Ammar Yasser Mohamed Software systems engineering · Applied AI

Software systems engineering · Applied AI · Distributed systems

Ammar Yasser Mohamed

I build and operate production software systems — distributed backends, payment infrastructure, real-time platforms — and I want to study how those systems should be designed once parts of them are written and operated by AI.

Six years of shipping software that is not permitted to fail has left me with questions production work cannot settle on its own: how an autonomous change should be verified before it reaches users, how to bound what an agent is allowed to do, and how to separate a reasoning failure from a tool failure when something goes wrong. Those questions are what I want to take into graduate research.

My interest is in the reliability of software systems that language models participate in building and operating — not whether a model can produce a working change, but whether that change can be checked, constrained, attributed, and safely rejected.

I came to this from the operational side. Owning a payment gateway teaches you that correctness is not a target but a precondition; running a multi-tenant platform teaches you that isolation failures are found by users rather than by tests. When I began putting language models to work against these same systems, the interesting failures were not wrong answers — they were confident actions taken on incomplete state, and the absence of any record adequate to reconstruct why. Production gave me the problem; it cannot give me the method. That is what I am looking for in graduate study.

Reliable AI agents in software systems

Agent architectures with explicit permissions, validation layers, recovery paths, and execution traces a human can actually read.

AI-assisted software engineering

Evaluating model-generated changes in mature codebases against the criteria engineers actually apply: regression risk, maintainability, security, and operational cost.

Verification and evaluation methods

Detecting incorrect actions, hallucinated assumptions, unsafe tool use, and failure modes that surface only in long-running workflows.

Distributed and cloud systems

System behaviour across APIs, databases, queues, caches, and event-driven services, and how that behaviour changes when an autonomous component sits inside the loop.

Software security and access control

Constraining capability through scoped credentials, authorization boundaries, policy checks, and auditable tool access.

Research-adjacent projects

Skin-lesion detection and analysis

Machine learning

A convolutional classifier for dermoscopic images of moles, trained to separate benign lesions from those warranting review. The genuinely difficult part was not the network but the evaluation: in a screening context a false negative and a false positive carry very different costs, so the choice of operating point — not headline accuracy — decides whether the model is useful at all.

Python · deep learning · convolutional networks · medical image classification

Pathfinding visualizer

Algorithms

An interactive comparison of shortest-path algorithms on a grid — A*, Dijkstra, and breadth-first search — animating frontier expansion step by step, so the difference between an informed and an uninformed search is something you watch rather than something you are told.

JavaScript · A* · Dijkstra · breadth-first search · heuristic search

react-toast-plus

Open source

A notification library for React, published on npm under the MIT licence and used in production applications. Maintaining a public package makes the API the product: every change is a compatibility decision taken on behalf of people who already depend on it, which is a different discipline from writing code only your own team consumes.

React · TypeScript · npm · MIT

Production systems

Moneeb

Distributed

A delegated-Umrah marketplace matching requesters with providers on the ground in Mecca. Matching is geospatial, handled in PostGIS; fulfilment runs through a background job pipeline so that a slow provider response never blocks the request path; and order state streams to both parties over websockets. Built as a Dockerised monorepo — an API, a public web app, and an admin console sharing one type contract.

NestJS · Next.js · PostgreSQL / PostGIS · Redis / BullMQ · Socket.io · Turborepo · Docker

Babylon Gate

Payments

Payment-gateway infrastructure that merchants integrate to accept payments across their own sites and applications, with a merchant dashboard for reconciliation. This is the clearest case for the reliability questions above: retries have to be idempotent, a partial failure has to resolve to exactly one outcome, and every state transition has to be reconstructable long after the fact.

NestJS · Next.js · TypeORM · PostgreSQL · JWT / OAuth 2.0 · OpenAPI

Kasir Live

Real time

A social live-streaming and short-video platform with broadcasts, voice rooms, and a gifting system. Real-time media imposes a hard latency budget on everything at once — ingest and transcoding, presence tracking, and event fan-out to an audience — and which of those binds first changes with the shape of the room.

