youssef mastoura cover
youssef mastoura
youssef mastoura

Cloud & DevOps Engineer

Actively looking · Member since 27 Sep 2026
Location
Tunis, Tunisia
Desired salary
Unspecified
Work preference
On-site
Experience level
Junior

About

Professional summary

I am a Cloud and DevOps Engineer with 13 months of internship experience across telecommunications, consulting, and software companies in Tunisia. I specialize in building, operating, automating, and securing cloud-native infrastructure based on Kubernetes and Red Hat OpenShift.

I have hands-on experience with public and private cloud platforms, including Microsoft Azure, AWS, and OpenStack, as well as virtualization technologies such as KVM and libvirt. I enjoy designing reliable infrastructure that supports development teams and production workloads.

I have built and operated OpenShift environments, automated remediation workflows with Event-Driven Ansible, and developed observability stacks using Prometheus, Grafana, Loki, Thanos, and OpenTelemetry. My work has included reducing cluster recovery time from 90 minutes to under 2 minutes through automated root-cause analysis and remediation.

I am experienced in DevSecOps practices, including container image scanning, runtime security monitoring, vulnerability remediation, network isolation, and TLS certificate management. I have integrated tools such as Trivy, Falco, SonarQube, and eBPF-based monitoring into CI/CD and Kubernetes environments.

I also have experience applying FinOps principles to Kubernetes workloads. I developed a Python-based resource optimization tool that identified over-provisioned services and generated right-sizing recommendations, supporting projected compute-cost reductions of more than 30%.

I am certified in Microsoft Azure, AWS, and Cisco technologies, and I am motivated to contribute to Cloud, DevOps, Site Reliability Engineering, and platform engineering teams. I value automation, reliability, security, incident response, and continuous improvement.

Skills

30 capabilities

Tech stack & tools

Working toolkit

Experience

Career history

DevOps Engineer, End-of-Studies Intern LinSoft Tunisia

Built and operated a single-node Red Hat OpenShift cluster for internal services and development workloads on a bare-metal RHEL host using KVM, HAProxy, and dnsmasq. The platform supported 15 to 20 microservices running across 40 to 60 pods.

Designed an autonomous self-healing platform that correlated Prometheus metrics, Loki logs, and Kubernetes events. Used large language model-based root-cause analysis and a 57-task Ansible remediation library across 13 domains through Event-Driven Ansible and Ansible Automation Platform, reducing mean time to recovery from 90 minutes to under 2 minutes across more than 20 validated scenarios.

Engineered a Falco and eBPF runtime security subsystem that scored kernel-level events by priority, novelty, and blast radius. Implemented tiered responses including network isolation, forensic capture, and workload elimination, reducing false-positive security alerts by 60%.

Recovered the cluster following a power outage and dnsmasq DNS failure, restoring all 34 OpenShift operators to healthy status within four hours. Also deployed Thanos to provide long-term metric retention beyond the local Prometheus retention window.

Cloud & DevOps Engineer Intern TDS by Nomios

Owned the container security track on a three-engineer team. Integrated Trivy image scanning into the build pipeline with policies that blocked critical and high-severity CVEs before deployment, hardened base images, and led remediation efforts that reduced critical and high vulnerabilities by 80%.

Authored Kubernetes manifests and Helm charts for services migrated from legacy virtual machines. Managed application configuration declaratively in Git as the single source of truth and built Prometheus and Grafana dashboards that measured 99.5% availability over three months while confirming a 25% infrastructure-cost reduction.

Investigated and traced a vulnerable OpenSSL package that had been included in a shared base image for months. Removed the vulnerability across all dependent container images.

Cloud & DevOps Engineer Intern Tunisie Télécom

Built a Python FinOps tool that collected pod-level CPU and memory metrics across eight nodes and 60 to 80 Kubernetes pods. Applied statistical anomaly detection using 14-day rolling windows and generated automated resource right-sizing recommendations.

Identified services over-provisioned by up to three times their actual consumption. Determined that idle development namespaces with full-size resource requests, rather than production workloads, were the primary source of overspend.

Produced recommendations projecting more than 30% compute-cost reduction. Recommendations were partly adopted after the internship.

Education

Learning history

ESPRIT, School of Engineering and Technology

Engineering Degree, Cloud Computing and DevOps

Engineering degree program focused on Cloud Computing and DevOps.

IPEI Bizerte

Preparatory Cycle for Engineering Studies, Mathematics and Physics

Preparatory engineering studies in mathematics and physics.

This professional hasn’t added portfolio projects yet.

This professional hasn’t listed any services yet.

Jobs Talent AI Tools Salaries
Menu