AZIZ
I build and maintain cloud-native infrastructure across AWS and Azure. CI/CD pipelines, Identity and Access Management, Kubernetes orchestration, Infrastructure as Code, and endpoint management at scale. I keep systems running, secure, and automated.
SYSTEMS & CLOUD ENG
SEATTLE, WA
EXPERIENCE
Remote
- Administered and optimized Microsoft 365 tenants including Exchange Online, SharePoint, Teams, and OneDrive for 300+ users across multiple distributed school locations
- Deployed and enforced Azure Entra ID Conditional Access policies, MFA, Identity Protection, and Privileged Identity Management (PIM) to secure remote workforce access
- Managed Intune MDM platform for device enrollment, compliance policies, configuration profiles, and app deployment across Windows, macOS, and iOS endpoints
- Automated onboarding, offboarding, and user provisioning workflows using PowerShell and Azure CLI, reducing manual provisioning time by 60 percent
- Administered Active Directory and Azure AD including GPOs, OU structure, group-based licensing, and hybrid identity synchronization via Azure AD Connect
- Maintained ITSM ticketing queue in ServiceNow, consistently resolving 95 percent of Tier 1 and Tier 2 incidents within SLA targets
- Collaborated with network team on firewall rule management, VPN configurations, split tunneling, and DNS/DHCP troubleshooting across distributed sites
- Deployed and managed SCCM and Intune Autopilot for OS imaging, hardware provisioning, and asset lifecycle management across 150+ endpoints
- Implemented Zero Trust access patterns including device compliance gates, app protection policies, and least-privilege RBAC for cloud and on-prem resources
- Monitored infrastructure using Azure Monitor, created alerting rules, and maintained operational documentation and runbooks for continuity
- Managed M365 license assignments, cost optimization reviews, and security compliance reporting for school administration stakeholders
Remote
- Provisioned and managed AWS infrastructure (EC2, VPC, IAM, S3, EKS) using Terraform, following IaC principles and least-privilege security standards
- Built and maintained multi-stage CI/CD pipelines with Jenkins and Azure DevOps, integrating SonarQube for SAST and automated quality gates
- Containerized microservices with Docker and deployed workloads to Kubernetes clusters using Helm charts, managing namespaces, RBAC, and resource quotas
- Implemented Prometheus and Grafana dashboards for real-time infrastructure monitoring, capacity planning, and SLI/SLO alerting
- Automated infrastructure provisioning with Python and Bash scripts, reducing manual deployment steps and associated human error
- Participated in Agile sprint cycles, standups, and retrospectives; authored architecture docs, runbooks, and incident postmortems
SKILLS
PROJECTS
Go Web App on Kubernetes / EKS / Helm
Cloud-native Go service containerized with Docker, deployed to AWS EKS using Helm. HPA, liveness probes, and namespaced RBAC.
repoCI/CD Pipeline (Jenkins / Azure DevOps / SonarQube)
Multi-stage pipeline: build, test, SAST scan, Docker image push, K8s deploy. Rollback triggers and Slack alerts on failure.
repoAWS EKS Cluster with Terraform
Modular Terraform configs: VPC, subnets, SGs, EC2, S3, EKS. Remote state in S3 with DynamoDB locking and drift detection.
repoThree-Tier DevSecOps Project
Three-tier architecture with integrated CI/CD, automated SAST/DAST scanning, and infrastructure hardening following DevSecOps practices.
repoTerraform EC2 Web Server
Automated EC2 web server provisioning with VPC networking, security groups, IAM roles, and user data bootstrapping.
repoAzure Identity and DevOps Project
Entra ID with Conditional Access, PIM, RBAC, and Zero Trust access policies. Automated user lifecycle via Azure CLI and PowerShell.
repoStarbucks DevOps Demo App
End-to-end DevOps demo project showcasing automation workflows, containerized deployment patterns, and cloud-native pipeline integration.
CERTIFICATIONS


EDUCATION
Focus: Cloud infrastructure, distributed systems, DevOps
Coursework: Linux, Networking, Programming, Systems Administration