NAME
Serge Fumey
ROLE
Senior IT Infrastructure Engineer
serge.ks.fumey@gmail.com
PHONE
(+33) 620 42 1080
Serge K.S. Fumey
Senior IT Infrastructure Engineer
Infrastructure Management & Optimization
Cloud & Hybrid Solutions
Digital Strategy
As a results-driven Senior IT Infrastructure Engineer with over 8 years of experience, I specialize in designing, managing, and optimizing robust enterprise IT environments. My expertise spans hybrid cloud infrastructures, cybersecurity compliance, infrastructure automation, and strategic IT infrastructure management, aligning technological innovations with core business objectives.
I've successfully led numerous high-impact projects, including implementing high-availability infrastructures with 99.99% uptime, streamlining complex multi-forest Active Directory migrations, and optimizing virtualization platforms, significantly improving system performance and efficiency. My proven track record includes reducing manual workload by 30% through strategic automation using PowerShell, Terraform, and Bash scripting.
Experience
-
Senior IT System Administrator - Eurobank, Luxembourg, Luxembourg MAR 2023 - PRESENT
- Administer and optimize hybrid Windows and Linux environments, including VMware-based virtual servers, ensuring 99.99% uptime for critical systems.
- Designed and implemented a high-availability IT infrastructure for SEPA Instant Payments, achieving 99.99% uptime and enhancing system reliability.
- Deployed and managed infrastructure at 3 different geographic locations, ensuring seamless integration and performance.
- Upgraded and consolidated multi-forest Active Directory architecture, improving security and operational efficiency across the organization.
- Successfully upgraded and migrated production servers with zero downtime, minimizing disruption to business operations.
- Automated infrastructure deployment and management using PowerShell, reducing manual effort by 30%.
- Enhanced security posture by deploying Web Application Firewall (WAF) and security controls to ensure PCI DSS compliance.
- Led DFS infrastructure implementation for seamless file sharing across 3 geographical sites, enabling efficient file sharing and collaboration across all sites.
-
IT System Administrator - SIGI, Contern, Luxembourg APR 2022 - MAR 2023
- Administered Windows servers, Active Directory, patch management, and system backups, ensuring 99.9% system uptime and compliance with security standards, reducing security vulnerabilities by 15%.
- Spearheaded Windows system administration, maintaining 99.9% uptime and ensuring optimal performance for 70+ servers.
- Deployed and managed virtual machines using Hyper-V, supporting scalable infrastructure and reducing hardware costs by 20%.
- Automated backup and recovery processes, achieving a 100% success rate in data restoration and minimizing downtime during critical incidents.
- Developed PowerShell scripts to automate patch management and routine tasks, cutting manual workload by 30% and improving operational efficiency.
- Streamlined OS deployment by introducing WDS-MDT, reducing deployment time by 40% and standardizing configurations across the organization.
- Installed supervision & monitoring solutions (PRTG), optimizing system health and reducing system downtime by 20% and enhancing proactive issue resolution.
- Authored detailed technical documentation, including system summaries, reports, and user guides, improving team onboarding and knowledge retention.
- Optimized IT asset management, maintaining 100% inventory accuracy and reducing unnecessary expenditures by 10%.
- Delivered Level 2 IT support, resolving 95% of technical issues within SLA and improving end-user satisfaction.
-
IT System and Network Administrator - ANTHOGYR, Mersch, Luxembourg MAR 2021 - MAR 2022
- Led the migration of Windows Servers from 2012R2/2016 to 2019, ensuring zero downtime and improved system performance.
- Managed and optimized VMware and Hyper-V environments, deploying and maintaining virtual machines to support business operations.
- Administered Active Directory, including GPO policies, DNS, and user access management, enhancing security and operational efficiency.
- Oversaw network infrastructure, including HP and Cisco switches and FortiGate firewalls, ensuring 99.9% network uptime.
- Implemented a comprehensive supervision and monitoring solution, reducing system issues by 25% through proactive troubleshooting.
