May 2023 – Present: Azure Cloud & Kubernetes Principal Architect/ Kubernetes Offer Owner and CTO advisor
at ALSTOM Cloud & Compute
As an Architect within the Design Authority :
• Design, implement and manage a turnkey enterprise grade Kubernetes platform (Platform Engineering)
based on Azure AKS (Product centric, secured, multitenant, automation and GitOps, monitoring with
Prometheus, cluster management with Rancher, FinOps with OpenCost, DevSecOps…)
• Unify with the platform pattern the governance and the security principles and hardening of all Kubernetes
(AKS) based products, provide a shared service layer and self-service namespaces to product teams
• Structure and lead the Kubernetes offer at the enterprise level, setup onboarding process of products teams
and promote its usage
• Design, audit and implement cybersecurity by introducing DevSecOps approach and tools, setup a security
hardening guidelines and rules for the Kubernetes platform infrastructure and application deployed on it
• Setup a centralized Kubernetes cluster management solution and benchmark vendors (Suse Rancher, Tanzu
VMware, RedShift Red Hat)
• Support and accelerate digital transformation of the products in term of moving to cloud, containerization /
microservice architecture, secure the Alstom SaaS offering, enable automation, agility and self service
• Provide close technical support to projects and delivery teams (architecture & design, Azure services, AKS,
security, networking …) in build and run activities
• Release architectures and designs for cloud (Azure) and onPrem to ensure high availability, security,
resiliency, DRP, automation and DevOps, produce documentation, guidelines and architecture patterns
• Drive Azure FinOps audit, implement immediate remediations and provide enterprise principles and
guidelines for FinOps management
• Design, implement and promote a new cloud operating model to bring more automation (IaC and CI/CD),
agility, Platform Engineering and self-service approach to the organization and remove any bottleneck linked
infrastructure and process
• Introduce agile framework in architecture and design authority team, educate team to right balance between
intentional and emergent Architecture when interacting with agile project teams
• Design, support, and accelerate move to cloud of the different product across the company and advocate for
public cloud adoption (PaaS, Serverless, CaaS)
• Provide support and strategical vision to CTO and C-Level managers about cloud adoption, emerging
technologies and patterns, automation and agility frameworks, benchmark solutions and vendors
Technical Environment : Azure Cloud, Kubernetes (AKS), Prometheus, Grafana, Alert Manager, Thanos,
KubeClarity, Kubebench, Kubecost, Elastic Search, Linux (Ubuntu, Red Hat, Azure Linux, alpine, Talos …), Fluentd,
Log Analytics workspaces, Azure Monitor, Azure Cost Management, Azure PaaS (Cosmos DB, App Services, Azure
Data base, Sentinel …), Azure IaaS (VM, Azure VMWare…), AVI, ZScaler
Jan 2021 – Apr 2023: Ass Director, Cloud and Kubernetes Platforms Principal Architect at IQVIA
• Lead architecture and design authority team of 5 architects (France, US, India)
• Lead, define and support cloud and digital transformation strategy for our product line (>1 billion $ revenue) by promoting automation, cloud Platform patterns and agile approaches
• Setup and develop architecture and governance patterns, define standards for Security, HA, Reliability,
automation, performance and FinOps
• Design, manage and set up Cloud & DevOps platforms architectures (AWS, Azure, Kubernetes, Infrastructure,
Networking, automation, security…) to facilitate cloud and microservices transformation and enable cloud
and agility adoption
• Design, maintain and evolve a ready to use enterprise grade DevOps platform (Engineering Platform) based on
Kubernetes (Kubernetes “AKS, EKS”, Helm, Micro services, Prometheus, Grafana, Thanos …)
• Enterprise architecture board member and representative for review and validation, strategy and roadmap,
technology watch …
• Lead and support products in their Azure migration (Roadmap, Target Architecture, Lift & Shift, Hub & Spoke)
• Security audit, hardening and remediation, design and integrate DevSecOps approaches and tools on cloud and
platform level (Vulnerability scan, WAF …)
• Design and lead POCs for new technologies, solutions, patterns …
• Part of Azure CoE responsible of designing and implementation Azure cloud at the enterprise level (Hub &
spoke architecture, design landing zones, define and setup governance and security, defines automation
patterns and reference architectures, Migration roadmap, FinOps management …)
• Set up a knowledge base and delivery of architecture design documents
• Provide technical support and lead for DevOps squads and products teams
