Kubernetes & Openshift Expert
Present CAGIP BANK - France
juillet 2023 - aujourd'hui
Design and Build Design & build of kubernetes based product “KubeNext” for
various use cases (High Performance Computing ARMONIK, GPUaaS RunAI/Nvidia, DATA
Platform, DATA as a Service, Caching System, BigData, Databases, Search Engine,
Stateless/Stateful workload…).
Migration from Kubernetes to Openshift (On-prem): Participating
in various architecture workshops (Networking, Storage, CICD, Security, Application
migration, Monitoring, etc )
Kubernetes services: Rancher RKE2, ArgoCD, Helm, Kustomize,Trident, Longhorn,
Portworx, kyverno, neuvector, Keycloak, rbac-manager, kube-vip, metallb, nginx controller,
external-secret, sealed-secret, Istio, Rancher Manager, kubeapps, matterMost, Grafana,
Prometheus, AlertManager
Kubernetes Integration: CMDB SNOW, Referenia, HPOMI Alerting, ELK, Dell S3,
ActiveDirectory, F5 Big IP
Go based operators: Development of a Go based operator for in-bound Kubernetes
automation using kube-builder
Data Services: Redis Enterprise, Redis Valkey, MongoDB Enterprise, Mongodb
Percona, Kafka confluent, Nifi, Opensearch, ELK, Spark, Flink, Airflow, MinIO, ActiveMQ,
RabbitMQ
Defining Build Strategies: GitOps, Vault, Pipelines, Logging, Monitoring, Alerting, Naming
conventions …
Networking: CNI: Canal, Calico,Cilium / BGP & L2 adv / Overlay & underlay
networking
Security: Kyverno, Neuvector, xRay, Falco, Runtime Scanning
RUN: L3 Support/On-call
Projects:
• ARMONIK On-prem: High Performance computing-based Solution on Kubernetes (Scale:
+100 Bare-metal)
• BigData Project: On-prem Kubernetes: Redis, MongoDB, Spark, Flink, Kafka, Airflow,
MinIO
• Caching Service: Setup of Redis enterprise cluster on Kubernetes (Scale: 25 Redis REDB,
150 shards, ~3.7 To)
• GPUaaS: RunAI: Nvidia product on Kubernetes cluster (Scale: 8 H100, 10 Bare-metal)
• OpenSearch on Kubernetes: Design and product Build
• Data Platform on Kubernetes: Self-service platform to consume data services
Cloud Native Consultant
Red Hat: Red Hat OpenShift
décembre 2021 - juillet 2023
Customer: Docaposte - France
Project: OCP Clusters Design/Deployment/Support
SOW:
• Design & Deployment of Red hat OpenShift OCP clusters
• Upgrading all OCP clusters
• Diagnose and troubleshoot technical issues, including storage, network Configuration
• Security assessment & enforcement
• OCP Audit
• Documenting technical knowledge
Customer: Servier - France
Project: Migration to Ansible Automation Platfrom V2
SOW:
• Ansible Tower assessment
• Migration to AAP 2 assessment
• Installing AAP2
• Refactoring and Migrating provisioning VM usecase (Linux/Windows)/(OS/Databases)
• Security enforcement
• Documenting technical knowledge
Customer: CBUAE Central Bank - UAE
Project: OpenShift deployment/ Infrastructure provisioning (8 OCP on G42 Cloud (UPI))
SOW:
• Deploying OCP clusters
• Design/Development of multiple automations scripts in Ansible Tower to Scale (In/Out) All
OCP clusters on G42 Cloud, using OCP Pipelines and Alert Manger.
o Packaging the cluster agnostic auto-scaler component in a helm Chart for the ease
of integration with ArgoCD (GitOPS).
• Design/Development of automations scripts in Ansible Tower to Manage Fortigate & Palo
Alto firewalls.
o UC 1: Automate the management of FW Rules (FortiManager/Panormama).
o UC 2: Scrapping FW custom Metrics using REST APIs (Highly extensible scripts).
