AOURIK HASSAN
CloudOPS / Cloud Governance & FinOps Expert
Application project enablement, Cloud governance, compliance, FinOps and reliability across Cloud environments.
Professional Summary
Cloud expert with over 11 years of experience designing, automating, securing, and operating enterprise IT platforms in hybrid and multicloud environments, including Azure, GCP, IBM Cloud, and AWS. Specializing in DevOps, CloudOps, and Site Reliability Engineering (SRE), with extensive experience in Kubernetes, OpenShift, Docker, GitOps (ArgoCD), CI/CD pipelines (GitLab CI, Azure DevOps), and Infrastructure as Code (IaC) with Terraform and Ansible. Experience with cloud-native platforms, infrastructure automation, observability, security, virtualization, networking, and enterprise system administration on Windows and Linux. Solid experience in building scalable and resilient infrastructures, implementing best practices in automation and security, and supporting critical production environments within international organizations.
Certifications
- Microsoft Azure Solutions Architect Expert
- Microsoft Azure Administrator
- Microsoft Certified Solution Associate - O365
- Microsoft Certified Server Expert
- Network Concepts DevOps
- CISCO CCNA RS
- Security CEHv10
- VMware Administrator
Education
ISGA Marrakech (2016 - 2019)
Engineering degree in Information Systems Architecture and SecurityISTA NTIC Marrakech (2013 - 2015)
Specialized Technician in Computer Networks and SystemsProfessional Experience
GROUP ROCHER February 2025 - Present
Hybrid / Rennes, France
- Advise project teams on Cloud architectures, landing zones, networking, security and managed services.
- Lead architecture reviews and compliance checks against group standards for security, tagging and operations.
- Maintain Cloud reference guides, deployment patterns, CI/CD standards and FinOps practices.
- Drive FinOps dashboards, budgets, alerts, drift analysis and cost optimization actions.
- Coordinate Ops, Security, Network, Architecture, Finance and business teams to improve Cloud adoption and reliability.
Significant Projects:
- Implementation of Cloud governance controls and FinOps visibility across multiple project scopes.
- Standardization of Cloud architecture models and compliance controls to accelerate deployments.
- Continuous optimization of Cloud costs through rightsizing and usage rationalization.
- Support for teams in adopting modern Cloud patterns in a secure environment.
- Cloud & Architecture (Azure, GCP, IaaS/PaaS/SaaS)
- FinOps (Azure Cost Management, GCP Cost Explorer, budgets, alerts)
- Automation & IaC (Terraform, Ansible, PowerShell, Python)
- CI/CD (Azure DevOps, GitHub Actions, GitLab CI)
- Containers (Docker, Kubernetes, AKS, GKE)
- Security (IAM, RBAC, secrets, posture management, Zero Trust)
- Observability (Azure Monitor, Hypervision)
Groupe BNP Paribas June 2024 - February 2025
Hybrid / Paris, France
- Designed and implemented IBM Cloud, Azure and on-premises infrastructure solutions for development and operations teams.
- Automated infrastructure deployment and configuration management with Terraform and Ansible.
- Managed production platforms with a focus on security, compliance and availability of critical systems.
- Improved performance and reliability through monitoring, performance analysis and proactive remediation.
Significant Projects:
- Deployed hybrid cloud infrastructure supporting new development initiatives and specific on-premises constraints.
- Automated CI/CD delivery with Terraform and Ansible, reducing deployment time and manual errors.
- Implemented advanced monitoring for critical applications to detect anomalies earlier.
- Cloud (IBM Cloud, Azure)
- Automation (Terraform, Ansible, Bash)
- CI/CD (Jenkins, GitLab CI, ArgoCD, Digital AI Release)
- Security (Hashicorp Vault, F5, Fortinet, Azure Defender)
- Containers (Docker, Kubernetes, OpenShift)
- Monitoring (Dynatrace, Logstash)
Autodistribution June 2022 - August 2024
Hybrid / Paris, France
- Defined and implemented physical and functional architectures for complex IT infrastructures.
- Led the design and deployment of server, storage, backup and system solutions.
- Performed IT audits and designed scalable, secure architectures.
- Managed and secured multi-cloud infrastructures while maintaining high availability and performance.
- Automated infrastructure deployment with Terraform, Ansible and PowerShell.
- Implemented identity and access solutions including Okta and Azure AD.
- Managed CI/CD pipelines with GitLab and Jenkins.
Significant Projects:
- Designed and deployed hybrid cloud infrastructure to improve flexibility and resilience.
