Author Image

Hello, I am Almamy

Almamy B. Coulibaly

Technical Lead | Security & Engineering at DATAKORI

Technical Lead specializing in security, infrastructure, data, and audit. I build secure systems, lead DevOps and security teams, engineer data pipelines, and conduct IT audits across banking, telecom, and government sectors. I hold an MSc in Cybersecurity & AI and I believe in secure by design, auditable by default.

Certified Associate in Project Management (CAPM)
Technical Leadership
Security Mindset
Problem Solving
Cross-functional Collaboration
Team Work

Skills

Experiences

1
DATAKORI

March 2024 - Present

Abidjan, Côte d'Ivoire

International cybersecurity and data consulting firm operating in Paris and Abidjan, specializing in cybersecurity operations, data engineering, cloud infrastructure, and GRC services across banking, telecom, and government sectors.

Technical Lead | Security & Engineering

Sep 2025 - Present

Responsibilities:
  • Lead cross-functional team of 8 engineers across software development, data engineering, DevSecOps, and security operations, delivering solutions for enterprise clients in finance, telecom, and government sectors with medium to strict compliance requirements.
  • Design secure, scalable cloud architectures aligned with business and compliance requirements; provide technical consulting to C-level stakeholders on infrastructure strategy, security posture, and digital transformation initiatives.
  • Architect and develop enterprise compliance systems including automated sanctions screening pipeline extracting structured data from regulatory sources (OFAC, UN, EU sanctions lists), deployed on Kubernetes with monthly refresh cycles for financial institutions.
  • Conduct technical hiring assessments, evaluate engineering candidates, and implement Agile/Scrum methodologies to improve team productivity and project delivery across distributed teams spanning multiple time zones (GMT+0 to GMT+2).
  • Coordinate complex projects integrating DevSecOps practices, data engineering pipelines, and cybersecurity solutions while managing stakeholder expectations and ensuring alignment with organizational security frameworks including ISO 27001, PCI DSS, GDPR and OWASP Top 10 guidelines.
  • Conduct security assessments and penetration testing for banking and telecom clients, identifying vulnerabilities and implementing remediation strategies aligned with ISO 27001, PCI DSS, and GDPR frameworks.
  • Perform purple team exercises combining offensive and defensive security techniques, testing organizational defenses through simulated attacks while evaluating detection capabilities and incident response procedures.
Cybersecurity, DevSecOps & Data Engineer

March 2024 - Oct 2025

Responsibilities:
  • Integrated SAST, DAST, and SCA security testing tools (Snyk, SonarQube, OWASP ZAP, Trivy) into CI/CD pipelines, reducing production vulnerabilities by 70% through automated security scanning and remediation of OWASP Top 10 vulnerabilities.
  • Built credit scoring data platform processing 100GB+ financial data using medallion architecture (Bronze → Silver → Gold) with Apache Airflow orchestration, enabling data-driven lending decisions and risk assessment.
  • Developed ML-powered credit scoring engine using Explainable Boosting Machine (EBM) models with FastAPI REST API for real-time credit risk predictions, improving accuracy and explainability for regulatory compliance.
  • Implemented SOC operational procedures for client organizations, deploying SIEM solutions (ELK Stack), creating custom detection rules aligned with MITRE ATT&CK framework, and establishing incident response workflows.
  • Conducted comprehensive security audits across AWS and GCP cloud environments, remediating IAM misconfigurations, network security gaps, and compliance violations based on ISO 27001, PCI DSS, and GDPR requirements.
  • Developed secure Infrastructure as Code templates using Terraform with policy-as-code validation (Checkov, Terrascan) to prevent security misconfigurations before deployment and enforce security best practices.
  • Automated secure Kubernetes deployments with ArgoCD GitOps workflows, implementing Pod Security Standards, network policies, and container security scanning to harden orchestration environments.
  • Performed penetration testing and vulnerability assessments for banking and telecom clients, identifying critical security weaknesses, conducting exploit simulations, and delivering detailed remediation roadmaps.
  • Built and maintained cloud infrastructure on AWS and GCP using Terraform (IaC), managing Kubernetes clusters, implementing auto-scaling, and optimizing resource utilization for cost efficiency.
  • Delivered technical training on DevSecOps best practices and conducted educational webinars on technologies including Git, Vim, Kubernetes, and secure development workflows for internal teams and client organizations.
  • Provided IT audit support by documenting technical controls, conducting compliance gap analyses against security frameworks, and producing comprehensive audit reports for management review and regulatory examination.

ORANGE S.A.

