Operate reliably
Support physical and virtual servers, LAN/Wi-Fi, workplace and factory technology, storage, and core Windows services.
Azure cloud engineering portfolio
Infrastructure Engineer transitioning into Azure Cloud Engineering
I operate factory and enterprise infrastructure across servers, identity, L2/L3 networking, virtualization, security, backup, and recovery. I am applying that operations foundation to Azure administration, cloud networking, monitoring, and infrastructure automation.
Professional profile
My experience spans on-premises and hybrid environments where availability, secure access, clear troubleshooting, and recoverability matter. The next step is focused: Azure administration and cloud infrastructure roles that benefit from that operational context.
Support physical and virtual servers, LAN/Wi-Fi, workplace and factory technology, storage, and core Windows services.
Work with segmentation, firewalls, access controls, patching, backup validation, recovery testing, and disaster recovery planning.
Build automation capability through PowerShell and Azure CLI training, Bash labs, compiled Bicep, Git, and GitHub Actions.
Selected engineering work
Each project links to code or documentation. Status labels distinguish deployed work, lab implementations, and future plans.
Azure hosting · CI/CD · Compiled Bicep definition
A low-cost static portfolio hosted on Azure Static Web Apps with GitHub Actions delivery, a compiled Bicep resource definition, security headers, and documented architecture decisions.
Publish a maintainable portfolio on an Azure service without adding a framework, server, database, or unnecessary build stage.
Configured push deployment, pull-request preview lifecycle, direct static upload, and runbooks. Added a Free-tier Bicep definition after Portal provisioning; it compiles locally but has not been applied to production.
Applies a restrictive content security policy, HSTS, MIME sniffing protection, framing protection, referrer controls, and limited browser permissions.
A live Azure-hosted portfolio with automated delivery and reviewable configuration. The existing Azure resource has not yet been reproduced or managed through the Bicep definition.
Azure networking · Private Link · Bicep · GitHub Actions
An original, private-by-default Azure network foundation expressed as modular Bicep. Repository automation validates the templates and shell tooling; Azure deployment and runtime evidence remain pending until an authorized subscription is available.
Animated delivery path
Creates hub, application, and data VNets with bidirectional peering connections, subnet-level controls, centralized private DNS, and private storage access.
Deployment scripts verify the active subscription, run validation and Resource Manager what-if, require confirmation, and use ownership-checked teardown.
Bicep, parameters, Bash, PowerShell, links, and secret scanning pass in GitHub Actions. Azure deployment and runtime evidence remain pending.
Identity · Linux · Automation
A documented, script-driven lab for provisioning Samba Active Directory Domain Services on Ubuntu 24.04 with internal DNS, Kerberos, organizational units, user creation, and repeatable verification steps.
Ordered Bash scripts cover prerequisites, package installation, domain provisioning, DNS forwarding, object creation, and service checks.
Documentation covers time synchronization, DNS and Kerberos tests, SYSVOL/NETLOGON checks, password prompting, and common failure modes.
Code and documentation are published as a lab implementation; no production deployment or business environment is claimed.
Professional experience
Responsibilities are condensed from the CV and emphasize infrastructure, networking, security, recovery, and cross-functional delivery without invented metrics.
Electrolux Group
–Present
Aegis
–
Technical capability
Each list identifies its evidence source so training, CV-listed capability, and repository implementation are not presented as equivalent.
Repository-proven implementation
Azure Static Web Apps, compiled Bicep resource definition, GitHub Actions, Git, Bash automation, Samba AD DC lab
Technical skills listed in CV
Azure VMs, VNets, Storage Accounts, Microsoft Entra ID, RBAC, NSGs, Azure Backup, Azure Monitor, Azure CLI, PowerShell, Microsoft 365 administration
Professional responsibilities in CV
Physical and virtual server operations, Active Directory Domain Services, Group Policy, domain trusts, and server security configuration
Professional responsibilities in CV
L2/L3 switching, fiber, LAN/WAN, Wi-Fi, Cisco switching and firewalls, VLAN segmentation, traffic monitoring, and network troubleshooting
Professional responsibilities in CV
VMware ESXi, Proxmox, Dell PowerScale, RAID, SQL Server and Oracle operations, backup and recovery testing, and DR planning
Additional technical skills listed in CV
Windows Server 2016/2019/2022, DNS, DHCP, DFS, File Services, RDS, vCenter, Hyper-V, Proxmox PBS, Veeam, IBM SAN, NAS, VPN, NAT, Cisco ISE, FortiGate, Sophos
Credentials, training & education
Academy program completion and digital course badges are shown separately. They are not presented as proof of passing a vendor certification exam.
The available public evidence confirms academy program completion and Cisco Networking Academy course badges. No vendor exam verification ID is published here, so Microsoft, CCNA, Fortinet, and Veeam tracks are described only as training objectives.
IT Gate Academy · 220 credit hours · Grade: Very Good
–
Training tracks covered CCNA 200-301, MCSA Windows Server 2019, AZ-900, AZ-104, AZ-500, AZ-700, and Veeam VMCE objectives.
View course-completion PDF
IT Gate Academy · 240 credit hours · Grade: Very Good
–
Training tracks covered CCNA 200-301, MCSA Windows Server 2019, and Fortinet NSE 4 objectives.
View course-completion PDFPublic Credly records from Cisco Networking Academy:
Education
El Shorouk Academy · Al Shorouk City, Cairo
–
Contact
I am targeting Azure Cloud Engineer, Azure Administrator, Cloud Infrastructure, Hybrid Cloud, and infrastructure automation roles.