DevSecOps Team Lead at Jatdev Middle East (2025-01 – Present)
- Led complete DevSecOps transformation, reducing production vulnerabilities by 40% through the integration of automated security scans and proactive threat modeling into CI/CD workflows.
- Architected and implemented security-first CI/CD pipelines using GitLab, Argo CD, and Jenkins, incorporating SAST, DAST, and container scanning to ensure continuous compliance.
- Deployed Hashi Corp Vault for centralized secrets management, eliminating manual secret handling and enforcing strict encryption standards across all cloud-native pipelines.
- Managed and scaled high-availability PostgreSQL clusters in AWS, designing and automating backup, failover, and disaster recovery strategies.
- Integrated Prometheus and Grafana with critical services (Redis, Vault, Postgres), improving system reliability and decreasing Mean Time to Resolution (MTTR) by 30%.
- Standardized and secured application delivery by automating Kubernetes deployments with Helm, ensuring consistent and auditable releases across development, staging, and production.
Senior DevOps Engineer at Vois (2024-01 – 2025-01)
- Engineered and scaled automated CI/CD pipelines with Argo Workflows, increasing deployment frequency by 50% and reducing manual overhead by 90%.
- Automated the lifecycle management of 8 production Amazon EKS clusters, improving deployment efficiency and optimizing resource allocation, leading to higher stability and performance.
- Spearheaded a "shift-left" security strategy by embedding IaC scanning and automated vulnerability assessments into CI/CD pipelines, reducing critical vulnerabilities in pre-production by 60%.
- Engineered a cost-optimization framework for AWS that reduced monthly cloud spend by 40% through strategic instance right sizing, spot instance utilization.
- Enhanced stakeholder satisfaction and operational efficiency by leveraging Jira to streamline communication.
- Architected and implemented a real-time observability platform with Datadog for 8 EKS clusters, reducing Mean Time to Detection (MTTD) by 40% and improving overall system reliability.
DevOps Team lead at Destiny Engage (2022-01 – 2024-01)
- Architected and secured multi-account AWS environments using Terraform for robust Infrastructure as Code (IaC). Managed and scaled Amazon EKS clusters by implementing advanced horizontal (Karpenter, KEDA) and vertical (Goldilocks) autoscaling, ensuring optimal performance and resource efficiency.
- Engineered and managed CI/CD pipelines in GitLab and Bitbucket, integrating key DevSecOps practices including vulnerability scanning and code obfuscation. Streamlined deployments and enhanced security by optimizing Docker builds with distroless images and standardizing releases with Helm charts.
- Established a full-stack observability platform by integrating log aggregation (Loki/Promtail) and metrics collection (Prometheus). Developed real-time Grafana dashboards and configured proactive alerts, providing deep visibility into system health and enabling rapid troubleshooting with developers.
- Developed custom Python and Shell scripts to automate critical operational tasks, including data analysis and dynamic Helm chart updates during deployments. Proactively monitored system uptime and security posture using a suite of tools (Nessus, Uptime Kuma, Freshping) to ensure maximum reliability and performance.
Senior system admin at IFFCO Egypt (2021-01 – 2022-01)
- Infrastructure & Release Management: Managed Red Hat Enterprise Linux servers, configured network infrastructure (firewalls, VPNs), and ensured high availability through upgrades and maintenance.
- Provided technical support, guided application installations, and optimized performance across IT infrastructure.
- Security & System Administration: Maintained network servers (file, VPN, IDS), configured network devices (Cisco phones, access points), and ensured system security.
- Documentation & Monitoring: Created and maintained technical documentation, monitored critical services and replications, ensuring system health.
system admin at Skretting Egypt (2015-01 – 2021-01)
- Delivered comprehensive application support: Provided multi-tiered application support, including maintenance for local business.
- Spearheaded IT projects: Delivered successful IT projects, adhering to company standards and established processes.
- Empowered users with training: Delivered local and central support and training on industrial IT applications and infrastructure (e.g., MES-PCS), ensuring user proficiency.