July 2023 - Sep 2023

Abidjan, Côte d'Ivoire

Leading regional telecommunications operator in West Africa serving over 30 million customers across Côte d’Ivoire, Burkina Faso, and Liberia with mobile, fixed-line, internet, and digital financial services.

Cybersecurity Analyst (Contract)

July 2023 - Sep 2023

Responsibilities:
  • Automated user authorization review processes for access management, implementing workflow automation that improved GRC department operational efficiency by 80% and reduced manual audit overhead.
  • Performed security monitoring and threat analysis using SIEM platforms to detect suspicious activities, investigate security incidents, and coordinate response actions with SOC teams across telecommunications infrastructure.
  • Delivered enterprise-wide security awareness training programs targeting phishing threats, social engineering, and secure computing practices, achieving 30% reduction in successful phishing incidents across employee base.
  • Conducted vulnerability assessments and penetration testing of telecom infrastructure serving millions of users, identifying misconfigurations and security weaknesses aligned with OWASP Top 10, NIST, and ISO 27001 standards.
2

3
MAILLOT.PRO

Aug 2021 - Sep 2022

Abidjan, Côte d'Ivoire

Sports apparel and athletic gear company with an integrated technology division developing e-commerce platforms and inventory management systems.

Software Engineer (Remote)

Aug 2021 - Sep 2022

Responsibilities:
  • Developed secure RESTful APIs and backend microservices using Python (Django) and PHP (Laravel) implementing “security by design” principles including input validation, secure authentication (JWT), and OWASP Top 10 vulnerability prevention.
  • Designed and optimized PostgreSQL and MySQL database schemas for product catalogs, order management, and customer data, implementing query optimization, indexing strategies, and automated backup procedures.
  • Integrated payment gateway APIs and inventory management systems, ensuring PCI DSS compliance for payment processing and implementing fraud detection mechanisms for e-commerce transactions.
  • Built automated testing frameworks and CI/CD pipelines using GitLab CI, embedding security testing and code review processes into Agile workflows, reducing production security defects.
  • Led cross-functional development teams, establishing secure coding standards, conducting technical code reviews, and mentoring junior developers on security best practices and software engineering principles.
Part-Time Software Engineer (Remote)

Aug 2021 - Sep 2022

Responsibilities:
  • Provided ongoing technical consultation and software development support for additional projects while maintaining primary engineering role, demonstrating capability to manage multiple parallel workstreams.
  • Supported e-commerce platform maintenance, bug fixes, and feature enhancements during off-hours, ensuring continuous system availability and rapid response to critical issues.
  • Collaborated with distributed team members across time zones to coordinate releases, manage deployments, and troubleshoot production incidents affecting customer-facing systems.

WIREPICK LLC.

Aug 2020 - Mar 2021

Markham, ON, Canada

International value-added services provider operating a proprietary messaging and communications platform connecting mobile network operators with enterprises across 32+ African countries for bulk SMS, USSD, and digital solutions.

Software Engineer (Hybrid)

Aug 2020 - Mar 2021

Responsibilities:
  • Developed high-performance backend services for SMS gateway platform processing millions of messages daily, implementing message queueing systems (RabbitMQ/Redis) and optimizing database queries for throughput and reliability.
  • Integrated with multiple mobile network operator APIs across 32+ African markets, implementing robust retry logic, error handling, circuit breakers, and comprehensive monitoring to ensure 99.9%+ message delivery SLAs.
  • Built real-time analytics dashboards and reporting systems tracking message delivery metrics, system performance KPIs, and billing data using Python and modern visualization frameworks for business intelligence.
  • Performed database administration including MySQL performance tuning, query optimization, backup automation, and disaster recovery planning for mission-critical messaging infrastructure supporting enterprise clients.
  • Conducted system monitoring and troubleshooting, resolving incidents related to message processing failures, API integrations, and database performance issues.
4

5
KNOWNHOST LLC.

Jun 2016 - Jun 2017

Birmingham, Alabama, USA

Professional managed web hosting provider operating data centers in Seattle, Atlanta, and Amsterdam, offering VPS, cloud, dedicated hosting, and 24/7 technical support with 99.99%+ uptime since 2006.

