Platform Reliability Architect

About

Five constants from the field: understand systems, reduce complexity, secure decisions, build what is missing, confront ideas with reality.

  • Understand systems
  • Reduce complexity
  • Secure decisions
  • Build what is missing
  • Confront ideas with the field

What I do today

I design, secure and make complex digital systems governable: cloud platforms, Kubernetes, DevSecOps, observability and decision architecture.

I am a Platform Reliability Architect and CTO. With Taous, we co-found Omnivya: she leads Omnivya and Omnivya Expert; I am CTO. Missions that need structured delivery capacity are carried by Omnivya Expert. This site publishes my principles, proof and reasoning; it is not a commercial catalog.

Start Here · Work

How I got here

The career started in 2006. The path runs from operational fieldwork, including ADSL support, to architecture and technical leadership. Titles stacked; more importantly, scope widened: from component to system, from incident to irreversible decision.

Cloud, infrastructure, platform, DevSecOps and architecture stacked on the same question: how does a system stay readable, operable and governable as complexity grows?

Timeline

Progressive markers, readable without advanced styling. This is not an exhaustive CV.

  1. Start of field career

    Entry through operations and support, including ADSL fieldwork, in direct contact with failures and users.

  2. Infrastructure and systems

    Expansion into administration, infrastructure and environment preparation, from component to system scope.

  3. Cloud, platform, architecture

    Cloud architecture, infrastructure as code, DevSecOps and platform: broader decisions, longer-lived consequences.

  4. Consulting and engineering activity

    Start of the entrepreneurial consulting and engineering activity. CTO role on architecture, platforms and technical delivery.

  5. Omnivya and Omnivya Expert

    Omnivya structures the entrepreneurial and professional frame. Omnivya Expert carries structured consulting and delivery missions.

What twenty years in the field changed

Twenty years in the field shifted the center of gravity: fewer tools to collect, more decisions to secure. Technique remains necessary; it is no longer enough as the only answer.

The systems I work with rarely lack tools. They lack a shared map, decision criteria and the ability to act without growing invisible debt.

Designing, today, means first making the system understandable, and only then automating or industrializing further.

Omnivya

Omnivya is co-founded with Taous, who leads Omnivya and Omnivya Expert. I am the CTO: architecture, platform, security and technical products.

Omnivya Expert carries structured consulting and delivery missions. This site publishes the reasoning; Omnivya Expert carries execution. The two stay deliberately separate.

View Omnivya Expert

How I work

  • Understand before automating: map the system and its real constraints.
  • Model dependencies and risk, not just technical components.
  • Reduce cognitive load: every artifact must support a concrete decision.
  • Document irreversible choices and rejected alternatives.
  • Build for real constraints: technical, regulatory and organizational.

Thinking

What I refuse to do

  • Sell a tool catalog without a decision frame.
  • Publish unverified client metrics or fictional proof.
  • Confuse alert volume with real security.
  • Create an internal platform that adds bureaucracy without reducing cognitive load.
  • Promise a transformation without mapping the existing system.

Contributions, speaking and projects

Projects

  • External Metrics Exporter : Projet open source qui découvre les dépendances externes des workloads Kubernetes et expose un contrat Prometheus neutre vis-à-vis des fournisseurs.

Open source

Curated public repositories, grouped by intent, not an exhaustive GitHub listing. Strategic descriptions live on this site; metadata may be enriched at build time.

Kubernetes & platform

Cloud-native proof: operators, observability and platform labs.

External Metrics Exporter

Problem addressed
Teams deploy on Kubernetes without reliable visibility on external dependencies or comparable signals across vendors.
Status
Active : public repository
Main language
Go
License
NOASSERTION
Etienne’s role
Author and maintainer
Documentation
Documentation on the project page and repository README.
Contribution sought
Usage feedback on discovered external dependencies and the Prometheus contract.
Last update
21 Jul 2026

Azure DevOps Kubernetes Operator

Problem addressed
Run Azure DevOps agents on Kubernetes without manually operating pod lifecycle.
Status
Active
Main language
Go
License
MIT
Etienne’s role
Author and maintainer
Documentation
README and operator chart in the repository.
Contribution sought
Issues on agent modes, scaling and cluster integration.
Last update
23 Jul 2026