- Managed backup systems, ensuring data integrity and disaster recovery readiness.
- Provided Level 2/3 user support, resolving 95% of issues within SLA and improving end-user satisfaction.
- Developed and maintained technical documentation, streamlining knowledge sharing and onboarding processes.
- Developed automation scripts to reduce manual configuration time by 30%.
-
IT System Administrator - Redpines Connect, Bordeaux, France FEB 2020 - FEB 2021
- Designed and executed the deployment of a hybrid IT infrastructure, integrating Windows Server with Azure, resulting in a 20% improvement in system scalability and operational flexibility.
- Optimized IT processes through automation and workflow improvements, reducing manual effort by 25% and enhancing team productivity.
- Implemented a comprehensive supervision and monitoring solution, reducing system downtime by 30% and enabling proactive issue resolution.
-
IT System Administrator - ARTS Energy, Nersac, France OCT 2017 - OCT 2019
- Administered and maintained Windows System infrastructure, ensuring 99.9% uptime and optimal performance for 100+ servers.
- Designed and implemented a new IT infrastructure, improving system reliability and scalability while reducing operational costs by 15%.
- Ensured continuous server updating and patching, reducing security vulnerabilities by 20% and maintaining compliance with industry standards.
- Managed network infrastructure, including switches, firewalls, and routers, ensuring 99.9% network uptime and seamless connectivity.
- Oversaw storage infrastructure and implemented regular backup solutions, achieving a 100% data recovery success rate and minimizing downtime.
- Conducted process analysis and identified automation opportunities, reducing manual effort by 30% and improving operational efficiency.
-
Office 365 Support Engineer - Alstom, La Rochelle, France 2017 - 2017
- Assisted in the migration of the company's messaging services to Office 365.
- Implemented procedures to ensure a smooth migration.
-
IT System Administrator - Courvoisier, Jarnac, France 2017 - 2017
- Set up a new system and network infrastructure.
- Created technical documentation.
- Provided technical support to users.
-
Key Projects & Achievements
01. SEPA Instant Payments Infrastructure Project DEC 2024 - JAN 2025
Project Overview:
Successfully led the design and deployment of an advanced IT infrastructure facilitating SEPA Instant Payments, incorporating robust solutions for high availability, seamless API integration, and stringent security standards.
Technical Skills Demonstrated:
- Operating Systems: Windows Server, Red Hat Enterprise Linux (RHEL).
- High Availability Tools: Load Balancer.
- API Technologies: API Gateway.
- Security Technologies: Web Application Firewall (WAF), PCI DSS, PSD2, GDPR.
- Automation and Scripting: PowerShell.
- Monitoring and Supervision: Nagios.
Key Contributions:
- Infrastructure Deployment: Managed end-to-end deployment of Windows Server and Red Hat Enterprise Linux (RHEL) platforms tailored to real-time payment processing.
- High Availability Architecture: Designed and implemented a high-availability infrastructure utilizing Load Balancer technology, achieving 99.99% uptime, ensuring reliability and continuous service delivery.
- API Integration: Collaborated with cross-functional teams to deploy and configure APIs, integrating core banking systems with payment gateways to facilitate instant transaction processing.
- Security and Compliance: Deployed a Web Application Firewall (WAF), safeguarding the infrastructure against cyber threats, and maintained compliance with PCI DSS and PSD2 standards.
Outcomes Achieved:
- Ensured uninterrupted operations and significantly enhanced security, supporting real-time transaction requirements.
- Improved team efficiency and streamlined workflows through automation and effective monitoring practices.
- Achieved strict regulatory compliance, minimizing risk and protecting sensitive payment data.
02. Distributed File System (DFS) Infrastructure Project JAN 2023 - JAN 2025
Project Overview:
Designed, implemented, and managed a robust Distributed File System infrastructure spanning multiple geographical sites, enhancing file access performance, data synchronization, and business continuity..
Technical Skills Demonstrated:
- File Systems: DFS Namespaces, DFS Replication, NTFS, ReFS.
