SM
Portrait of Suleyman Musayev

Suleyman Musayev

Staff-Track Backend Engineer · Distributed Systems & Scale

Sole architect of a distributed auth engine serving 10k+ daily users at a top-10 PKI vendor. Open to staff and senior backend roles at scale.

  • Available now
  • Ashgabat, Turkmenistan (UTC+5)
  • Remote · global
  • Open to relocation · visa sponsorship

Experience

Where I've built and shipped.

A decade across security engineering, product engineering, and quantitative finance. Each role taught me a different way to think about reliability under pressure.

  1. Software Engineer · SSL.com

    Remote · top-10 global PKI vendor

    Aug 2023 — Present

    Sole architect and lead engineer of a high-scale authentication and identity platform at a top-10 global PKI vendor. Designed and scaled the backend infrastructure enabling 10× growth in TLS, code signing, and identity certificate issuance.

    • Sole architect of the company-wide authentication and identity platform supporting tens of thousands of daily users.
    • Designed OAuth2, OIDC, SAML, and session-based flows including secure cross-domain authentication and external IdP integrations.
    • Built a fully automated certificate issuance pipeline and complex API endpoints for certificate lifecycle management.
    • Designed fraud detection combining third-party services with custom analytics on behavioral patterns, IP intelligence, and device fingerprinting; cut SMS pumping fraud loss to zero.
    • Implemented protections against account takeover, replay attacks, session hijacking, and internal threats (credential leaks, privileged misuse).
    • Defended against advanced and state-level threat actors; led the redesign of the auth engine for high-volume load and long-term scalability.
    • Ruby on Rails
    • PostgreSQL
    • Redis
    • OAuth2
    • OIDC
    • SAML
    • PKI
    • Sidekiq
    • AWS
  2. Software Engineer · Midstay

    Remote · early engineer, 5-person team, ~1k DAU

    Aug 2022 — Jan 2024

    Early engineer on a 5-person team building a consumer product with ~1k DAU. Owned end-to-end features across the Rails stack and led incident response. Final 5 months were a contract wind-down with gradual transition of responsibilities to the rest of the team while ramping up at SSL.com.

    • Reduced backend latency by up to 5× through query optimization, indexing, and caching.
    • Improved user retention by 15% through targeted performance and product improvements.
    • Shipped 4 major product features in 12 months, supporting multiple product pivots.
    • Identified and mitigated critical security vulnerabilities; led incident response against advanced attackers.
    • Ruby on Rails
    • PostgreSQL
    • Redis
    • JavaScript
    • Stimulus
    • AWS
  3. Quantitative Trading Operations · Private Trading Firm

    Built and managed automated hedging across brokers, markets, and instruments

    Mar 2020 — May 2021

    Built and managed automated hedging strategies across multiple brokers, markets, and financial instruments. Background in quantitative finance taught me to think in risk, edge cases, and systemic failure modes — a mindset I now apply directly to security engineering.

    • Reduced hedging costs by up to 35% through strategy optimization and execution improvements.
    • Managed a large leveraged portfolio with rigorous risk control and capital efficiency.
    • Self-taught Ruby in parallel during this role, transitioning to engineering by mid-2022.
    • Python
    • C++
    • SQL

Stack

The tools I reach for.

Ruby on Rails is home, but the job is to pick the right tool. I've shipped production code in everything below.

Languages
  • Ruby
  • JavaScript
  • Python
  • C
  • C++
  • SQL
Frameworks
  • Ruby on Rails
  • Sinatra
  • Hanami
  • Stimulus
  • Hotwire
  • Turbo
Data
  • PostgreSQL
  • Redis
  • Elasticsearch
  • Sidekiq
  • Kafka
Auth & Identity
  • OAuth2
  • OpenID Connect
  • SAML
  • JWT
  • Session-based
  • mTLS
  • WebAuthn
Security
  • PKI
  • Certificate Lifecycle
  • Device Fingerprinting
  • Behavioral Analytics
  • Fraud Detection
  • MPIC
Infrastructure
  • Docker
  • Linux
  • Nginx
  • AWS
  • GitHub Actions
  • Datadog

Open source

Code I've put in the world.

Libraries I built or maintain. Most live at the intersection of authentication, cryptography, and security tooling for Ruby.

Writing

Notes from the field.

Practical write-ups on the security and authentication problems I've solved in production.

Contact

Let's build something secure together.

I'm currently open to senior, staff, security, iam, and product engineering roles. The fastest way to reach me is to book a 15-minute intro call. Email and LinkedIn also work.

Download résumé

Choose the variant that matches the role you have in mind.