mo khan

Software Developer

mo@mokhan.ca | linkedin.com/in/xlgmokha | www.mokhan.ca

Selected Experience

Senior Backend Engineer, GitLab - Authorization (Jan 2023 - Feb 2026)

  • Unblocked Cells architecture by adding organization-scoped keys to authorization database tables, enabling the database sharding effort
  • Extended the custom roles system in Ruby on Rails by adding fine-grained permissions for enterprise access control
  • Conducted early research for a next-generation authorization architecture in Go, evaluating Cedar policies, SpiceDB, and Envoy proxy integration

Senior Software Developer, Command Zero (May 2022 - Dec 2022)

  • Ensured secure API access by building an API gateway secured by JWTs, Casbin policies and OpenID Connect
  • Enabled backend teams to prototype quickly by building REST API endpoints to manage user permissions and membership

Senior Software Engineer, GitHub - Dependabot (Feb 2021 - Feb 2022)

  • Secured enterprise software supply chains by porting automated dependency updates (Dependabot) to GitHub Enterprise Server

Senior Backend Engineer, GitLab - Composition Analysis (Jul 2019 - Nov 2020)

  • Enabled license compliance for air-gapped environments by developing offline scanning support for high-sensitivity organizations
  • Broadened language ecosystem coverage by adding license scanning support for Conan, Mono, Pipenv and more
  • Sped up CI pipelines for license scanning users by shrinking Docker images and maintaining Debian packages
  • Grew open-source community adoption by reviewing and shipping community contributions to the license analyzer

Software Engineer IV, Cisco - Advanced Malware Protection (AMP) (Sep 2013 - Jul 2019)

  • Secured 14M enterprise devices for 100+ Fortune 500 companies and governments across the world
  • Unified customer login experience across all Cisco Security products by building a single sign on system
  • Mentored colleagues and resolved difficult technical issues through pair programming, presentations, and hands-on support

Previous Experience

Data Shapers, MediaLogic, ThoughtWorks, eCompliance, ARC Resources, Uppercut (2004 - 2013)

Open Source

Education