- Networking: LAN/WAN, VPN, bandwidth throttling, replication scheduling.
- Monitoring Tools: Nagios, Zabbix, PRTG, Windows Performance Monitor.
- Disaster Recovery Solutions: Veeam.
- Automation and Scripting: PowerShell.
Key Contributions:
- DFS Implementation: Established DFS infrastructure across three geographical locations, significantly improving file performance, redundancy, and accessibility.
- Namespace & Replication: Configured DFS Namespaces and DFS Replication to enable seamless file sharing and synchronized data across sites.
- Data Migration: Successfully migrated over 5TB of data to the new infrastructure, achieving zero data loss and minimal disruption to operations.
- Network Optimization: Implemented bandwidth throttling and scheduled replication, optimizing network efficiency and minimizing latency.
- Capacity & Performance Management: Conducted thorough capacity planning and performance optimization to ensure optimal resource use and avoid bottlenecks.
- Disaster Recovery (DR): Collaborated on the design and deployment of DR solutions using Veeam, effectively reducing Recovery Time Objective (RTO).
- Documentation & Rollback: Developed comprehensive DFS documentation and rollback procedures, safeguarding business continuity.
- Access Management: Implemented secure file access using Access Control Lists (ACLs) and quota management.
- Monitoring & Maintenance: Utilized monitoring tools (Nagios, Zabbix) for proactive system management, maintaining 99.9% uptime across 200+ shared folders.
Outcomes Achieved:
- Achieved high availability and optimal performance of distributed file systems.
- Enhanced data security, accessibility, and disaster resilience.
- Improved IT operational efficiency through proactive system monitoring and automated management.
03. Implementation of an IT monitoring solution. JAN 2023 - JAN 2025
Project Overview:
Designed and deployed a comprehensive IT monitoring and visualization solution leveraging Zabbix, PRTG, and Grafana, significantly enhancing system reliability, operational visibility, and incident response effectiveness.
Technical Skills Demonstrated:
- Monitoring Tools: Zabbix, PRTG Network Monitor.
- Visualization Tools: Grafana.
- Automation & Scripting: PowerShell.
- Networking: LAN/WAN management, VPN configurations, firewall management.
- Security Practices: Log analysis, vulnerability scanning.
Key Contributions:
- Comprehensive Monitoring: Implemented Zabbix for real-time monitoring of server infrastructure, network equipment, and applications, enabling proactive issue identification and resolution.
- Network Performance Management: Deployed PRTG Network Monitor to effectively track and manage network performance metrics, bandwidth utilization, and hardware health, significantly reducing network-related downtime.
- Advanced Visualization: Created intuitive, customized Grafana dashboards, providing actionable insights into system health and performance, facilitating informed decision-making by stakeholders.
- Alert Automation: Developed automated alerting mechanisms through email notifications, ensuring rapid IT response and significantly reducing mean time to resolution (MTTR).
- Capacity Optimization: Conducted detailed capacity planning and performance tuning informed by monitoring data, optimizing resources, and achieving cost savings.
Outcomes Achieved:
- Improved system uptime and reliability.
- Reduced mean time to resolution (MTTR) through proactive monitoring and rapid troubleshooting.
- Enhanced visibility into infrastructure performance and security posture.
04. Implementation of an SFTP infrastructure for transferring bank-related secure documents. JAN 2023 - JAN 2025
Project Overview:
Designed and deployed a secure and compliant SFTP infrastructure for transferring bank-related sensitive documents, ensuring robust encryption, centralized access control, and regulatory adherence.
Technical Skills Demonstrated:
- File Transfer Protocols: SFTP, FTPS, SCP, HTTPS.
- Encryption Standards: AES-256, SSL/TLS, PGP.
- Security & Compliance: PCI DSS, GDPR, ISO 27001.
- Automation & Scripting: Bash, PowerShell.
- Monitoring & Performance Management: Nagios, Zabbix, PRTG.
- Networking & Security:. LAN/WAN, VPN, Firewalls.
