Seifeddine Lamrimed

Cloud & DevSecOps Engineer

Helping companies build secure and scalable cloud infrastructure across AWS, Azure and GCP.

View My WorkGet In Touch
Seifeddine Lamrimed

About Me

Cloud and DevSecOps engineer with experience delivering secure infrastructure for enterprise clients across fintech, energy, automotive and telecom sectors.

Cloud Infrastructure

Designed and delivered end-to-end cloud environments across AWS, Azure and GCP from networking and access control to compute and storage across enterprise clients.

Security & Compliance

Embedded security across the full stack from access control and encryption to runtime protection and audit readiness. Delivered ISO 27001 compliance for production environments.

CI/CD & GitOps

Built secure delivery pipelines with security controls baked in from the start. Implemented GitOps workflows enabling automated, auditable deployments across multi-environment setups.

Monitoring & FinOps

Built observability stacks enabling proactive alerting and reduced detection time across production environments. Optimized cloud spend through rightsizing, commitment-based pricing and architectural improvements.

Selected Work

ISO 27001 Readiness: Secure Delivery Pipeline
Fintech

ISO 27001 Readiness: Secure Delivery Pipeline

Security controls built into the delivery process of a payments platform

Key Achievements

—Enforced pipeline security gates with blocking severity thresholds across all pipelines
—Rolled out OPA Gatekeeper policy enforcement across Kubernetes workloads
—Moved secrets management to HashiCorp Vault with dynamic credentials and rotation
AWSKubernetesTerraformGitLab CIFluxCDTrivyOPA GatekeeperVault
Case Study →
Shared Terraform Module Library for a Data Platform
Telecommunications

Shared Terraform Module Library for a Data Platform

One reviewed security baseline for every team's data lake resources

Key Achievements

—Replaced independently written Lambda, S3 and Glue definitions with one maintained standard
—Set up a model where one hardening fix updates every team's infrastructure
—Reduced the review surface for these resource types from one implementation per team to one shared module
AWSTerraformLambdaS3GlueStep Functions
Case Study →
Terraform Drift Detection and Recovery
Energy

Terraform Drift Detection and Recovery

Bringing a large application portfolio back in line with its infrastructure code

Key Achievements

—Recovered more than 30 applications containing multiple instances of drift
—Documented a remediation process the team now uses as its standard
—Added automated alerting so new drift is caught early
AWSTerraform
Case Study →
ECS Platform and DevSecOps Pipeline for an Event Streaming Service
Energy

ECS Platform and DevSecOps Pipeline for an Event Streaming Service

Infrastructure, pipeline and security baseline for a new Kafka-based platform

Key Achievements

—Delivered the ECS cluster and task definitions fully in Terraform
—Built the DevSecOps pipeline used for ongoing deployments
—Enabled Security Hub so findings were visible from launch
KafkaAWS ECSTerraformAWS Security HubAWS WAF
Case Study →

Tools & Technologies

Cloud Platforms

AWSAzureGCPAWS Secrets Manager

Container Orchestration

KubernetesDockerHelmArgoCDFlux CDDocker SwarmECS

Infrastructure as Code

TerraformAtlantisCloudFormationARM TemplatesAnsible

CI/CD & Automation

GitLab CI/CDGitHub ActionsJenkinsAzure DevOps

Monitoring & Observability

PrometheusGrafanaDatadogELK StackCloudWatch

Security & Compliance

HashiCorp VaultOPA GatekeeperKyvernoGuardDutyWAFTrivySnykSemgrepGitleaksISO 27001SOC 2PCI DSS

Programming & Scripting

PythonBashPowerShell

Databases

PostgreSQLMySQLDynamoDBMongoDBRedis

Contact

Get In Touch

Open to discussing cloud infrastructure, DevSecOps challenges and compliance engagements.

LinkedIn

Connect on LinkedIn

Email

Send me an email

Or email directly at contact@seiflamrimed.com