YB
Available

Senior DevOps Engineer · Cloud Solutions Architect · SRE

Whatever you're shipping, I build the platform underneath it.

Yahia Mohamed Benabbou. Four years designing, migrating and operating production infrastructure across AWS, Azure, Oracle Cloud and on-premises estates — from Kubernetes fleets and CI/CD platforms to GPU compute and multi-cloud migrations. Available for contract and consulting work, remote from Rabat on European hours.

Roles I take

  • DevOps Engineer
  • Platform Engineer
  • Site Reliability Engineer
  • Cloud Solutions Architect
  • DevSecOps Engineer
  • Cloud Infrastructure Engineer
99.9%Service availability
across production estates
−70%Provisioning time
Terraform + Ansible
50+Kubernetes clusters
under management
15+Cloud & platform
certifications

Selected work

Six environments. One job: make it run, then keep it running.

Client names are withheld under NDA. Architecture, scope and outcomes are available in detail on a call.

Delivery platformSaaS & media
2026

One CI/CD platform for thirty-plus microservices

Replaced fragmented per-team pipelines with a centralised, templated delivery platform for a global SaaS analytics product. Security scanning, dependency checks and policy gates run on every build, so problems surface at merge time rather than in a quarterly audit.

Azure DevOps · Jenkins · GitHub Actions · SAST/SCA · HashiCorp Vault · Helm

+60%deployment frequency

−80%vulnerabilities reaching production

95%findings remediated pre-production

Sovereign cloudPublic sector
2025

Morocco's first Compute Cloud@Customer deployment

Delivered the country's first full-rack Oracle C3 installation alongside Oracle's architects, then onboarded ten-plus state institutions and financial organisations onto the platform — workloads that legally could not leave national territory.

OCI Compute Cloud@Customer · Terraform · Ansible · OCI DevOps · GitHub Actions

10+institutions onboarded

1stC3 deployment in the country

100%data residency maintained

Compute platformAI & GPU
2025

GPU clusters for inference and compute-intensive workloads

Built and tuned NVIDIA GPU environments on OCI for rendering, simulation and large-model inference — autoscaling, network and topology tuning, and monitoring dashboards that make expensive silicon accountable per workload.

OCI GPU shapes · NVIDIA · vLLM · Kubernetes · Terraform · OCI Monitoring

Scaleautoscaled multi-node GPU fleet

Costper-workload attribution and tuning

ISO27001 / PCI DSS certified facility

MigrationBanking & fintech
2024 – 2026

Core workloads off VMware, onto multi-cloud

Led migration of core banking and fintech applications from on-premises VMware estates to OCI and AWS. Designed the landing zones, network topology and cutover runbooks, then ran the cutovers — in an environment where an outage is a regulatory event.

OCI · AWS · VMware · Terraform · Ansible · OKE

−35%infrastructure cost after migration

99.9%availability held through cutover

0unplanned outages from migration

Platform engineeringMulti-tenant
2023 – 2026

Kubernetes at fleet scale, with the observability to prove it

Designed and ran a production Kubernetes platform spanning fifty-plus clusters with automated lifecycle management, golden-path Helm charts and a shared observability stack. Teams ship to it without filing a ticket.

Kubernetes · Helm · Istio · Prometheus · Grafana · Loki · ELK

50+clusters, automated lifecycle

SOC 2controls implemented and evidenced

−70%request to running environment

Product engineeringUK, remote
2022 – 2024

Full-stack product work, then the pipelines to ship it

Built and maintained cloud-native applications in Node.js, React and Next.js for a London product team, then took over delivery: CI/CD, AWS infrastructure and automated testing. The reason platform work I do lands with developers instead of at them.

Node.js · React · Next.js · GitLab CI · AWS (EC2, S3, RDS) · MySQL

+25%application performance

CI/CDintroduced from scratch

SASTand dependency scanning in-pipeline

How I work with clients

Four things I get hired to do.

I take engagements where the infrastructure has to keep working while it changes. Discovery call first, written scope second, no exceptions.

Migration & landing zonesGet onto cloud without a bad quarter

Assessment, target architecture and execution for moves from on-premises or VMware onto AWS, Azure or OCI. Multi-account structure, network design, identity baseline, cost guardrails, and a cutover plan you can hand to an auditor.

  • Landing zone
  • VMware exit
  • Cutover runbooks
  • Cost guardrails

Platform & KubernetesGive your engineers a paved road

Production-grade clusters, GitOps delivery, reusable Terraform modules and an internal developer platform, so teams provision what they need themselves with the guardrails already baked in.

  • EKS · AKS · OKE
  • GitOps
  • Helm golden paths
  • Autoscaling

Reliability engineeringMake the pager quieter

SLIs, SLOs and error budgets that mean something. Observability across logs, metrics and traces. Incident response, blameless postmortems, capacity planning and tested disaster recovery — not a DR document nobody has opened.

