Infrastructure engineer with 26 years in the field in the public sector — from the first network security architectures to sovereign on-premise AI platforms. My career spans operational systems security (antivirus, firewall, DMZ, security policy), the management of complex IT projects in a COFRAC-certified environment, and the building of fully open source on-premise AI infrastructures. I prefer to remain the go-to technical expert — the one who builds, documents, and shares what he learns.

This portfolio is the open demonstration of that work: whether you are looking to hire this profile, to have a sovereign AI infrastructure designed for your organization, to discuss your own project, or simply to draw inspiration from what is proven feasible — it is all documented here.

Professional experience × personal development

What I do at work · What I build at home · What they produce together
Professional experience (Gironde, 1999 →)
  • PROAgentic PoC, LLM and RAG on LDA 33 internal documents
  • PROLIMS + instrument interfaces — full business-data chain (COFRAC)
  • PRO7 years of systems security: centralized antivirus, DMZ, firewall, IDS, security policy
  • PRO19 years leading complex IT projects, public procurement, multi-stakeholder
  • PROIn-depth knowledge of the departmental IS (on-premise + cloud)
  • PROPython development, GitLab, laboratory data pipelines
Personal development (this portfolio)
  • ✓On-premise AI server: Proxmox VE, RTX 5090, 192 GB DDR5
  • ✓Sovereign AI stack: Ollama, Open WebUI, RAG pgvector (PostgreSQL)
  • ✓n8n automation, Python, data-processing pipelines
  • ✓GPU Passthrough VFIO, ZFS, Docker, high-performance architecture
  • ✓Systematic documentation — this portfolio is the proof
  • ✓ISO 27001 Lead Implementer training (in progress)
Result: the ability to deploy an enterprise on-premise AI server, secure it, integrate it into the existing IS — and document every step. Without figuring out how, because it is already done and documented here.

Career path

2018 — present · Principal Engineer (2022)
Digital Innovation Project Manager — SPIN
Conseil Départemental de la Gironde
Deployment of the LIMS and instrument interfaces at the Departmental Analysis Laboratory (COFRAC-certified environment). Python development, GitLab. Agentic, LLM and RAG PoC on internal documents. Building a complete on-premise AI platform in parallel.
IA On-Premise LLM · RAG Python GitLab LIMS COFRAC Proxmox
2009 — 2017 · Territorial Engineer (competitive exam 2013)
Application Portfolio Project Manager — SPEC
Conseil Départemental de la Gironde
Multi-stakeholder project management: LDA 33, leisure centers, social housing, international cooperation (Burkina-Faso), HR. Budget management, public procurement, network facilitation. Business analysis for LDA and HR projects. GnuPG/OpenPGP encryption, SSH/TLS/SSL flows. Domain owner (50+ applications).
Gestion de projet MOA/MOE Marchés publics Agile SCRUM/KANBAN International
2007 — 2009
Business Applications Project Manager — BAIT
Conseil Départemental de la Gironde
Act II of decentralization — integration of the DDE. Technical administration of software, management of hardware and software migration projects.
Migration SIAdministration applicative
1999 — 2007 · Territorial Technician (competitive exam 2000)
System & Security Administrator — BSRI
Conseil Départemental de la Gironde
Novell → Active Directory migration. Complete setup of the first security infrastructure: centralized antivirus, DMZ, firewall (NetASQ, TrendMicro, ISA Server in load balancing), proxy, IDS, security policy.
Sécurité réseau Active Directory Firewall · DMZ Antivirus centralisé Cryptographie
1990 — 1998 · Private sector
Software Integrator & Operational Management
BP-Mobil · Total · Quick · Secteur CHR
Software integration (Copitol) — data extraction/integration, consistency checks. Team management at Quick (revenue FRF 5→12 M). MERISE analysis and computerization of a hotel business.
Intégration logicielleMERISEManagement