Technical Support Operator

Jun 2016 - Jun 2017

Responsibilities:
  • Provided 24/7/365 technical support for Linux (CentOS, Ubuntu, Debian) and Windows Server hosting environments across VPS, cloud, and dedicated server platforms serving enterprise and SMB clients.
  • Managed heterogeneous server infrastructure including web servers (Apache, IIS, Nginx), database systems (MySQL, MSSQL, PostgreSQL), mail servers (Postfix, Exchange), and DNS services for hosting customers across multiple continents.
  • Implemented server security hardening including firewall configuration (iptables, Windows Firewall, CSF), DDoS mitigation, SSH/RDP access control, malware remediation, and security patch management to protect customer hosting environments.
  • Administered Windows Server environments including Active Directory user management, Group Policy configuration, PowerShell automation for routine tasks, and Windows Update deployment for enterprise hosting clients.
  • Performed Linux systems administration tasks including user account management, file permissions, cPanel/WHM administration, resource monitoring, backup verification, and performance optimization to maintain 99.99%+ service uptime.
  • Utilized scripting (Bash, PowerShell, Python) to automate routine support tasks, implement custom monitoring solutions, troubleshoot complex technical issues, and streamline operational workflows for efficiency.
  • Documented technical procedures and created comprehensive knowledge base articles, working with trained team members on support workflows, contributing to improved first-response times and customer satisfaction metrics.

Birmingham, Alabama, USA

UAB’s interdisciplinary research and clinical center dedicated to optimizing health for older adults through research in cognition, mobility, continence, and geriatric care, with 220+ affiliated faculty members.

Technical Support Specialist (Part-Time)

Jan 2015 - Aug 2015

Responsibilities:
  • Provided IT support for research and clinical staff, managing workstations, resolving software issues, and ensuring reliable operation of systems used in patient care and research activities.
  • Administered user accounts in Active Directory, managed granular permissions following principle of least privilege, and implemented group policies to maintain secure access to protected health information (PHI) while ensuring HIPAA compliance.
  • Maintained office equipment including computers, servers and printers, coordinating with vendors for repairs and ensuring minimal downtime.
  • Documented IT procedures and technical issues in ticketing systems, creating knowledge base articles to enable self-service support and improve team efficiency.
  • Assisted with data backup procedures and basic network troubleshooting to support the center’s research and clinical operations.
6

7

Birmingham, Alabama, USA

Alabama’s largest HIV/AIDS healthcare facility and one of the nation’s leading HIV clinics, providing comprehensive medical, dental, mental health, and support services to 3,600+ patients with Ryan White funding.

Technical Support Analyst (Internship)

Oct 2014 - Jan 2016

Responsibilities:
  • Supported clinical IT systems including Electronic Health Records (EHR), patient management software, and pharmacy systems critical to HIV/AIDS patient care delivery and confidentiality.
  • Maintained security controls to protect sensitive patient health information (PHI), ensuring compliance with HIPAA regulations through access controls, encryption, and audit logging.
  • Troubleshot hardware and software issues for clinical staff, providing rapid response to minimize disruption to patient care and ensuring continuity of medical services.
  • Assisted with IT asset management, software licensing, and system updates, maintaining inventory records and coordinating with vendors for procurement and technical support.
  • Assisted with secure data backup procedures, disaster recovery testing, and network troubleshooting to support clinic operations serving vulnerable patient population with strict privacy and security requirements.

Education

MSc. Security – Cybersecurity & Artificial Intelligence
Taken Courses:
  • Advanced Cryptography & Network Security
  • Machine Learning for Cybersecurity
  • Cloud Security & Zero Trust Architecture
  • Digital Forensics & Incident Response
  • Secure Software Development & DevSecOps
  • Threat Intelligence & SOC Operations
  • Deep Learning
  • Reinforcement Learning
  • Risk Management & Compliance (ISO 27001, GDPR)
  • Penetration Testing & Ethical Hacking
  • Blockchain
  • Management of High Availability Systems
  • Malware Analysis
  • Internet of Things Security
  • Database Security
  • Text Mining
  • Distributed Systems
Extracurricular Activities:
  • Full-time studies September 2022 – July 2023, September 2023 – November 2024
  • Research focus on AI-driven threat detection and automated security orchestration
  • Specialized training in cybersecurity frameworks and offensive/defensive security techniques
  • Top 5 Cyber Africa Forum Capture the Flag Challenge (CTF)
  • Program in partnership with Ecole Polytechnique (l’X)
B.Sc. Computer Science (Magna Cum Laude)
CGPA: 3.9 out of 4
Taken Courses:
  • Data Structures and Algorithm
  • Information Security
  • Operating System
  • Software Engineering
Extracurricular Activities:
  • Graduated with Magna Cum Laude honors (July 2020)
  • Completed 24 credits at University of Alabama at Birmingham, USA
  • International academic exchange providing cross-cultural educational experience
  • Strong foundation in software engineering, algorithms, and system design
English & Computer Science
Extracurricular Activities:
  • Credits transferred and integrated into BSc. Computer Science degree
Ecole William Ponty
2010-2013
High School Diploma in Electronics

Recent Posts