Next.js · Laravel · Agora · WebSockets · Redis · FFmpeg

Markaz Falasteen

Multi-tenant

A management platform for a humanitarian organisation, with a Flutter mobile client over a REST backend. Tenancy is the architectural question here: each organisation runs on isolated data under its own configuration, and that isolation has to hold at the query layer rather than by convention.

Flutter · Dart · REST · multi-tenant data isolation

Talab Menu

Systems

A restaurant platform where diners scan a QR code to browse, order, and pay at the table while owners run service from a central dashboard. Orders route to the kitchen in real time, which makes ordering less a form-submission problem than a small distributed workflow with its own failure states.

Next.js · TypeScript · Turborepo · Docker

Further work includes Nestro (a smart-home control panel with AI-assisted automation suggestions), Secure-Today and Linkcom Tech (bilingual Arabic/English corporate platforms), and contributions to the iHealth & Wellness member platform.

Principal Full-Stack Engineer

First Code · Remote
Jun 2025 — present
  • Own the backend architecture: service boundaries, and the standards by which new services are built, reviewed, and deployed.
  • Designed the PostgreSQL data model and indexing strategy, with Redis caching on hot paths.
  • Implemented authentication and API security — JWT, rate limiting, and data encryption.
  • Established CI/CD on GitHub Actions, along with team coding standards and code-review practice.
  • Containerised services with Docker and deployed them on AWS.
  • Mentor engineers and give architectural guidance through review.

Senior Full-Stack Engineer

iHealth and Wellness Foundation · Contract
Feb 2024 — Aug 2025
  • Led development of the iHealth education platform on a microservices architecture.
  • Defined technical architecture and roadmap jointly with product, design, and backend teams.
  • Refactored legacy code to reduce technical debt and bring the codebase under a consistent standard.
  • Built third-party API integrations and automated manual operational workflows.

Senior Full-Stack Engineer

Freelance · Self-employed
Jan 2020 — present
  • Delivered 20+ production web applications end to end, owning architecture, backend, and frontend.
  • Implemented backend services with NestJS and GraphQL APIs.
  • Migrated legacy systems to modern frameworks to make them maintainable again.
  • Ran code review with client teams to hold standards and keep technical debt in check.

Full-Stack Developer

Mensa Philosophical Circle · Contract
Oct 2023 — Dec 2024
  • Built an education platform for institutions with configurable learning-management modules.
  • Designed a multi-tenant architecture giving each institution isolated data and its own configuration.
  • Implemented the backend in NestJS and PostgreSQL, with indexing tuned for peak load.
  • Added real-time chat and notifications over websockets.
  • Implemented WCAG 2.1 accessibility and responsive layout across devices.
Core
TypeScript · JavaScript (ES6+) · NestJS · Node.js · Express · React · Next.js · PostgreSQL · Redis · Prisma / TypeORM
Strong
AWS · REST and GraphQL API design · WebSockets / Socket.io · microservices and event-driven architecture · Docker · multi-tenant SaaS · monorepos (pnpm, Turborepo) · JWT / OAuth 2.0 · MongoDB · CI/CD · system design
Working
Python (FastAPI, Django) · TensorFlow / PyTorch · Kubernetes · Terraform · gRPC · Kafka · RabbitMQ · Elasticsearch · React Native · Flutter · Vue · Angular · GCP / Azure · Grafana / Sentry
Degree
Bachelor of Engineering, Computer Engineering May University in Cairo (MUC), Cairo, Egypt
Certification
AWS Certified Solutions Architect Amazon Web Services
Certification
Microsoft Certified: Azure Developer Associate Microsoft
Languages
Arabic — native · English — C2 · Japanese — A1 English at full professional proficiency; previously IELTS-certified, currently retaking for an in-date score.
Study mode
Open to online, hybrid, and on-campus programmes Working remotely from Riyadh; able to study alongside employment or to relocate.
References
Available on request Engineering leadership and client references from the roles listed above.

This page lists no publications, because I have none yet. Everything above is work I have done and can evidence — source code, a deployed system, or a credential that can be checked.

I am glad to discuss research fit, or to talk through any of the systems above in more detail.

Based in Riyadh, Saudi Arabia