Areas of expertise

🛡️
Systems Security
  • Centralized antivirus, firewall, DMZ, proxy, IDS
  • Security policy and IS audit
  • Cryptography — GnuPG, OpenPGP, SSH/TLS
  • Connections to State databases (certificates)
  • Data sovereignty — on-premise AI
  • ISO 27001 Lead Implementer (in progress)
🏗️
Infrastructure & DevOps
  • Proxmox VE, KVM, QEMU, GPU Passthrough VFIO
  • Linux (Debian, Ubuntu, Alpine), Windows Server
  • Docker, Docker Compose, YAML
  • TCP/IP networks, VLAN, VPN, Cisco, Active Directory
  • ZFS, high-performance storage
  • PostgreSQL, Oracle, SQL Server, Apache, IIS
🤖
On-Premise AI Architecture
  • Local LLMs: Ollama, Open WebUI, Llama, Mistral
  • Vector RAG: PostgreSQL/pgvector, bge-m3, HNSW
  • Agentic: PoC in a real business environment
  • Generative AI: ComfyUI, Flux, Whisper
  • Automation: n8n, Python, CUDA
  • Continuous AI technology watch

Education & certifications

YearDegree / Competitive exam / CertificationInstitution
In progressISO 27001 Lead ImplementerContinuing education
2017Professional selection panel (Cat. A & B — technical stream)CDG 33
2013External competitive exam, Territorial Engineer — IT optionCNFPT
2012External competitive exam, Territorial Attaché — analyst optionCNFPT
Since 2000Examining panel, professional IT qualification Level II & IIIDIRECCTE
2000External competitive exam, Territorial TechnicianCNFPT
1996GPSI Level III (DUT) — IT Systems Management and ProductionAFPA Pessac

Contributions I can make

🤖
Sovereign On-Premise AI
Design and deploy a local AI platform: LLM, RAG, agents, automation — on a controlled infrastructure, with no cloud dependency. I have been building and documenting this architecture since 2024 on my own server.
🛡️
Systems security & governance
7 years of field experience: DMZ, firewall, centralized antivirus, security policy, cryptography. ISO 27001 Lead Implementer training in progress. Ability to connect compliance requirements with technical reality.
🏗️
Managing complex IT projects
19 years leading multi-stakeholder projects in the public sector: public procurement, COFRAC, international cooperation. Able to act as the go-to technical expert without hierarchical management.
🌍
Availability & adaptability
Geographic mobility possible. Experience of international cooperation (Burkina-Faso). Remote or on-site. Professional English. Comfortable in both public and private organizations.

Open Source philosophy

🌿
Everything presented in this portfolio is built with free tools. Git, Proxmox VE, Docker, Python, Ollama, PostgreSQL, pgvector, Nextcloud, MariaDB, nginx, Obsidian — every technical choice has an open source alternative. It is not a constraint: it is a conviction. Code transparency, the community that maintains it, and data sovereignty are values I defend as much in my personal projects as in my professional ones. This portfolio is a reference guide shared freely — because documenting and passing on knowledge is part of the job.

Contact

References & Sources

CategoryResourceURL
Security standard ISO/IEC 27001:2022 — Information security management systems iso.org/standard/27001
Certification ISO 27001 Lead Implementer — PECB pecb.com
Territorial competitive exam Territorial Engineer — technical stream (CNFPT) cnfpt.fr
Reference guide PORTFOLIO-GUIDE-REFERENCE.md — portfolio maintainability document C:\Dev\portfolio\ (dépôt GitHub)
Content of this page Shared under CC BY-SA 4.0 creativecommons.org/licenses/by-sa/4.0

Credits & trademarks

The logos below belong to their respective owners and are used to identify the technologies employed, in compliance with the notices required by each holder.

LogoRequired noticeBasis
GitGit logo par Jason Long, sous licence CC BY 3.0.CC BY 3.0 · git-scm.com
Tux (Linux)Tux, créé par Larry Ewing (lewing@isc.tamu.edu) and The GIMP.Permission de l'auteur
DockerDocker and the Docker logo are trademarks or registered trademarks of Docker, Inc. in the United States and/or other countries.Trademark Guidelines
PythonPython and the Python Logo are trademarks of the Python Software Foundation.PSF Trademark Policy

The other trademarks mentioned (NVIDIA, AMD, NGINX/F5, GitLab, Proxmox, Ollama, Obsidian, n8n, GitHub…) remain the property of their holders; their mention implies no affiliation or endorsement.