Highlights
- Pro
Final-year Engineering student in IT Infrastructure and Cloud Computing, seeking a 6-month internship starting January2026. Skilled in automating CI/CD pipelines, cloud infrastructure, microservices, and ML workflows, with a proven focus onbuilding secure, reliable, and scalable systems that optimize project lifecycles and drive operational efficiency
- 📍 Tunis, Tunisia
- 📱 +216 58 911 742
- 📧ahmed.marzougui@esprit.tn
- 🌐 Portfolio:marzouguiahmed9.github.io/portfolio
- 💼 Open to opportunities startingDecember 2025
Profile •Experience •Featured Projects •Full Project Gallery •Tech Radar •Education •Certifications •Languages •Stats
DevSecOps Intern — ST2I, Tunisia (Jun 2025 – Sep 2025)
- Automated deployment of8 Spring Boot microservices onOpenShift usingHelm + Argo CD + GitLab CI, reducing deployment time by87% across dev / stage / prod.
- Built supply chain security:SBOM (Syft),vulnerability scanning (Trivy & Grype),image signing (Cosign), enforcedRBAC & SonarQube quality gates →95% vulnerability reduction and35% code quality improvement.
- Achieved99.5% uptime via metrics + alerting dashboards (Prometheus + Grafana) and proactive SLO monitoring.
- Standardized release promotion with Helm versioned rollbacks & policy checks.
DevOps Intern — SOCOOPEC, Tunisia (Jun 2024 – Jul 2024)
- Built internalstock management platform (Angular + Spring Boot + JWT + Swagger).
- Automated frontend CI/CD withGitHub Actions → AWS EC2, cutting manual steps80% and achieving~2 min build cycles.
- Introduced baseline monitoring & alert rules usingCloudWatch (availability + resource usage).
Full-Stack JavaScript Developer — AFTERCODE (Jun 2023 – Aug 2023)
- Developed interactive user interfaces with vanilla JavaScript, HTML, CSS.
- Optimized UX via asynchronous data fetching and responsive layouts.
Project | What It Solves | Impact | Stack |
---|---|---|---|
Terraform VPC Automation | Standardized secure AWS network foundation. | ↓ Provision time70%, drift eliminated. | Terraform · AWS VPC · IAM · Remote State |
Automated KVM Virtual Lab | Rapid reproducible local infra lab. | Setuphours → <10 min. | Ansible · KVM/libvirt · Cloud-init |
AWS 3‑Tier Architecture | Resilient web/API baseline. | Multi-AZ HA + security tiering. | VPC · EC2 · ALB · ASG · Aurora |
GitLab Helm Deployments (EKS) | Gated Kubernetes delivery. | Faster rollout & safer rollback. | GitLab CI · Helm · EKS · RBAC |
Serverless File Sharing | Secure collaboration platform. | 20–30 users, encrypted storage. | React · Cognito · Lambda · EFS |
Hybrid OpenStack Cloud | Internal + burst compute platform. | Capacity visibility & flexibility. | OpenStack · K8s · AWS · Grafana |
Spring Boot on ECS Fargate | Managed microservice runtime. | Zero-downtime releases & scaling. | ECS Fargate · CodePipeline |
Node.js K8s CI/CD | Quality-focused delivery flow. | Faster feedback, fewer regressions. | Jenkins · K8s · Docker |
CI/CD Pipeline Optimization | Build throughput improvements. | Deploys<5 min, manual ↓30%. | Jenkins · Caching · Telemetry |
Spam Detection ML Pipeline (DVC) | Reproducible end-to-end ML workflow for spam classification. | Faster iteration; deterministic experiments; safe deployment readiness. | DVC · dvclive · Python · S3 · MLOps |
Service Health Checker API | Lightweight active monitoring & metrics exposure. | Real-time visibility & rapid incident detection. | Go · Prometheus · Grafana · Docker |
🧱 Infrastructure & Platform Engineering
Infrastructure-as-Code modules to standardize secure AWS network foundations.
- Reusable modules (VPC, subnets, routing, NAT, IGW, security boundaries).
- Enforced tagging & CIDR conventions; multi-env parity (dev/stage/prod).
- Result: 70% faster provisioning; near-zero config drift.
Stack: Terraform • AWS VPC • IAM • Remote State (S3 + DynamoDB)
Production-ready high-availability baseline.
- Segmented public/private/db tiers with strict SG + NACL boundaries.
