Since this commit sharplispers/ironclad@4c689d0 Ironclad supports libsecp256k1. It would be more convenient to not depend on external libraries with cffi but use cl-native code. If you need some help I can try to assists (even though my cryptographic knowledge is also limited).