Technical Environment: Azure, AWS Cloud, Kubernetes (AKS, EKS), Gitlab, Terraform, Helm, Prometheus, Grafana,
Alert Manager, Thanos, KubeClarity, Kubebench, Kubecost, Rancher, Elastic Search, Kafla, Jaeger, Linux (Ubuntu,
Red Hat, Azure Linux, alpine, Talos …), Fluentd, Log Analytics workspaces, AWS Cloudwatch, Azure Cost
Management, Azure - AWS PaaS (Cosmos DB, App Services, Lambda, application gateway, Cloudfront, FrontDoor,
CloudTrail, GuardDuty, Sentinel …), Azure, AWS IaaS (EC2, VPC, Azure VM, Azure VM…), WAF, F5, Cloudflare
2014 – Dec 2020 : Lead Solution Architects – Principal Cloud Architect at Capgemini
• Design, manage and set up Cloud platforms architectures (CaaS, PaaS, SaaS, AWS, Azure)
• Lead move to cloud projects, strategies and roadmaps for costumers
• Design, manage and set up data platforms (Ingestion, Data lake, Analytics, Visualization)
• Design and set up On premises infrastructure and perform installations (Application tiers, Database Server,
Middleware, security…)
• Design integration architectures and flows between systems (API, services bus, data hub …)
• Set up automation and DevOps architectures
• Lead architecture team and workshops (applicative, integration, data, security, microservices…) with
consumers and release documentation
• Monitor and ensure the adoption of the architecture principles, governance and best practices
• Support top management in developing strategies and roadmaps, provide a vision of the state of the art and
popularize technical concepts
• Technology watch and provide advice on future transformations
• Participate in offers development and pre-sales
• Involved in the business development of the offers (Cloud adoption frameworks, Kubernetes, DevOps …)
Technical Environment : Azure, AWS Cloud, Kubernetes (AKS, EKS), Linux (Ubuntu, Red Hat, Centos, alpine …),
Prometheus, Grafana, Alert Manager, Thanos, DB2, Windows Server, Gitlab, Terraform, Dynatrace, Docker
Relevant Experiences
Design and set up of an Observability Platform
• Context of the Project: Implementation of an observability platform in a multi-cluster and multi-cloud context
addressing the axes: Monitoring, Logging, Distributed Tracing and centralization of AWS and Azure services
metrics
• Role: As a solution architect my role is to:
o Lead workshops and studies on the state of the art of technologies, best practices, and team’s
requirements
o Design, set up and discuss the architecture of the different layers of the platform (Security, HA,
resiliency…)
o Implement a POC to study the feasibility of the architecture, then the platform
o Submission of the architecture to the board, launch and supervision of developments and delivery
o Bring the platform to the products and show the added value to adopt it
• Technical Environment: Cloud AWS and Azure (AKS, EKS, S3, Blob Storage, Log Analytics…),
Kubernetes, Prometheus, Thanos, Grafana, Jaeger, ELK, KAFKA, Helm …
Move to Azure Migration Projects
• Context of the Project: Design, study and migration of several products and a DevOps Kubernetes (PaaS)
platform to Azure
• Role: As an Architect and technical leader of the migrations, my role is to:
o Coordinate migration activities, roadmaps, strategies
o Support products in the migration to Azure in a Lift & Shift pattern at first
o Introduce the concepts of cloud native architectures and lead the products towards more integration
in Azure (Advocate for usage of PaaS, serverless, CaaS …)
o Design, set up and implement new target architectures (Landing zone, Hub & spoke, infrastructure,
security, etc.)
o Implement a POC to study the feasibility of the architectures
• Technical Environment: Azure Cloud (Vnet, AKS, Kubernetes, Frontdoor, App Services, application
Gateway, Load balancer … ), Prometheus, Grafana, Alert Manager, Thanos
Implementation of a global data platform
• Context of the Project : Implementation of an end-to-end data / BI platform comprising a data ingestion layer, a
data lake, data warehouse and Analytics and a visualization layer, within an AWS Cloud environment
• Role: As Lead Solution Architect and technical leader of the platform my role is to :
o Coordinate and setup of the technical architecture design activities of the platform for each layer
o Management of the offshore solution architects (cloud, data), team in India
o Leading architecture workshops (As is - To be) and proposal of target architecture (infrastructure, data
lake, security, DevOps), support in technological and design choices,
o Drafting documentation
o Participate in project steering and governance, milestones and achievements monitoring
o Coordinate deployments and go live activities
• Project challenge:
o Big project involving many partners and dealing with new needs
o Ensure interoperability betwee...