Abdul Mannan Qayyum
Abdul Mannan Qayyum, cybersecurity instructor

About

Cybersecurity instructor at 22.

Cybersecurity Instructor at PNY Trainings, teaching network security, web application security, and penetration testing, and an Information Security Analyst at Cyberlegends (remote). Holds a Diploma in Cybersecurity from Cyberlegends (2024–2025) including a full security internship, and is currently completing a BS in Computer Science at Virtual University of Pakistan. Certified in cybersecurity education (CCEP) and red team operations management (CRTOM).

Certifications

Experience

Cyber Security Instructor, PNY Trainings, Lahore

2025–Present

  • Teaches network security, web application security, and penetration testing.
  • Builds course material directly from live offensive/defensive work, not recycled slides.
  • Runs hands-on labs covering the same tooling used in real engagements.

Information Security Analyst, Cyberlegends · Remote

October 2025–Present

Cyber Security Intern, Cyberlegends

April 2025–October 2025

  • Completed a full security internship as part of the Cyberlegends cybersecurity diploma.
  • Worked hands-on with vulnerability assessment and penetration testing fundamentals.
  • Applied classroom material to guided, supervised security exercises.

Education

BS Computer Science, Virtual University of Pakistan

2025–Present · In Progress

Diploma in Professional Cybersecurity, Cyberlegends

April 2024–April 2025 · Completed

Skills

Offensive Security

Penetration Testing, Exploit Development, Red Team Operations, Web App Security, Binary Exploitation, MITM Attacks

Defensive Security

Vulnerability Assessment, Incident Response, Network Security, Threat Analysis, SIEM Operations, Malware Analysis

Tools

Kali Linux, Burp Suite, Wireshark, Nmap, Metasploit, ZAP, Maltego

Languages

Python, Bash

Networking

Firewall Configuration, Network Monitoring, Honeypot Deployment, Packet Analysis, Intrusion Detection

Teaching

I teach practical cybersecurity — how attacks actually work, how defenses actually hold up, and where the gap between the two usually is. Most of what I teach is the same material I use when I'm building or auditing KingSec — this isn't theory I picked up once and now recite.

CEH v13

I'm currently working through CEH v13 — Certified Ethical Hacker. I'm a candidate, not yet certified, and I'd rather say that plainly than round up.

Why KingSec exists

KingSec started from a specific problem: SMBs and IT admins need real vulnerability management without handing their attack surface data to a third-party cloud. Most of the market solves this by centralizing everything in someone else's SaaS. KingSec is local-first instead — it runs where the data already lives. It's also the first release in a longer pipeline; the rest of the roadmap is on the work page.

Read the full case study →

How I work

KingSec's own rule is “trust is our marketing, honesty is our conversion mechanism” — and I hold this site to the same standard. Every non-trivial claim here carries an evidence tag: E1 for something I directly ran or observed, E2 for code I reviewed but didn't execute, E3 for something inferred rather than measured, E4 for a judgment call. If a claim can't be tiered, it doesn't go on the site yet.