Key Contributions:
- Secure File Transfer Implementation: Designed and deployed an SFTP infrastructure to facilitate secure document transfers for internal and external banking stakeholders.
- Regulatory Compliance: Ensured full compliance with PCI DSS, GDPR, and ISO 27001 security standards, safeguarding sensitive financial data.
- Encryption & Security: Implemented AES-256 encryption and SSL/TLS protocols to protect data in transit and at rest, ensuring end-to-end security.
- Automation & Monitoring: Developed automated Bash scripts for monitoring, logging, and error handling, reducing manual effort and improving operational efficiency.
- Active Directory Integration: Integrated SFTP infrastructure with Active Directory (AD) for centralized authentication, access control, and user management.
- Penetration Testing & Risk Mitigation: Conducted security assessments and vulnerability testing, identifying and mitigating potential security risks.
- Performance Optimization: Managed an SFTP environment supporting 100+ users, ensuring 99.9% uptime and seamless file transfer operations.
- Access Control & Quota Management: Configured ACLs and quota policies to enforce secure and efficient file access.
- Proactive Monitoring: Utilized monitoring tools (Zabbix, Nagios, PRTG) to analyze system performance and preemptively address potential issues.
Outcomes Achieved:
- Established a secure, high-performance file transfer system with 99.9% uptime.
- Strengthened security posture through encryption, authentication controls, and proactive monitoring.
- Achieved 100% compliance with regulatory requirements, ensuring data integrity and confidentiality.
05. Multi-Forest Active Directory Migration & Domain Controllers Upgrade. JAN 2023 - JAN 2025
Project Overview:
Successfully consolidated and migrated three Active Directory forests and six domains into a single, more manageable structure while upgrading domain controllers to Windows Server 2022, enhancing security, authentication, and operational efficiency.
Technical Skills Demonstrated:
- Active Directory Management: Domain migration, forest consolidation, trust configuration, GPO management
- Migration Tools & Scripting: Microsoft ADMT, PowerShell.
- Windows Server Expertise: 2008R2, 2012R2, 2016, 2019, 2022.
- Networking Protocols: DNS, DHCP, VPN, cross-forest trusts.
- Project Management & Communication: Stakeholder collaboration, risk assessment, documentation.
Key Contributions:
- Secure File Transfer Implementation: Designed and deployed an SFTP infrastructure to facilitate secure document transfers for internal and external banking stakeholders.
- Regulatory Compliance: Ensured full compliance with PCI DSS, GDPR, and ISO 27001 security standards, safeguarding sensitive financial data.
- Encryption & Security: Implemented AES-256 encryption and SSL/TLS protocols to protect data in transit and at rest, ensuring end-to-end security.
- Automation & Monitoring: Developed automated Bash scripts for monitoring, logging, and error handling, reducing manual effort and improving operational efficiency.
- Active Directory Integration: Integrated SFTP infrastructure with Active Directory (AD) for centralized authentication, access control, and user management.
- Penetration Testing & Risk Mitigation: Conducted security assessments and vulnerability testing, identifying and mitigating potential security risks.
- Performance Optimization: Managed an SFTP environment supporting 100+ users, ensuring 99.9% uptime and seamless file transfer operations.
- Access Control & Quota Management: Configured ACLs and quota policies to enforce secure and efficient file access.
- Proactive Monitoring: Utilized monitoring tools (Zabbix, Nagios, PRTG) to analyze system performance and preemptively address potential issues.
Outcomes Achieved:
- Established a secure, high-performance file transfer system with 99.9% uptime.
- Strengthened security posture through encryption, authentication controls, and proactive monitoring.
- Achieved 100% compliance with regulatory requirements, ensuring data integrity and confidentiality.
06. Hybrid IT Infrastructure Deployment – Windows Server & Azure. FEB 2020 - FEB 2021
Project Overview:
Designed and implemented a hybrid IT infrastructure integrating Windows Server (on-premises) with Azure cloud services, enhancing authentication, security, and availability.