- Completed application and data migrations to Azure.
- Implemented automated backup and centralized identity management solutions.
- Systems (Windows Server, Redhat/Centos)
- Cloud (Azure, Google Cloud, AWS)
- Automation (Terraform, Ansible, PowerShell, Bash)
- Networks (Forcepoint, Fortinet, Netscaler)
- Databases (MongoDB Atlas, PostgreSQL)
- CI/CD (GitLab CI, Jenkins, ArgoCD, Azure DevOps)
- Security (Sekoia, Wallix, Okta, Hashicorp Vault, Azure AD)
- Virtualization (Nutanix, VMware, Citrix)
HDCE.Inc November 2019 - June 2022
Hybrid / Drummondville, QC, Canada
- Design and implement hybrid Cloud solutions using Azure and on-site infrastructure.
- Manage Windows Server environments, including Active Directory, DNS, DHCP.
- Administer the Office 365 suite: Exchange Online, SharePoint Online, Teams, OneDrive.
- Implement and manage Azure services such as virtual machines, storage, backup, and Azure AD Connect.
- Design and implement high-availability solutions with Windows Failover Clustering.
- Migrate on-site Exchange to Exchange Online and SharePoint to SharePoint Online.
- Implement and manage VMware vSphere environments.
- Develop PowerShell scripts to automate routine tasks and bulk operations.
- Implement DevOps practices including CI/CD pipelines, Infrastructure as Code, and containerization.
- Manage SQL Server and MongoDB databases.
- Deploy and manage VoIP systems based on Asterisk and Skype for Business.
- Implement and manage Citrix XenApp and XenDesktop environments.
- Deploy and manage firewalls and WAFs.
- Use Veeam and Altaro VM Backup for backup and disaster recovery solutions.
- Provide Level 2 and 3 technical support in English/French for complex incidents.
Skills Acquired:
- Expertise in administering Windows systems and Cloud services.
- Skills in automation and system performance management.
- Ability to resolve complex technical incidents.
Significant Projects:
- Migrated messaging services to Office 365, enhancing collaboration and security.
- Deployed an automated server performance reporting system, increasing operational visibility.
- Implemented CI/CD pipelines to accelerate software development and deployments.
- Developed automation scripts for user and permission management, reducing manual tasks by 40%.
- Systems (Windows Server, Redhat/Centos)
- Cloud Computing (Azure, AWS, GCP)
- Automation & Scripting (PowerShell, Bash, Terraform)
- Infrastructure & Virtualization (Hyper-V, VMware, Citrix)
- Databases (SQL Server, MongoDB, MySQL, PostgreSQL)
- Security (Quest Auditor, IT Audit, PKI, IPS/IDS, Centralized Antivirus, Captive Portal)
- Containerization (Docker, Kubernetes)
- Monitoring (Centreon, Nagios, Kibana)
- Backup (Synology, Veeam, NetBackup)
UPM Marrakech April 2015 - December 2019
Marrakech, Morocco
- Deploy and optimize system infrastructure.
- Manage user accounts and permissions.
- Configure firewalls, proxy servers, and antivirus solutions.
- Administer NAS storage servers and VoIP systems.
- Manage backups and restoration procedures for business continuity.
- Supervise the local network (LAN) and manage WAN connections.
- Implement network security policies and monitor potential threats.
- Provide end-user support and manage technical incidents.
- Configure and manage network equipment such as routers and switches.
Skills Acquired:
- Expertise in systems and network management.
- Skills in network security and equipment management.
- Ability to provide technical support and problem resolution.
Significant Projects:
- Redesigned the network infrastructure, improving performance and security.
- Deployed a VoIP solution to enhance internal communications, reducing communication costs.
- Implemented automated backup solutions, ensuring business continuity in case of disasters.
- Configured and managed advanced network equipment to optimize connectivity and security.
- Systems (Windows Server, Ubuntu/Centos)
- Infrastructure (Windows Server, Hyper-V, VMware)
- Security (Centralized Antivirus (Kaspersky, Firewalls (Netgate/Fortigate), IPS/IDS, Captive Portal ...)
- VoIP (Asterisk, Alcatel PBX)
- Networks (Cisco Routers/Switches, HP)
- Databases (SQL Server, Access, MySQL)
- Scripting (Bash)
- Monitoring (Nagios)
- Backup (Synology, Veeam, NetBackup)
Testimonials
Key Technical Skills
Installation, Configuration, and Systems Administration
- Windows Server 2003-2019 (GPO, PSO, DNS, DHCP, SCCM, SCVMM, WSUS, DFS, RADIUS, Active Directory)
- Linux (Ubuntu, CentOS, Red Hat, Debian...)
