls
and GRE tunnels to pass multicast traffic
• QoS, TOTAL Gabon : Implementing QoS, LLQ Model, to prioritize voice traffic (EF)
• WAN Optimization, TOTAL Gabon Installing Riverbed steelhead on Onshore and offshore site in Total Gabon.
• Core Network renew, Orange Tunisia : Configuring VSS on cisco 6500 switchs, ( 4 x 6500 switches )
• HRA Separation, Fidelity Worldwide investment: This project is to separate HR Access network from Fil network
by removing routing configuration and firewall rules and replacing mixed devices.
• Core network optimization Fidelity Worldwide investment, Core switches migration in both UK datacentre from
Cisco 6509 to Nexus 7K and Nexus 5K. VDC creations and Use of OTV technology for communication between
datacentre.
• Tier0 project, Fidelity Worldwide investment: This project is to build an international network owned by Fidelity
worldwide investment to interconnect different sites on the world (UK, Central Europe, Tunia, India, and Asia Pac).
This network is dual homed with to ISP (Verizon and BT). Technologies: CISCO ASR routers, CISCO WAAS,
Riverbed, BGP, MPLS, OSPF
• PCI Private VLAN project, Fidelity Worldwide investment: This project is to secure PCI servers of electronic
card payment access and keep them on a VLAN mapped with firewall DMZ zones .Our task is to create Private
VLAN in Cisco switches, configure addressing and DMZ zones in CISCO ASA clusters and test access.
Technologies: Cisco Catalyst 6509, 3750, 4500, ASA 5540.
Dot1x Authentication projects for FIL and HRA, Fidelity Worldwide investment: This project is to configure
authentication for all FIL and HRA Devices, it include these tasks:
Configure AAA on CISCO switches
Configure switches to use Radius and Taccacs
Configure ACS server and create accounts, use of active directory
Configure authentication on interfaces : Dot1x for users and MAB (MAC Authentication Bypass ) for servers,
phones and network devices
HRA Project, Network architecture overhaul, Fidelity Worldwide investment: Modifying internal architecture
Of HR Access Tunisia, VLAN design and configuration, STP configuration Trunk and Etherchannel.
• Unified messaging project, Advancia: Configuring Cisco call manager, configuring Polycom equipment,
configuring and connecting Microsoft Lync to Cisco call manager, configuring and connecting exchange 2010 to
Lync server.
• Scettunisie Project, Advancia, migration of the messaging architecture from Exchange 2003 to Exchange 2010
with high availability, installation of four servers, NLB and cluster configuration and mailboxes moving
• WAN optimization, ADVANCIA: Installing and configure Riverbed Steelheads for UHD (Carrefour Tunisia ) for
Wan acceleration.
• CALLADVANCE Project, ADVANCIA, Network architecture overhaul, routing configuration (static, OSPF) on a set
of 6 routers (Kram, Telehouse PARIS, Paris Saint Denis), function validity and test with Tunisie Telecom and
Orange operators.
• ONTT Project, Advancia: Establishment of a messaging architecture using Exchange 2007 CCR cluster.
• Attijari BANK Project, Advancia: establishment of an Exchange 2007 messaging architecture with high
availability (CCR Cluster), 3000 users