Technical Skills Demonstrated:
- Operating Systems: Windows Server (on-premises).
- Cloud Technologies: Azure services, Azure Virtual Machines (VMs), Azure Storage.
- Identity & Access Management: Azure Active Directory (Azure AD), Hybrid Identity, Cloud IAM solutions.
- Networking & Security: Azure IAM, hybrid network architecture, cloud security best practices.
Key Contributions:
- Hybrid Infrastructure Deployment: Successfully integrated Windows Server and Azure services, ensuring a seamless hybrid environment.
- Identity & Authentication: Implemented Azure Active Directory (Azure AD) and Hybrid Identity, allowing for unified authentication across both on-premises and cloud environments.
- Azure Services Optimization: Configured and optimized Azure Virtual Machines (VMs), Azure Storage, and networking components to maximize high availability and performance.
- Hybrid Cloud Strategy: Developed a strategic hybrid cloud model integrating Azure AD, on-prem Active Directory, and cloud IAM solutions to enable secure and scalable operations.
- Security & Compliance: Enforced Azure IAM policies and cloud security measures, ensuring compliance with industry standards and robust protection against cyber threats.
Outcomes Achieved:
- Enhanced Security & Compliance: Strengthened authentication mechanisms and implemented best security practices.
- Improved Performance & Availability: Optimized cloud and on-premises resources for maximum uptime and operational efficiency.
- Seamless Hybrid Integration: Enabled smooth authentication and secure connectivity between on-premises and cloud environments.
07. Design and Implementation of a System and Network Infrastructure Dedicated to Industrial IT JAN 2018 - AUG 2019
Project Overview:
Designed and deployed a scalable, high-performance OT-IT infrastructure, integrating industrial-grade networking, security solutions, and real-time analytics to enhance operational efficiency and system resilience.
Technical Skills Demonstrated:
- Networking & Infrastructure: Industrial-grade switches, routers, HP networking products.
- Security & Compliance: Firewalls, IDS, encryption, network segmentation, compliance with industrial cybersecurity standards.
- System Administration: High-performance server and storage solutions, failover mechanisms.
- IoT & Analytics: Real-time data processing, predictive maintenance integration.
- Project Management: Agile methodology, stakeholder collaboration, system validation & stress testing.
Key Contributions:
- Scalable System Architecture: Designed a modular and future-proof system incorporating high-performance servers, storage solutions, and industrial-grade network devices.
- Unified Network Design: Integrated Operational Technology (OT) and Information Technology (IT) systems, leveraging industrial switches, routers, and secure network segmentation.
- Advanced Security Implementation: Deployed firewalls, Intrusion Detection Systems (IDS), encryption protocols, and network segmentation to protect critical infrastructure from cyber threats.
- Industrial Infrastructure Deployment: Installed and configured high-performance servers and storage systems, supporting industrial applications and real-time data processing.
- IoT & Data Analytics Integration: Enabled predictive maintenance and operational insights by integrating IoT devices and real-time data processing platforms.
- High Availability & Redundancy: Conducted stress tests and failover simulations, ensuring 99.99% uptime through redundant network design and failover mechanisms.
- Performance Monitoring & Optimization: Implemented continuous system and network performance monitoring, identifying and resolving issues proactively.
- Staff Training & Documentation: Provided comprehensive training to IT and OT teams, ensuring efficient management and maintenance of the new infrastructure.
Outcomes Achieved:
- Achieved 99.99% uptime through redundancy and failover mechanisms.
- Enhanced Security & Compliance, significantly reducing vulnerabilities.
- Improved Operational Efficiency by enabling seamless OT-IT communication.
- Enabled Predictive Maintenance & Analytics, supporting real-time data-driven decision-making.