AKS Lifecycle

Problem addressed
Manage AKS lifecycle (create, upgrade, drift) without ad hoc scripts per cluster.
Status
Maintenance
Main language
Go
License
GPL-3.0
Etienne’s role
Author
Documentation
Repository README.
Contribution sought
Usage feedback on upgrade and drift scenarios.
Last update
11 Sept 2024

Kubernetes on Hyper-V

Problem addressed
Stand up a reproducible Kubernetes cluster on Hyper-V without an opaque stack.
Status
Maintenance : lab / reference
Main language
PowerShell
License
MIT
Etienne’s role
Author
Documentation
README (Packer, Ansible, DSC, WSL).
Contribution sought
Issues on Hyper-V / WSL paths and K8s versions.
Last update
7 Jun 2019

FinOps & cloud cost

Cloud cost control and price readability.

cloudcost

Problem addressed
Check cloud prices (Azure) on the fly without opaque portals.
Status
Active
Main language
Go
License
Apache-2.0
Etienne’s role
Author and maintainer
Documentation
Go CLI : repository README.
Contribution sought
Coverage for new services and output formats.
Last update
19 Nov 2023

DevSecOps & supply chain

Security, CI/CD and software supply-chain tooling.

ShaiHulud Azure DevOps Scanner

Problem addressed
Detect supply-chain / compromise indicators in Azure DevOps pipelines.
Status
Active
Main language
Python
License
MIT
Etienne’s role
Author
Documentation
Scanner README.
Contribution sought
Detection rules and field feedback.
Last update
23 Sept 2025

chart-version

Problem addressed
Force a Helm chart version in CI/CD without hand-editing Chart.yaml.
Status
Maintenance
Main language
Shell
License
Apache-2.0
Etienne’s role
Author
Documentation
CLI + Helm plugin : README.
Contribution sought
CI use cases and Helm compatibility.
Last update
19 Nov 2023

Developer tooling

Adjacent tools : useful, but outside the core platform pitch.

compose (Apple container)

Problem addressed
Orchestrate a docker-compose.yml with apple/container on macOS without Docker Desktop.
Status
Active
Main language
Swift
License
NOASSERTION
Etienne’s role
Author and maintainer
Documentation
README + related Homebrew tap (Simplifi-ED/homebrew-compose).
Contribution sought
Compose compatibility and apple/container feedback.
Last update
26 Jul 2026

go-amumu

Problem addressed
Send email via Microsoft Graph from a simple, scriptable Go CLI.
Status
Maintenance
Main language
Go
License
Apache-2.0
Etienne’s role
Author
Documentation
CLI README.
Contribution sought
Graph auth and message formats.
Last update
11 Jun 2024

LinkedIn Carousel Generator

Problem addressed
Produce LinkedIn carousels reproducibly from Markdown.
Status
Maintenance
Main language
TeX
License
CC0-1.0
Etienne’s role
Author
Documentation
README and related field note.
Contribution sought
Templates and generation pipeline.
Last update
7 Oct 2024

Historical references

History and build proof, not active products.

OS Factory

Problem addressed
Standardize OS image building for public and private cloud without ad hoc pipelines.
Status
Historical reference
Main language
Python
License
Apache-2.0
Etienne’s role
Primary contributor (Cellenza → Société Générale mission)
Documentation
README and related blog articles.
Contribution sought
Not active : kept as build proof.
Last update
29 Apr 2021

Azure NetApp Files : RBAC roles

Problem addressed
Provision Azure NetApp Files with suitable RBAC roles without reinventing policies.
Status
Historical reference
Main language
HCL
License
MIT
Etienne’s role
Author
Documentation
Terraform templates and related technical article.
Contribution sought
Not active : kept with the ANF RBAC article.
Last update
15 Dec 2023

Contact

To discuss a complex system, an intervention or a platform context: a qualified email is enough. Describe the context, constraints and the decision to secure.

Send an email · etienne@omnivya.fr