- Authentication and access management with LDAP and Active Directory
Automation & Scripting
- PowerShell, Python, Bash
- Workflow management with Okta, YAML
- Task automation with Ansible, Terraform
- Creating custom scripts for continuous integration
Virtualization
- Nutanix HC, VMware vSphere, Microsoft Hyper-V, Citrix XenServer
- Container management with Docker, Podman, Kubernetes
DevOps & Cloud
- CI/CD: Jenkins, GitLab CI, Azure DevOps, ArgoCD, Digital AI Release
- Infrastructure as Code: Terraform, Ansible
- Containerization & Orchestration: Docker, Kubernetes, OpenShift, Podman, Helm
- Cloud Platforms: Azure, GCP, IBM Cloud, AWS, MongoDB Atlas
- Monitoring & Logging: Dynatrace, Kibana, Prometheus, Grafana, ELK Stack ...
- Secret Management: PKI server, HashiCorp Vault, Azure Vault, AWS Secrets Manager ...
- Deployment Automation: ArgoCD, Digital AI Release
FinOps & Cloud Governance
- Cost Management: Azure Cost Management, AWS Cost Explorer, GCP Cost Management
- Cloud Governance: Frameworks, policies, standards and compliance
- Cost Optimization: Rightsizing, Reserved Instances, Savings Plans, Spotting
- Dashboards & Reporting: FinOps dashboards, budgets, alerts
- Cloud Architecture: IaaS, PaaS, SaaS patterns, microservices, serverless, hybrid cloud, landing zones
- Compliance & Audit: Architecture reviews, compliance controls, technical audits
Security
- SOC (Sekoia, Microsoft Defender for Cloud/Office 365, Azure SC)
- Bastion (Wallix), Centralized Antivirus (Kaspersky, Bitwarden, ESET Security)
- SOC for Active Directory (Quest Auditor, Azure AD Security)
- Identity and Access Management (IAM, Okta, Azure AD, LDAP)
- Encryption and Key Management (Hashicorp Vault, PKI server, Azure Vault)
- Vulnerability Management and Penetration Testing (Metasploit, Loader, Shodan, Ms Defender for Cloud)
- Implementing security policies and regulatory compliance
Methodologies
- Agile, Scrum, Kanban
- Site Reliability Engineering (SRE) Principles
- Project Management
Network
- Firewalls (Netgate, Fortinet, Forcepoint, Palo Alto, Cisco ASA)
- Routing & Switching (CISCO, HP, Huawei)
- Managing ACLs, VPNs (IPSec, SSL), DHCP, DNS, Load Balancing (F5, HAProxy), Content Switching
- Proxy, Reverse Proxy (Netscaler, NGINX, Apache, Squid)
- Web Filtering, Antivirus (ClamAV), IPS, IDS (Snort, Suricata)
- Optimizing network performance and resolving connectivity issues
Databases
- MongoDB & MongoDB Atlas (Cloud)
- MySQL, PostgreSQL, Microsoft SQL Server, Oracle Database
- Implementing data backup and replication strategies (Repmgr)
Version Control & Collaboration
- Git, GitHub, GitLab
- Project management and collaboration tools: Jira, Confluence, ServiceNow, Kayako, Asana
- Continuous Integration and Continuous Deployment (CI/CD)
- Managing code reviews and branching for efficient development
VoIP & Unified Communications
- Asterisk, Elastix, FreePBX
- SIP, RTP protocols and VoIP fundamentals
- Voice features and integration with Microsoft Teams, Zoom, Slack
- Managing IP telephony systems and virtual PBXs
- Implementing real-time conferencing and collaboration solutions
Backup & Disaster Recovery
- VEEAM, HYCU Backup, Altaro, Azure Backup
- Disaster Recovery Plans (DRP) and Business Continuity Planning (BCP)
- Automating backups and restoration testing
- Implementing redundant backup solutions to ensure data availability
Storage
- NetApp, Dell EMC, HPE Storage Solutions
- SAN, NAS Technologies (Synology, FreeNAS, QNAP)
- Managing cloud storage solutions (AWS S3, Azure Blob Storage, Google Cloud Storage, IBM Cloud Object Storage)
- Optimizing performance and data management
- Implementing effective storage strategies for different types of data