HKO Engineering

Product Engineering · Cloud Architecture · DevSecOps · Security Research

We build, scale, and secure production systems.
End-to-end technical delivery — from your spec to shipped product.

100×
Infra scaling
at EdgeIQ
99.95%
Uptime SLA
over 2+ years
<4 wks
First contact to
working PoC
11
Certifications
AWS, CNCF, Linux
Product Engineering

End-to-end systems — from first commit to production.

Go, TypeScript, Svelte, React. APIs, data pipelines, AI integrations.

This looks like
  • Building an IoT platform processing billions of events
  • Shipping an AI SaaS from zero to private beta
  • Taking a desktop tool to the cloud in under 3 months
Cloud Architecture

Kubernetes at every scale. Air-gapped government clouds to hyperscale SaaS.

AWS, Terraform, Helm. Multi-cloud, hybrid, on-premises.

This looks like
  • Designing deployment strategies for air-gapped environments
  • Scaling infrastructure 100× without downtime
  • Building multi-tenant cloud platforms with security isolation
DevSecOps & Supply Chain

Secure-by-default pipelines. Container signing, SBOMs, vulnerability management.

Cosign, Trivy, Kyverno, GitHub Actions, GitLab CI.

This looks like
  • Implementing supply chain security for regulated environments
  • Reducing false-positive alerts by 95% with observability
  • Building open-source tooling for container image verification
Security Research

We find the vulnerabilities scanners cannot reach.

Source audit, black-box testing, cryptographic spec conformance. Kubernetes, Rails, Go, OpenStack.

This looks like
  • Auditing a Rails application down to a published CVE
  • Testing multi-tenant isolation on managed Kubernetes
  • Reviewing crypto implementations against FIPS and RFC requirements
How we test →

Also available, per engagement Product Design & UX, Growth & Content, and Strategy & Research — senior collaborators from our network, brought in when your engagement needs them. How we engage →

Selected Work
Security Research — Vulnerability Discovery & Disclosure

Source audits, cloud platform testing, and cryptographic spec review across production infrastructure and upstream open source. Most findings are reported privately; CVE-2026-46386 is one that is public.

Kubernetes Ruby on Rails Go OpenStack Semgrep AFL++ MITRE ATT&CK
How we test →
Chief of Staff — AI Executive Assistant

An AI-powered inbox for startup CEOs that reads everything and surfaces only what matters. Solo-built, currently in private beta.

Next.js 15 TypeScript PostgreSQL Redis Claude API AWS
getcos.ai →
OCI Explorer — Container Supply Chain Inspector

Open-source tool that visualizes container image structure, SBOMs, signatures, and vulnerabilities. Shipped in 2 weekends, 10 releases.

Go Svelte 5 Tailwind CSS 4 Trivy Cosign SLSA
ociexplorer.dev →
EdgeIQ Symphony — IoT Device Management at Scale

Platform for managing millions of connected devices. Scaled 100× to 10K msg/sec while maintaining 99.95% uptime over 2+ years.

Go TypeScript AWS Kubernetes MQTT DataDog OpenTelemetry
edgeiq.ai →
milia.io — Cloud Infrastructure for Tax Software

Built the complete AWS cloud platform for a German tax & accounting SaaS. Platform acquired by Visma.

AWS CDK ECS Fargate PostgreSQL Spring Boot Next.js
milia.io →
SLX.cloud — Cloud IDE for Multicore C/C++ Optimization

Brought a desktop compiler analysis tool to the browser as a SaaS product. Go-live in under 3 months. 65% of qualified leads at peak. Company acquired by AMD/Xilinx.

Eclipse Che Docker Kubernetes AWS D3.js clangd
Eclipse Che · Archive →

Working on something interesting?

Located in Europe (CET). Remote-first. US timezone overlap available.