I'm a Cloud Security Engineer & DevSecOps practitioner

I build secure AWS and Kubernetes platforms, hardened pipelines, least-privilege identity, and compliance automation mapped to HIPAA, SOC2 and PCI-DSS

Previously ran a cloud security consultancy designing HIPAA-compliant AWS architectures and paved-road platforms that let engineering teams ship fast without waiting on security reviews. Open to full-time Security Engineer / DevSecOps roles — Toronto / remote Canada.

Manan Qayas
What I Focus On

Code Security

Security built in before anything ships. Secure SDLC, supply-chain and dependency scanning, secrets detection, and infrastructure-as-code guardrails so flaws are caught in the pipeline, not in production.

Cloud Security

Hardened cloud foundations on AWS (plus Azure and GCP). Posture management, least-privilege identity, and continuous compliance mapped to HIPAA, SOC 2, PCI-DSS, and OSFI audit-ready from day one.

Paved Roads & Platform

Secure defaults for engineering teams. Terraform modules, policy-as-code gates, and golden pipelines, so developers ship fast without waiting on security reviews.

Runtime Security

Protection where workloads actually run. Real-time threat detection, Kubernetes and container defense, and incident response, keeping production secure and continuously compliant.