Event-driven notification platform
Independently architected and built a Kotlin/Spring Boot service that isolated notification traffic and provider failures from a core energy-trading platform.
I work where backend architecture, reliability, and product security meet — particularly in payments, fintech, and digital trading platforms.
A few systems and engineering problems that better explain how I work than a list of technologies can.
Independently architected and built a Kotlin/Spring Boot service that isolated notification traffic and provider failures from a core energy-trading platform.
Co-designed backend services for banks and merchants, integrating multiple payment processors and handling transaction flows across payment rails.
Led security architecture and PCI compliance for a SoftPOS platform, translating security requirements into application, cryptographic, mobile, network, and Kubernetes controls.
The recurring concerns behind my design decisions across payments, cloud services, and security-critical platforms.
Retries are normal in distributed systems. Duplicate side effects should not be.
External providers, queues, and downstream dependencies should fail without dragging core workflows down with them.
Security boundaries should rely on explicit identity, scoped authorization, managed secrets, and verifiable service relationships.
Architecture is easier to keep correct when the code reflects transaction rules and real business boundaries.
From payment cryptography and SoftPOS to distributed backend services for digital energy trading.
Build and secure core-platform features in Java/Kotlin and Spring Boot, remediate application/cloud security findings, and independently delivered the event-driven notification service shown above.
Co-designed payment-platform backend architecture and led security architecture and PCI compliance for a SoftPOS platform, while remaining hands-on in production services and transaction processing.
Worked on the same SoftPOS product and engineering team before the transition to Fikr Jadid, with a strong focus on payment integrations and HSM-backed security work.
Computer Engineering at the German University in Cairo, followed by an M.Sc. in Informatics at the Technical University of Munich.
My M.Sc. thesis at TUM studies how structurally characterized forms of collusive market manipulation can be mapped to mitigation mechanisms through the traces available to digital RFQ platforms.
Kept compact on purpose — the case studies above show how I actually use them.
Java · Kotlin · Spring Boot · Spring Data JPA · Hibernate · Spring Security · Spring Cloud Gateway · JUnit · Mockito
Microservices · distributed systems · event-driven architecture · REST · concurrency · fault tolerance · idempotency · multi-tenancy
AWS ECS · SQS · EventBridge · DynamoDB · IAM · Secrets Manager · Docker · Kubernetes · OpenShift · Istio
Oracle · PostgreSQL · MySQL · DynamoDB · Redis · Kafka · RabbitMQ
TLS/mTLS · OAuth2/JWT · Keycloak/RBAC · HSM · DUKPT · Vault · white-box cryptography · zero-trust architecture
SoftPOS · ISO 8583 · nexo / ISO 20022 · PCI MPoC · PCI PIN · PCI DSS
I’m based in Munich and available for full-time opportunities from December 2026.