Education
-
Duke University
Specialization, Building Cloud Computing Solutions at Scale
Aug 2024 - Feb 2025
-
Duke University
Specialization, Strategy and Innovation for Agile Organizations
Feb 2025 - Mar 2025
-
Duke University
Specialization, Agile Approaches for Modern Leadership
Feb 2025 - Mar 2025
-
Johns Hopkins University
Specialization, AI Strategy and Project Management
Dec 2024 - Mar 2025
-
Johns Hopkins University
Specialization, Information Assurance Analysis
Nov 2024 - Feb 2025
-
Johns Hopkins University
Specialization, Project Management and Planning
Nov 2024 - Feb 2025
-
CESI - Ecole d'Ingénieurs
Master's degree, IT Systems and Network Engineering Management
Oct 2017 - Oct 2019
Skills & Expertise
1. Infrastructure Design & Architecture
- Enterprise IT Architecture - Designing on-premises, hybrid, and cloud-based infrastructure solutions.
- High Availability (HA) & Fault Tolerance – Implementing load balancing, failover clusters, and geo-redundancy.
- Disaster Recovery (DR) & Business Continuity – Creating robust DR plans with solutions like Veeam, Azure Backup, DFS Replication.
- Infrastructure Cost Optimization – Reducing IT costs through resource consolidation, automation, and cloud-native solutions.
2. Cloud Computing & Virtualization
- Cloud Platforms: Microsoft Azure – Azure Virtual Machines (VMs), Entra ID, IAM, Azure Networking.
- Virtualization Technologies: VMware (ESXi, vSphere, vCenter), Hyper-V – Managing virtual workloads, resource allocation, and VM migration.
3. System Administration & OS Management
- Windows Server Administration:
- AD DS (Active Directory Domain Services), Group Policy, DNS, DHCP.
- Windows Server (2012R2, 2016, 2019, 2022) configuration and hardening.
- Linux Administration:
- RedHat, CentOS, Ubuntu – Command-line management, system upgrades, security patching.
- Shell scripting (Bash) for automation.
4. Identity & Access Management (IAM)
- Active Directory & Multi-Forest Environments – Migrations, Role-Based Access Control (RBAC), Group Policy Object (GPO) management.
- Azure Entra ID (Azure AD) – Identity Federation, Conditional Access, Multi-Factor Authentication (MFA).
5. Infrastructure as Code (IaC) & Automation
- Infrastructure as Code (IaC) – Terraform.
- Scripting & Automation:
- PowerShell – Windows automation, Active Directory scripting.
- Bash – Linux automation and server configurations.
6. Networking & Security
- Enterprise Networking:
- Firewalls & VPNs – FortiGate, WatchGuard, Sophos.
- Cybersecurity & Compliance:
- Zero Trust Security – Network segmentation, least privilege access.
- Encryption & Data Protection – AES-256, SSL/TLS, BitLocker.
- Regulatory Compliance – PCI DSS, ISO 27001, GDPR.
7. Monitoring, Logging & Performance Optimization
- Infrastructure Monitoring:
- Zabbix, PRTG, Nagios, Datadog, Prometheus/Grafana for system health monitoring.
- Performance Tuning & Root Cause Analysis:
- Analyzing system bottlenecks and optimizing CPU, memory, storage, and network performance.
8. IT Service Management & Operations
- ITIL & ITSM Frameworks:
- Incident Management, Problem Management, Change Management.
- Asset & Patch Management:
- SCCM, WSUS.
9. Storage, Backup & Disaster Recovery
- Enterprise Storage Solutions:
- SAN/NAS, iSCSI, NFS, SMB file sharing.
- Backup & Disaster Recovery Solutions:
- Veeam, Commvault, Acronis, Azure Site Recovery (ASR).
- Cloud Storage & Object Storage:
- Azure Blob Storage.
10. Leadership & IT Strategy
- Digital Transformation – Migrating legacy systems to cloud and modern IT environments.
- IT Governance & Compliance – Ensuring IT policies align with business objectives.
- Project Management:
- Agile methodologies (Scrum, Kanban), PMI-certified frameworks.
- Collaboration & Communication – Cross-functional team leadership, stakeholder management.
Get in touch
Serge Fumey
Tel: +33 620 42 1080
Email: serge.ks.fumey@gmail.com