  • SLO design
  • Prometheus · Grafana
  • Incident response
  • DR testing

DevSecOpsMove security left, for real

Security gates inside the pipeline instead of bolted on after: IaC scanning, container and dependency analysis, secrets management, policy-as-code, and a remediation workflow engineering teams will actually follow.

  • Pipeline gates
  • IaC scanning
  • Vault · KMS
  • Policy-as-code

Engagement models  —  4–12 week delivery projects  ·  fractional platform lead, 2–3 days per week  ·  architecture review and advisory retainer
Working hours  —  Rabat, GMT+1. Full overlap with European teams, morning overlap with US East.
Languages  —  English · French · Arabic  ·  on-site across EMEA on request.

Working stack

Tools I have run in production, not just read about.

Cloud platforms

AWS (EC2, EKS, Lambda, RDS, Aurora, DynamoDB, S3, VPC, IAM, CloudWatch, Step Functions) · Azure (VMs, AKS, Storage, Monitor, Azure DevOps) · Oracle Cloud Infrastructure · Compute Cloud@Customer · GCP

Containers & orchestration

Kubernetes · Docker · EKS · AKS · OKE · ECS · Fargate · OpenShift · Rancher · Helm · Istio · microservices architecture

Infrastructure as code

Terraform (modules, remote state, multi-environment) · Ansible · AWS CloudFormation · AWS CDK · immutable infrastructure · configuration drift elimination

CI/CD & delivery

Azure Pipelines · Jenkins · GitHub Actions · GitLab CI · OCI DevOps · GitFlow · progressive delivery · deployment automation

Observability

Prometheus · Grafana · Loki · ELK and Elasticsearch · Kibana · CloudWatch · AWS X-Ray · OpenSearch · Azure Monitor · SLI and SLO instrumentation

Security & networking

IAM and least privilege · HashiCorp Vault · AWS KMS and Secrets Manager · Zero Trust principles · vulnerability scanning · VPC design · ALB and NLB · NGINX · HAProxy · security groups and NACLs

Data & streaming

Kafka and event-driven architecture · RDS (MySQL, PostgreSQL) · Aurora · DynamoDB · MongoDB · Redis · S3 and Azure Blob · high-throughput ingestion pipelines

Compute & virtualisation

VMware and on-premises estates · KVM · NVIDIA GPU shapes · HPC and bare metal · capacity planning · hybrid connectivity · datacenter operations

Languages & practice

Python · Bash · JavaScript and Node.js · Java · React and Next.js · Site Reliability Engineering · Agile and Scrum · Jira and Confluence · architecture documentation and runbooks

Credentials

Fifteen-plus certifications across four clouds.

Engineering degree in Networks, Systems and Programmable Services — École Nationale des Sciences Appliquées, Marrakech.

AWS Certified DevOps Engineer Professional · Amazon Web Services

AWS Certified Solutions Architect Associate · Amazon Web Services

AWS Certified Developer Associate · Amazon Web Services

Certified Kubernetes Administrator (CKA) Linux Foundation · CNCF

Kubernetes & Cloud Native Associate (KCNA) Linux Foundation · CNCF

HashiCorp Certified: Terraform Associate 003 · HashiCorp

Azure Network Engineer Associate · Microsoft

OCI Security Professional Oracle

OCI Architect Professional Oracle

OCI DevOps Professional Oracle

OCI Operations Professional Oracle

OCI Observability Professional Oracle

OCI Foundations Associate ×3 Oracle

Oracle Cloud Data Management & AI Foundations Oracle

References

People who have shipped alongside me.

"It has been a great pleasure working with Yahia. A great professional with extraordinary technical skills."
Stéphane GuelfoSVP Business Solutions — Cloud Transformation,
Sovereign Cloud, GPU & AI Platforms
"Yahia has an exceptional ability to get to the bottom of any problem his team faces, whether technical or human. That is rare in one person, especially combined with how business-oriented he is given his level of technical expertise."
Salwa El OuattabCloud Security Engineer — AWS ×2, AZ-500, SC-100
"J'ai collaboré avec Yahia dans un contexte exigeant où performance et réactivité étaient essentielles. Son expertise dans le domaine du cloud et sa capacité à travailler efficacement en équipe ont contribué de manière significative au succès de nos projets."
Soukaina HilaliFRIT Project Manager — PMP, PRINCE2 V7,
Scrum Master, COBIT 5, ITIL V3

Contact

Tell me what is breaking, or what you are about to build.

I reply to every serious enquiry within one working day. If your problem is outside what I do well, I will say so and point you somewhere better.

Based in
Rabat, Morocco  ·  GMT+1  ·  remote-first, EMEA on-site on request
Status
Taking on contract and consulting engagements