About Rabii
- Secure Azure Cloud Architecture (IaaS / PaaS)
- Cloud Security & Governance (Security by Design, Zero Trust)
- Identity & Access Management: Microsoft Entra ID, MFA, Conditional Access
- Azure Security: Microsoft Defender for Cloud, Azure Policies & compliance, Network security (Hub & Spoke, Azure Firewall)
- SecOps: Automation & industrialization (PowerShell)
- Cost optimization & FinOps best practices
- Support for digital transformation projects towards the Microsoft cloud
French
Native or bilingual
English
Fluent
Experience
- Ald Automotive - Société GénéraleCloud Security ArchitectAUTOMOBILEFebruary 2024 - Today (2 years and 3 months)Paris, FranceAssignment within theCloud Cybersecurityteam Ayvens as anAzure Security Architectresponsible for the design and implementation of security solutions in the Microsoft Azure environment.Tasks:
- Design robust security architectures to protect data, applications, and services hosted on Azure.
- Identify and assess security risks and implement appropriate protections.
- BYOD Security
- HLD for Azure Virtual Desktop integration and deployment monitoring.
- Deployment of targeted security configurations (cross-tenant access, admin consent, PIM, SSO, CA..)
- Governance: Ensure security from design (Security by Design), define remediation plans and apply security principles: Zero Trust, Least Privilege, Attack Surface Reduction
- Identity and Access Management (IAM): EntraID, SSO, MFA, Conditional Access, Access Review, PIM
- MS Office 365: MS Defender for Cloud Apps (CASB), conditional access based on context and risk level.
- SecOps: Lead vulnerability remediation and implement SecOps rules (centralized logging, MFA, secrets management)
- Create and enforce security policies based on best practices and regulations (NIST).
- Compliance and Audits: Ensure Azure infrastructure compliance with regulatory requirements and participate in security audits.
- Implement security monitoring tools (Sentinel) to detect threats and respond quickly to incidents.
Tech & ToolsAzure, Entra ID, Conditional Access, Cross-tenant Access, MFA, RBAC, PIM (Privileged Identity Management), Azure Virtual Desktop, Defender for Cloud, Defender for Endpoints, Azure Policy, NIST, ECB, MS Sentinel, Azure DevOps, Azure Container Registry, Harbor, jfrog/xray, trivy, PowerShell, Azure Firewall, - AXA Group OperationsCloud Solution ArchitectBANKING AND INSURANCEOctober 2023 - February 2024 (4 months)Paris, FranceAzure Cloud Solution ArchitectWithin the Move2Cloud AXA program, responsible for the reversibility aspect from the Public Cloud in accordance with European directives: technical study, definition of the migration strategy, optimization... (full English mission)
- Study and scope the reversibility subject, with analysis and evaluation of all dependencies between application services and infrastructure components
- Write, review, and update HLD and LLD architecture documents.
- Develop a detailed and structured step-by-step reversibility exit plan, defining the most suitable migration strategies (rehost, replatform, refactor, etc.), taking into account RTO / RPO requirements.
- Lead training sessions for teams involved in the reversibility process.
- Identify and implement reversibility optimization levers
Technical Environment- Cloud & Virtualization: Azure, AWS, OpenShift, VMware, VMware Converter, Azure Site Recovery (ASR), Kubernetes
- PaaS Services, Azure Backup, Azure Workbook
- Automation & IaC: ARM, PowerShell, Terraform
- KORIAN FRANCECloud Architect – Finops Project ManagerOctober 2022 - July 2023 (9 months)Lyon, FranceAssignment – Audit, FinOps, and optimization of an Azure infrastructure.I contributed to the analysis of the existing architecture and the identification of gaps between the architecture documentation (HLD / LLD) and the deployed infrastructure, with the objectives of cost optimization (FinOps), performance improvement, operational efficiency, and security level.Main Responsibilities
- Detailed analysis of the existing Azure architecture and highlighting of gaps between HLD / LLD and the production infrastructure.
- Update and validation of HLD and LLD architecture documents.
- Definition and implementation of a FinOps strategy, including detailed recommendations, action plan, governance, and associated policies.
- Writing an operational FinOps guide for technical and business teams.
- Leading FinOps technical workshops to raise awareness and support teams.
- Monitoring, reporting, and steering the implementation of FinOps actions, resulting in a 10% cost reduction in three months.
Technical Environment- FinOps & Governance: Azure Policy, Azure Cost Management, Azure Reservations, Savings Plans, Azure Advisor, Azure Monitor, Tags
- Services: Storage Account, Virtual Machines, Azure Functions, Log Analytics, SQL PaaS, Azure VMware Solution (AVS), Azure Spot, Veeam, Azure Backup, Azure Workbook
Recommendations
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Master's degree in Software EngineeringAix-Marseille University2009Master en ingénierie logicielle et bases de données avancées
Certifications
- Azure Solutions Architect ExpertMicrosoft2022
- Microsoft Certified: Azure Security Engineer AssociateMicrosoft2024