Infrastructure as Code
Terraform · CloudFormation · encrypted remote state · multi-AZ VPC · isolated data tiers · least-privilege IAM
→ An environment you can destroy and rebuild with confidence
Cairo, Egypt · Remote Worldwide · Available Now
AWS DevOps Engineer / Cloud & Data Infrastructure
I build the path from commit to production and make it boring — infrastructure in Terraform, releases through CI/CD, systems watched by Grafana, and data pipelines that keep reporting honest. Then I hand you the code, the dashboards and the runbooks so your team owns it.
I'm an AWS DevOps Engineer built on two deep specialisations: AWS solutions architecture and data engineering. That combination is the point. Most teams can get code deployed, or get a dashboard built — the hard part is making the whole path reliable: commit → pipeline → infrastructure → data → decision.
Most businesses don't have an infrastructure problem. They have a repeatability problem. Servers configured by hand two years ago that nobody dares touch. Deploys that need a specific person online. Reports rebuilt manually every Monday. Outages discovered by customers. Every one of those is a system that was never finished — and finishing them is the work I do.
You get clear communication, organised documentation, and systems designed for real business use — not technical demonstrations. Send me your goal, your current stack, or the architecture problem that's been sitting in the backlog, and I'll tell you the most practical next step.
DevOps first, then the two specialisations that make it useful — AWS architecture and data engineering. Every line below is something I've shipped into production, not a technology I've read about.
Terraform · CloudFormation · encrypted remote state · multi-AZ VPC · isolated data tiers · least-privilege IAM
→ An environment you can destroy and rebuild with confidence
GitHub Actions · automated testing · container builds · gated deploys · fail-fast pipelines · fast rollback
→ Shipping becomes routine instead of an event
Grafana · Prometheus · Loki · Promtail · Alertmanager · CloudWatch · centralised logs · tested alert routing
→ You learn about incidents from a dashboard, not a customer
IAM policy design · ModSecurity WAF · CSF firewall · VPS hardening · CIDR blocking · TLS & certificate automation
→ A smaller blast radius when something does go wrong
EC2 · S3 · Lambda · API Gateway · DynamoDB · RDS · CloudFront · VPC · Well-Architected reviews
→ Architecture decisions you can defend in a review
S3 data lakes · AWS Glue · Athena · Redshift · BigQuery · schema drift handling · idempotent reruns
→ One trustworthy source of truth, not six conflicting exports
Amazon Textract · Python OCR pipelines · S3 + Lambda · confidence thresholds with human review · structured export
→ Hours of manual data entry become a file drop
Power BI · DAX · Power Query · star-schema modelling · Tableau · Looker Studio · automated refresh
→ An executive KPI view that maintains itself
Live platforms, open-source infrastructure, and productised services — each one links to something you can actually inspect: a running dashboard, a public repository, or a written case study.
A managed Grafana stack I host for the client — API, website, cloud and server metrics with alerting and secure credential handover. The demo below is a real dashboard, not a screenshot.
The full Grafana + Prometheus + Loki stack installed on your own servers via Docker Compose, with centralised log search and tested alert routing. Full admin access handed over — no SaaS or per-host fees.
A secure-by-default AWS account baseline in Terraform: encrypted remote state, a multi-AZ VPC with an isolated database tier, and least-privilege IAM. Start compliant instead of retrofitting security later.
Event-driven document extraction on Textract and Lambda. Invoices, receipts and scans become clean CSV, Excel or database records — with low-confidence fields escalated to human review instead of silently corrupting your data.
A large affiliate travel platform: Viator API integration, custom PHP and WordPress workflows, MySQL ingestion, SEO infrastructure and automated content routing — deployed and monitored on cloud infrastructure.
A serverless ETL pipeline for NYC travel data, ending in a Tableau reporting layer. Ingest, transform, warehouse, visualise — the full data engineering path in one repository.
An end-to-end machine learning application: feature engineering, regression models, and a deployed Streamlit interface for interactive property price estimation. Training through deployment, not just a notebook.
A structured Well-Architected review of an existing account — security posture, cost leakage, reliability gaps and scaling limits — delivered as a prioritised remediation plan rather than a 60-page PDF nobody reads.
Scalable backends on Lambda, DynamoDB, API Gateway, S3 and IAM with event-driven workflows — defined in infrastructure as code, instrumented from day one, and documented for handover.
I write up the problems I actually hit: the Terraform baseline, the pipeline that fails fast, the log label that wrecked a Loki install. Real debugging, with the trade-offs left in.
Terraform Modules Worth Reusing (And the Ones That Cost You)
A module’s real cost is not writing it, it’s upgrading it. Five signals that separate reusable Terraform modules worth adopting…
Read article →
GitLab CI vs GitHub Actions vs Jenkins: Choosing Without Regretting It Later
A practical comparison of GitLab CI, GitHub Actions and Jenkins that skips the feature table. What actually decides the choice is…
Read article →
Nginx vs Apache vs Caddy: What Actually Decides It in Real Projects
Benchmarks pick the wrong winner. Here is how Nginx, Apache and Caddy actually differ in production: how each one fails under load…
Read article →
Automating Server Provisioning for New Clients Without Building a Snowflake Farm
Hand-built client servers fail quietly: you only find out they were never reproducible on the day you need to rebuild one. Here is…
Read article →
Every credential below links to the issuer's own record. AWS issues its certification badges through Credly, so the badge page is the official proof — issue date, expiry and assessed skills included.
The things clients and hiring managers ask me first.
Available for DevOps engagements, cloud architecture consulting, data engineering projects — and open to full-time platform roles. Based in Cairo, working globally. Tell me the problem; I'll tell you the practical next step.