• Design/ Development of automations scripts in Ansible Tower for Server Hardening and
OS Updates (Linux 7/8).
• Upgrading OCP clusters from 4.8 to 4.10.
• QA Sessions (Security/DevOps Teams).
• Documenting technical knowledge / The document is available internally (Red Hat) on
GitLab
Customer: BSS Operator - OMAN
Project: OCP Clusters Design/Deployment/Support (3 OCP Clusters on VMware (IPI))
SOW:
• Deploying OCP clusters
• Upgrading all OCP clusters from 4.6 to 4.10 (incrementally)
• Diagnose and troubleshoot technical issues, including storage, network Configuration
• Supporting the DevOps Team to create custom Images, builder Images, Helm Charts,
Pipelines, Templates, deploying micro services and use Operator framework
• Configuring NFS Storage Class (NetApp)
• Introducing GitOPS with ArgoCD
• QA Sessions (DevOps Team)
• Documenting technical knowledge
Customer: ská Spořitelna - Czech Republic
Project: OCP Clusters Design/Support (12 OCP Clusters on VMware (IPI))
SOW:
• Diagnose and troubleshoot technical issues, including Authentication, Cluster slowness,
Registries integration, Storage issues, network Issues (SDN, Routers, Ingress, …), Control
plane failure, Application POD failures, ..
• Assisting the DevOps Team in the application migration strategie.
• Upgrading OCP Clusters (4.7 to 4.9)
• Customizing Grafana dashboard (GAP Stack)
• Introducing the GItOPS approach using ArgoCD.
• Introducing Multi-clusters management solution. (Red hat ACM).
• QA sessions: The OCP Design / The best practices and recommendations.
Customer: STC/Ericson - KSA
Project: Automating Infrastructure provisioning with Red hat Ansible
SOW:
• Deployment of a highly available virtualization platform based on Red hat Virtualization
using Ansible. (Configuring 60 hypervisors and setting up +400 Virtual Machines)
• Configuring storage, Configuring Networking (Teaming, multipathing)
• Deploying applications, managing services, install and configure assets
• Assisting the DevOps Team in their application migration strategy
• Integration with Red hat Satellite
• Documenting technical knowledge
Cloud Native Consultant
NUN: Red Hat OpenShift
décembre 2019 - novembre 2021
Managing configuration with Red Hat Ansible in a medium and large scale
• Configuring DellEMC Networking OS10 using Red Hat Ansible
• Creating a Red Hat high-availibility Cluster with Pacemaker
• Provisioning a Test/Dev environment on Azure using Terraform
• Setting up a highly available and production grade kubernetes cluster using Kops
• Setting up an EKS (Elastic kubernetes service on aws ) cluster and deploying operators
(Prometheus/strimzi(kafka),Argo CD/…)
• Building a Kafka streaming application using IBM Event Streams
• Setting up OCP v 4.6 on VMware (UPI)
• Setting up OCP v 4.7 on AWS
• Setting up several CI / CD pipelines (Jenkins/GitLab/Nexus/SonarQube) using OpenShift
(v3.x/v4.x)
• Building of multiple custom container images using DockerFile and Source to Image (S2I)
• Administration of RHEL / Centos systems with Red Hat Virtualization.
Red hat Certified Instructor
LinSoft: System Engineer
août 2014 - décembre 2019
Delivering official Red Hat courses in the EMEA region (More than 150 official Red hat
training sessions OpenShift, Openstack, CloudForms, Ansible, Linux, Middleware, ..)
• Setting up a highly available OCP v 3.9
• Installation and Configuration of Red Hat Satellite
• Provide on-site support to clients (Telecom/Banking industries)
• Management and resolution of incidents.
• Administration of Linux Servers
• Installation, testing and evaluation of new open source solutions.
• Definition and development of operating procedures.
• Writing documentation and technical reports.