Building secure-by-design infrastructures at the crossroads of network engineering, DevOps automation, and software development. I don't just deploy systems — I harden them.
Final-year EPITA student specialising in network security and infrastructure. I build and secure cloud-native environments, automate deployments with a security-first mindset, and develop robust backend tooling.
I'm a network-focused security engineer in my 3rd year at EPITA, on the SRS (Systèmes, Réseaux, Sécurité) track. My work sits at the crossroads of network security, infrastructure automation and software development — designing resilient systems from the ground up.
I approach infrastructure with a SecDevOps mindset: containerised environments, hardened CI/CD pipelines, network segmentation and automated compliance. I'm equally comfortable writing backend tooling as I am configuring routing protocols or auditing a Kubernetes cluster.
Security is woven into every layer of the stack. I'm actively looking for a PFE internship in infrastructure security, SecDevOps or network engineering.
Third-year student at EPITA Paris (SRS track, graduating 2027), I specialise in network security, cloud infrastructure and DevOps engineering. I design and operate environments where security is integral to every architectural decision.
My practical experience spans container orchestration with Kubernetes, infrastructure-as-code with Terraform and Ansible, CI/CD pipeline hardening and network protocol analysis — complemented by solid C and Python development skills built through demanding EPITA projects.
I am currently seeking a six-month end-of-studies internship (PFE) in infrastructure security, SecDevOps or network engineering, available from early 2025.
Large-scale team project (6 students, 6 months). Designed and built a modular security audit platform: automated vulnerability scanning, asset inventory, CVE correlation engine and a web dashboard. Deployed on a hardened Kubernetes cluster with full GitOps workflow and a secured CI/CD pipeline.
VIEW REPOSITORYDesigned and deployed a full enterprise network topology from scratch: multi-site OSPF/BGP routing, VLAN segmentation, redundant firewalls (pfSense), IPSec VPN tunnels, RADIUS authentication and a centralised Syslog/SIEM. Simulated in GNS3, then deployed on physical rack hardware.
VIEW DOCUMENTATIONFull implementation of a mail server stack in C: SMTP relay and submission, IMAP4 server, local delivery agent, and a CLI client. Security features include TLS 1.3 (mbedTLS), SPF validation, DKIM signing and per-user mailbox sandboxing with privilege separation.
VIEW REPOSITORYReal-time intrusion detection system in C using libpcap. Custom rule engine detecting port scans, ARP spoofing and DNS tunneling. Supports Snort-compatible rule syntax, JSON alert output and a live ncurses dashboard. Deployed on the EPITA campus lab network.
VIEW REPOSITORYSeeking a PFE internship (6 months) in infrastructure security, SecDevOps or network engineering. Open to full-time roles from 2027. I am looking for a six-month end-of-studies internship in infrastructure security, SecDevOps or network engineering, starting early 2025. Happy to discuss any opportunity.