IT Infrastructure Engineer · Cloud Infrastructure · Azure Cloud Administrator
Cairo, Egypt · Portfolio · LinkedIn · Download CV
I support enterprise and factory infrastructure across Windows Server, identity, networking, virtualization, security, storage, backup, and recovery. I am building on that operations foundation with hands-on Azure administration, networking, governance, monitoring, and infrastructure-as-code labs.
Repository status is evidence-based: authored or CI-validated lab work is not presented as an Azure deployment or production cloud experience.
- Azure and automation: Azure administration, VNets, NSGs, Private Link, Private DNS, Monitor, Backup, Azure CLI, Bicep, PowerShell, Bash, and GitHub Actions
- Identity and Microsoft cloud: AD DS, Group Policy, DNS, DHCP, Microsoft Entra ID, RBAC, and Microsoft 365 administration
- Systems and virtualization: Windows Server, Linux, VMware ESXi and vCenter, Hyper-V, and Proxmox VE
- Networking and security: L2/L3 switching, VLANs, routing, VPNs, Cisco, FortiGate, Sophos, OT segmentation, and security hardening
- Resilience and operations: Veeam, storage, backup and recovery testing, disaster-recovery planning, and incident troubleshooting
Subscription-scoped Bicep for audit-first Azure Policy, bounded RBAC, budgets, resource locks, and guarded Bash and PowerShell lifecycle operations.
Evidence status: authored, linted, compiled, offline-tested, and repository
CI validated. Authenticated Azure validation, what-if, deployment, policy
evaluation and remediation, teardown, and cost evidence remain pending.
Read the case study.
Modular Bicep for segmented hub, application, and data networks with Private Link, Private DNS, monitoring, cost controls, validation paths, and ownership-aware cleanup.
Evidence status: repository CI validates the offline implementation.
Authenticated Azure validation, what-if, live deployment, runtime
connectivity, teardown, and cost evidence remain pending.
Read the case study.
A deployed, dependency-light portfolio with semantic HTML, restrictive security headers, a Bicep infrastructure definition, automated validation, and GitHub Actions delivery.
Open the live portfolio · Review the architecture
Guarded Ubuntu 24.04 automation for first-forest Samba AD DS, internal DNS, Kerberos, signed time, verification, backup, and isolated recovery planning.
Evidence status: repository CI validates static and failure-guard checks. Live provisioning, runtime authentication, recovery, rollback, and teardown evidence remain pending. Read the case study.
- IT Infrastructure Analyst · Electrolux Group · Mar 2026–Present — factory and office server, network, Wi-Fi, workplace, virtualization, security, OT segmentation, and cross-functional infrastructure operations.
- IT Infrastructure and Systems Specialist · Aegis · Jun 2025–Jan 2026 — Windows Server, Active Directory, networking, firewalls, VMware and Proxmox, storage, databases, backup, recovery testing, and disaster-recovery support.
- IT Specialist · El Mostafa for Master Batch · Jul 2022–Apr 2024 — Active Directory, DNS, DHCP, file services, LAN support, workstation administration, incident handling, asset tracking, and infrastructure documentation.
- Azure Cloud Engineering Program · IT-Gate Academy · Dec 2024–Jun 2025 — 220 hours; Azure coursework aligned with AZ-900, AZ-104, AZ-500, and AZ-700, plus Veeam VMCE and refresher CCNA/MCSA curricula.
- IT Infrastructure Program · IT-Gate Academy · Jan–Apr 2024 — 240 hours; coursework covering CCNA, Windows Server administration, Fortinet NSE 4, and Sophos Firewall.
- BSc in Management Information Systems · El Shorouk Academy · Aug 2019–Sep 2023
These items describe academy training and coursework; no vendor certification is claimed.
I am targeting Azure Cloud Administrator, Azure Infrastructure Engineer, Cloud Infrastructure Engineer, Cloud Operations Engineer, and Azure-focused infrastructure automation roles.

