╔═════════════════════════════════════════════════════════════════════════════════╗
║ Junior DevOps & Observability Engineer based in Cairo, Egypt. ║
║ Hands-on experience in Linux Administration, Web Server Deployments ║
║ (Nginx / WordPress / Apache / PHP-FPM), Network Fundamentals (CCNA / Network+), ║
║ Docker Containerization, and Prometheus & Grafana Observability Stacks. ║
╚═════════════════════════════════════════════════════════════════════════════════╝
- Linux System Administration: Deep hands-on experience with Linux OS (Ubuntu/Debian, Alpine), service control (
systemctl), user management, file permissions, SSH hardening, and Bash scripting. - Web Server & Stack Deployments:
- Deployed production-ready Nginx reverse proxy setups with WordPress & MySQL 8.0 in modular container environments.
- Deployed & configured Apache (HTTPD) web server paired with PHP-FPM for dynamic PHP application execution.
- Networking Fundamentals: Solid groundwork based on CompTIA Network+ & Cisco CCNA (TCP/IP stack, OSI layers, IPv4/v6 Subnetting, VLANs, DNS, DHCP, Routing & Switching, NAT, Firewall ACLs).
- Observability & Monitoring: Building modular container monitoring stacks using Docker Compose, Prometheus, Alertmanager, and Grafana.
Production-Grade Enterprise Observability & Monitoring Infrastructure
- Modular Architecture: Decoupled Compose stacks for standalone Nginx (
docker-compose.nginx.yml) and WordPress/MySQL 8.0 (docker-compose.wordpress.yml). - Automated Provisioning: Grafana datasources (
http://prometheus:9090) and pre-loaded JSON dashboards with zero manual GUI setup. - Alerting & Silencing: Failover alert rules for service outages and Alertmanager silencing workflows for maintenance windows.
- Quality Assurance: GitHub Actions CI verification pipeline, executable health check scripts, and failure injection testing.
Automated Linux Server Administration, Process Monitoring, and Maintenance Scripts
- User Provisioning: Automated user account creation, group assignment, shell settings, and SSH permissions (
user_management.sh). - Resource Diagnostics: Inspection script analyzing CPU idle limits, RAM usage, and disk threshold alerts (
systemhealthcheck.sh). - Service & Backup Management: Production
systemdunit files and retention backup rotation scripts (backup_rotation.sh).
Production Web Server Configurations for Nginx, WordPress, Apache, and PHP-FPM
- Nginx Architecture: Virtual Host setup with FastCGI PHP pass-through, gzip compression, security headers, and
/stub_statusmetrics path. - Apache Integration: VirtualHost configuration with
mod_proxy_fcgihandler for PHP-FPM pool processing (127.0.0.1:9000). - Config Validation: Automation script for pre-reload syntax validation (
verify_configs.sh).
UFW Firewall Hardening, IPv4 Subnet Calculator, and DNS Diagnostics
- Firewall Hardening: Shell script enforcing default-deny ingress policies, port 22 SSH rate limiting, and web traffic rules (
firewall_hardening.sh). - Subnet Calculator: Python CLI tool for IPv4 CIDR subnetting, netmask calculations, and host boundary definitions (
subnet_calculator.py). - DNS Diagnostics: Resolution testing script inspecting A, MX, NS, and query latency (
zone_test.sh).
A hands-on introduction to deploying and operating a local Kubernetes workload
- Core Resources: Kubernetes Namespace, ConfigMap, Deployment, and ClusterIP Service manifests for a sample Nginx site.
- Operations Practice: Guided exercises for inspecting Pods and logs, scaling replicas, replacing a Pod, and rolling out an image update.
- Local Setup: Instructions for using Docker Desktop Kubernetes or Minikube, with
kubectlcommands and cleanup steps.
- Current Learning Path:
- Kubernetes (K8s): Building on Namespace, ConfigMap, Deployment, Service, scaling, and rollout fundamentals with Pod scheduling, Ingress, StatefulSets, and Helm.
- Terraform (IaC): Cloud Infrastructure Provisioning, HCL Code Modules, State Management.
- Advanced Observability: OpenTelemetry (OTel) Collector & Grafana Loki Log Aggregation.
- Career Goal:
- Joining a high-performance DevOps / SRE team to build resilient infrastructure, optimize CI/CD pipelines, and maintain high service availability.