<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Almamy &lt;- Thy Engineer | Blog</title><description>Articles on cybersecurity, DevSecOps, data engineering, and cloud infrastructure.</description><link>https://almamy.net/</link><language>en-us</language><item><title>Shift-Left Security: Integrating SAST, DAST, and SCA in GitLab CI/CD</title><link>https://almamy.net/blog/shift-left-security-gitlab-cicd/</link><guid isPermaLink="true">https://almamy.net/blog/shift-left-security-gitlab-cicd/</guid><description>How we reduced critical vulnerabilities by 70% by embedding security scanning directly into the development pipeline—without slowing engineers down.</description><pubDate>Sat, 28 Mar 2026 00:00:00 GMT</pubDate><category>DevSecOps</category><category>devsecops</category><category>gitlab</category><category>sast</category><category>dast</category><category>sca</category><category>cicd</category><category>security</category></item><item><title>Sécurité Shift-Left : Intégrer SAST, DAST et SCA dans GitLab CI/CD</title><link>https://almamy.net/blog/shift-left-security-gitlab-cicd-fr/</link><guid isPermaLink="true">https://almamy.net/blog/shift-left-security-gitlab-cicd-fr/</guid><description>Comment nous avons réduit les vulnérabilités critiques de 70 % en intégrant les analyses de sécurité directement dans le pipeline de développement, sans ralentir les ingénieurs.</description><pubDate>Sat, 28 Mar 2026 00:00:00 GMT</pubDate><category>DevSecOps</category><category>devsecops</category><category>gitlab</category><category>sast</category><category>dast</category><category>sca</category><category>cicd</category><category>security</category></item><item><title>Kubernetes Security Hardening: The Controls That Actually Matter in Production</title><link>https://almamy.net/blog/kubernetes-security-hardening/</link><guid isPermaLink="true">https://almamy.net/blog/kubernetes-security-hardening/</guid><description>After auditing a dozen production clusters, the same misconfigurations appear again and again. Here are the controls that have the highest impact-to-effort ratio.</description><pubDate>Sun, 15 Mar 2026 00:00:00 GMT</pubDate><category>Security</category><category>kubernetes</category><category>containers</category><category>security</category><category>devsecops</category><category>rbac</category><category>network-policy</category></item><item><title>Durcissement de la Sécurité Kubernetes : Les Contrôles qui Comptent en Production</title><link>https://almamy.net/blog/kubernetes-security-hardening-fr/</link><guid isPermaLink="true">https://almamy.net/blog/kubernetes-security-hardening-fr/</guid><description>Après avoir audité une douzaine de clusters en production, les mêmes mauvaises configurations réapparaissent. Voici les contrôles avec le meilleur ratio impact/effort.</description><pubDate>Sun, 15 Mar 2026 00:00:00 GMT</pubDate><category>Security</category><category>kubernetes</category><category>containers</category><category>security</category><category>devsecops</category><category>rbac</category><category>network-policy</category></item><item><title>Medallion Architecture in Practice: Lessons from Production Data Pipelines</title><link>https://almamy.net/blog/medallion-architecture-data-pipelines/</link><guid isPermaLink="true">https://almamy.net/blog/medallion-architecture-data-pipelines/</guid><description>How we implemented Bronze-Silver-Gold layers with Apache Airflow and Delta Lake for a West African financial institution — what worked, what we&apos;d do differently.</description><pubDate>Thu, 05 Mar 2026 00:00:00 GMT</pubDate><category>Data</category><category>data-engineering</category><category>medallion</category><category>apache-airflow</category><category>delta-lake</category><category>python</category><category>dbt</category></item><item><title>L&apos;Architecture Médaillon en Pratique : Leçons de Pipelines de Données en Production</title><link>https://almamy.net/blog/medallion-architecture-data-pipelines-fr/</link><guid isPermaLink="true">https://almamy.net/blog/medallion-architecture-data-pipelines-fr/</guid><description>Comment nous avons implémenté les couches Bronze-Silver-Gold avec Apache Airflow et Delta Lake pour une institution financière ouest-africaine : ce qui a fonctionné, ce que nous referions différemment.</description><pubDate>Thu, 05 Mar 2026 00:00:00 GMT</pubDate><category>Data</category><category>data-engineering</category><category>medallion</category><category>apache-airflow</category><category>delta-lake</category><category>python</category><category>dbt</category></item></channel></rss>