
About
Cybersecurity instructor at 22.
Cybersecurity Instructor at PNY Trainings, teaching network security, web application security, and penetration testing, and an Information Security Analyst at Cyberlegends (remote). Holds a Diploma in Cybersecurity from Cyberlegends (2024–2025) including a full security internship, and is currently completing a BS in Computer Science at Virtual University of Pakistan. Certified in cybersecurity education (CCEP) and red team operations management (CRTOM).
Certifications
Experience
Cyber Security Instructor, PNY Trainings, Lahore
2025–Present
- Teaches network security, web application security, and penetration testing.
- Builds course material directly from live offensive/defensive work, not recycled slides.
- Runs hands-on labs covering the same tooling used in real engagements.
Information Security Analyst, Cyberlegends · Remote
October 2025–Present
Cyber Security Intern, Cyberlegends
April 2025–October 2025
- Completed a full security internship as part of the Cyberlegends cybersecurity diploma.
- Worked hands-on with vulnerability assessment and penetration testing fundamentals.
- Applied classroom material to guided, supervised security exercises.
Education
BS Computer Science, Virtual University of Pakistan
2025–Present · In Progress
Diploma in Professional Cybersecurity, Cyberlegends
April 2024–April 2025 · Completed
Skills
Offensive Security
Penetration Testing, Exploit Development, Red Team Operations, Web App Security, Binary Exploitation, MITM Attacks
Defensive Security
Vulnerability Assessment, Incident Response, Network Security, Threat Analysis, SIEM Operations, Malware Analysis
Tools
Kali Linux, Burp Suite, Wireshark, Nmap, Metasploit, ZAP, Maltego
Languages
Python, Bash
Networking
Firewall Configuration, Network Monitoring, Honeypot Deployment, Packet Analysis, Intrusion Detection
Teaching
I teach practical cybersecurity — how attacks actually work, how defenses actually hold up, and where the gap between the two usually is. Most of what I teach is the same material I use when I'm building or auditing KingSec — this isn't theory I picked up once and now recite.
CEH v13
I'm currently working through CEH v13 — Certified Ethical Hacker. I'm a candidate, not yet certified, and I'd rather say that plainly than round up.
Why KingSec exists
KingSec started from a specific problem: SMBs and IT admins need real vulnerability management without handing their attack surface data to a third-party cloud. Most of the market solves this by centralizing everything in someone else's SaaS. KingSec is local-first instead — it runs where the data already lives. It's also the first release in a longer pipeline; the rest of the roadmap is on the work page.
Read the full case study →How I work
KingSec's own rule is “trust is our marketing, honesty is our conversion mechanism” — and I hold this site to the same standard. Every non-trivial claim here carries an evidence tag: E1 for something I directly ran or observed, E2 for code I reviewed but didn't execute, E3 for something inferred rather than measured, E4 for a judgment call. If a claim can't be tiered, it doesn't go on the site yet.