About Kamal
- Shift-Left Security: Systematic integration of SAST & SCA scans, proactive monitoring and remediation of vulnerabilities from the early stages of development.
- IAM Modernization: Implementation of solutions such as Keycloak, AWS Cognito, SSO, MFA, and OAuth to ensure secure and centralized access management.
- Automation: Design of CI/CD pipelines (GitLab CI, ArgoCD) and Infrastructure as Code (Ansible, Terraform) to make processes continuous, reproducible, and traceable.
- Performance: Optimized workflows that shorten release cycles.
- Compliance: Adherence to regulatory requirements (GDPR, ISO 27001, etc.) through integrated controls.
- Resilience: Robust architectures, ready to face threats and incidents.
French
Native or bilingual
English
Fluent
Experience
- Bouygues TelecomDevSecOps ArchitectTELECOMMUNICATIONSJanuary 2026 - Today (5 months)Vélizy-Villacoublay, FranceDevSecOps Architect at Bouygues TelecomAs a DevSecOps Architect at Bouygues Telecom, I am responsible for the maintenance, security, and evolution of the multi-vendor CI/CD chain for the integration and deployment of 5G core network changes.My responsibilities include participating in architectural choices, integrating DevSecOps practices (security, automated scans), and contributing to the pipeline roadmap (Kubernetes, infrastructure, application).Key Expertise:Kubernetes/OpenShift, GitLab CI/CD, Python, Ansible, REST API, DevSecOps practices.
- EDFDevSecOps EngineerENERGY AND UTILITIESNovember 2023 - December 2025 (2 years and 1 month)Nanterre, FranceDevOps Consultant at EDF:As a DevOps Consultant at EDF, I contributed to the modernization of Access Management (ModAM) by implementing a sovereign authentication platform based on Red Hat Build of Keycloak (RHBK) deployed on OpenShift.My responsibilities included IAM architecture design, CI/CD pipeline implementation (GitLab CI, ArgoCD) integrating security scans (SAST/SCA with SonarQube, Checkmarx), analysis and remediation of vulnerabilities (CVEs) on Keycloak extensions, and development of the monitoring plan (SIEM/SOC). I also developed installation scripts and POSTMAN collections for Keycloak API administration.Key Expertise: Keycloak (RHBK), OpenShift, GitLab CI/CD, ArgoCD, SonarQube, Checkmarx, IAM, Application Security, Automation.
- PSADevSecOps ConsultantAUTOMOBILEMarch 2021 - October 2023 (2 years and 7 months)Vélizy-Villacoublay, FranceDevSecOps Consultant at PSA BanqueAs a DevSecOps Consultant at PSA Banque, I conducted a feasibility and compatibility study for integrating the GIGYA authentication solution into the existing environment.My missions included performing benchmarks (GIGYA vs AWS Cognito), writing architecture documents (DAT/DAF), and supporting teams in creating an MVP roadmap. I implemented CI/CD pipelines via GitLab CI to automate secure deployment, integrating SSO and DevSecOps practices with tools like SonarQube, Trivy, and Semgrep, while ensuring compliance with security standards (MFA, OAuth).Key Expertise: GIGYA, AWS Cognito, GitLab CI, SonarQube, Trivy, Semgrep, SSO, MFA, OAuth, Security Architecture.
Recommendations
Be the first to recommend Kamal
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4