- ALB + Auto Scaling for stateless resilience.
- Aurora MySQL (Multi-AZ) for durability.
Stack: AWS VPC • EC2 • ALB • ASG • Aurora MySQL • IAM • CloudWatch
Internal cloud bridging on-prem workloads with AWS burst capacity.
- Multi-node OpenStack (compute / networking / storage).
- Hosted AI-oriented workloads: Kubernetes + DB layer.
- Unified Grafana observability (capacity & performance).
Stack: OpenStack • Ansible • Kubernetes • Docker • MySQL • AWS EC2/S3 • Grafana
⚙️ Automation & Virtualization
Local mini-cloud enabling repeatable ephemeral test setups.
- Automated VM lifecycle (networking, SSH, users, packages) via Ansible + cloud-init.
- Setup time: Hours → <10 minutes.
Stack: Ansible • KVM/QEMU • libvirt • Cloud-init • Linux Networking
☁️ Cloud-Native Delivery & Runtime
Policy-driven Kubernetes application delivery.
- Pipeline: build → scan → chart lint → deploy (review → staging → prod).
- Environment-specific
values.yaml
segregation + immutable image tags.
Stack: GitLab CI • Helm • Amazon EKS • Docker • Registry • RBAC
Managed container runtime with scalable microservice deployment.
- Pipeline: GitHub → CodePipeline → CodeBuild → ECR → ECS.
- Rolling updates with autoscaling triggers + health checks.
Stack: Spring Boot • Docker • ECS Fargate • ECR • CodePipeline • CodeBuild
Quality-focused workflow with integrated security & notifications.
- Static code analysis + container scan + deploy + Slack alerts.
- Observability hooks for runtime metrics.
Stack: Jenkins • Docker • Kubernetes • Node.js • Static Analysis • Slack API
🔐 Security, Reliability & Optimization
Throughput and reliability improvements across build matrix.
- Parallelized stages, caching layers, immutable artifact strategy.
- Deploy time: <5 minutes; manual intervention ↓30%; MTTR improved via telemetry dashboards.
Stack: Jenkins • Ansible • Docker • AWS EC2 • Caching • Monitoring
Low-ops encrypted collaboration stack.
- Cognito-authenticated API Gateway + Lambda orchestration.
- Encrypted storage using EFS + KMS; edge protection via WAF.
- Designed for 20–30 concurrent users / 5–10 GB encrypted data.
Stack: React • Cognito • API Gateway • Lambda • EFS • KMS • WAF • CloudWatch
Domains | Focus Areas | Strength Highlights |
---|---|---|
Cloud & Platform | AWS, OpenStack | Multi-env architecture, networking, resilience |
Containers & Orchestration | Docker, Kubernetes, OpenShift | Helm, Operators, RBAC, autoscaling |
Infrastructure as Code | Terraform, Ansible, Helm | Modular design, policy & drift prevention |
CI/CD & GitOps | GitLab CI, GitHub Actions, Argo CD, Jenkins | Secure pipelines, progressive delivery |
Security & Supply Chain | Trivy, Grype, Syft, Cosign, SonarQube | SBOM, image signing, quality gates |
Observability | Prometheus, Grafana, ELK, CloudWatch | Metrics, dashboards, alert tuning |
Designed for readability + visual grouping. Collapsible sections keep the README compact while allowing deeper exploration.
Private Higher School of Engineering and Technologies (ESPRIT), Tunisia
Integrated Master’s-level Engineering Program in IT Infrastructure & Cloud Computing (2022 – Present)
Higher Institute of Applied Sciences and Technology of Mahdia (ISSATM), Tunisia
Preparatory Cycle in Mathematics & Physics (2019 – 2022)
Let’s build secure, observable, automated platforms.
PinnedLoading
- shayma-ouerhani/3A56_Innovatix_P3
shayma-ouerhani/3A56_Innovatix_P3 PublicPHP
- LeetCode-Feedback/LeetCode-Feedback
LeetCode-Feedback/LeetCode-Feedback Public - Ayoubmekni7/app
Ayoubmekni7/app PublicCSS
- FriendsOfSymfony/FOSRestBundle
FriendsOfSymfony/FOSRestBundle PublicThis Bundle provides various tools to rapidly develop RESTful API's with Symfony
If the problem persists, check theGitHub status page orcontact support.
Uh oh!
There was an error while loading.Please reload this page.