$ whoami

Karim
El Atfy

Cloud & Infrastructure Engineer @ Politecnico di Milano Open to opportunities

Computer Engineering student at PoliMi. I don't wait to be hired to start building — I deploy real Azure infrastructure, break things on purpose, fix them, and move on to something harder.

AZ-900

Microsoft Certified

5+

IaC Projects on Azure

PoliMi

Computer Engineering

scroll

About Me

Building demonstrable cloud skills before anyone gives me the chance to — one real deployment at a time.

I'm a Computer Engineering student at Politecnico di Milano, and my goal is simple: build practical, demonstrable cloud skills early — before anyone asks me to.

I focus on Azure Cloud Engineering, Infrastructure as Code with Terraform, and Linux system administration. Every project in my portfolio is deployed on real Azure infrastructure, follows a clear progression in complexity, and applies patterns I'd actually use in production.

Currently preparing for AZ-104 and CCNA while pushing toward more advanced infrastructure: private networking, observability stacks, modular IaC, and security-first design from day one.

I speak Italian (native), English (C1), and French (conversational) — and I'm actively looking for internships and junior cloud roles.

// Tech Stack

Azure Terraform Linux Bash Networking NSG / Security Git / GitHub cloud-init Nginx ARM / Bicep SSH Python Docker Kubernetes GitHub Actions Container Apps ACR Key Vault Managed Identity OIDC App Insights Log Analytics Checkov Trivy FastAPI
karim.json
{
  "name": "Karim El Atfy",
  "location": "Milan, Italy",
  "university": "Politecnico di Milano",
  "degree": "Computer Engineering",
  "focus": [
    "Cloud Engineering",
    "Infrastructure as Code",
    "Linux Administration",
    "Networking & Security"
  ],
  "certifications": {
    "AZ-900": "passed",
    "AZ-104": "in_progress",
    "CCNA": "in_progress"
  },
  "languages": [
    "Italian (native)",
    "English (C1)",
    "French (conversational)"
  ],
  "available": true,
  "seeking": "junior cloud / internship"
}

Experience

Hands-on professional experience alongside my studies — applying real operational skills in a structured environment.

Administrative & Accounting Support
Furizon APS · Third Sector / Non-profit
2025 – Present Remote

Supporting administrative and accounting operations for a non-profit association of ~500 members that organises yearly events. I handle member records and operational data — registrations, contact details, financial movements, invoices, and reporting. I assist with reconciliation activities to keep recorded operations consistent with bank activity, contribute to balance verification and annual reporting, and help resolve data inconsistencies through direct verification and communication.

Accounting Support Data Reconciliation Member Management Financial Reporting Third Sector / APS

Certifications

Validating hands-on knowledge through industry-recognized certifications — with more in the pipeline.

AZ-900
Microsoft Azure Fundamentals
Passed
AZ-104
Microsoft Azure Administrator
In Progress — 55%
CCNA
Cisco Certified Network Associate
In Progress — 40%

Projects

Real Azure infrastructure built with Terraform — organized as a progressive architecture path from foundational deployments to production-grade DevSecOps platforms.

L1 Foundation L2 Core Infrastructure L3 Secure Architecture L4 Production-Oriented L5 DevSecOps Platform
Azure Terraform Linux VM
L1 Foundation
Foundational IaC deployment: a Linux VM on Azure with custom networking, NSG rules, SSH key access, and automated Nginx provisioning via cloud-init.
Terraform Azure Linux cloud-init NSG Nginx
HCL
Secure Two-Tier Infrastructure
L2 Core Infrastructure
Segmented two-tier Azure environment with management and web subnets, subnet-scoped NSGs, dedicated admin VM, and automated provisioning across multiple VMs.
Terraform Azure VNet Subnet Design ARM64 Multi-VM
HCL
Secure Private Platform
L3 Secure Architecture
Private-first infrastructure design: no public VM IPs, Azure Bastion for secure admin access, Key Vault, Log Analytics, and modular Terraform structure.
Azure Bastion Key Vault Log Analytics Private VNet Modules
HCL
Load Balanced Web Platform
L4 Production-Oriented Pattern
Public Azure Load Balancer fronting two private ARM64 Ubuntu backend VMs, with Bastion admin access, health probes, NSG-based security, and cloud-init automation.
Load Balancer Backend Pool Health Probes High Availability ARM64
HCL

Currently Learning

Always improving, always building. Here's where I'm focused right now.

Azure Administration (AZ-104)

Deepening knowledge of Azure services, identity management, governance, and administration workflows beyond the fundamentals.

Progress0%

Networking (CCNA)

Studying routing, switching, VLANs, subnetting, and core networking protocols — essential for real cloud infrastructure design.

Progress0%

Linux Operations

Building operational confidence with file systems, process management, SSH hardening, and scripting for cloud VM environments.

Progress0%

Terraform Best Practices

Moving toward modular, reusable, production-grade IaC — remote state, workspaces, and enterprise-pattern infrastructure design.

Progress0%

Docker

Building confidence with images, containers, Dockerfiles, networking, volumes, and Compose-based environments for cloud deployment.

Progress0%

Kubernetes

Learning core orchestration concepts — pods, deployments, services, namespaces, and the foundations for running workloads on AKS.

Progress0%

Learning by building,
not just reading.

University gives you theory. Projects give you understanding. Every concept I study, I deploy on real Azure infrastructure. Break it, debug it, understand why, fix it, move to something harder.

I'm a junior, and I'm not pretending otherwise. But I'm building the kind of portfolio that shows what I can already do — and the direction I'm heading.

See My Work on GitHub
01
Real Environments

Every project is deployed on actual Azure infrastructure, not simulated or mocked.

02
Progressive Complexity

Each project builds on the last — from single VM to load-balanced multi-tier platforms.

03
Enterprise Mindset

Adopting security, modular design, and monitoring patterns from the start — not as an afterthought.


Let's Connect

Open to opportunities
and conversations.

Looking for internships, junior cloud roles, or just want to talk infrastructure. Find me on LinkedIn or explore my projects on GitHub.