01
Mature defences, honest test
EDR everywhere, a working SOC, a clean pentest. You still want to know how far an attacker already inside could get and which telemetry would catch them.
Consulereit · Independent cybersecurity
Independent senior cybersecurity consultant in the Netherlands. I work with boards, CISOs, and security teams on offensive testing, architecture reviews, and SOC design — in defence, critical infrastructure, healthcare, and industry.
What I do
01
Web, infrastructure, cloud, and mobile pentests, plus assumed-breach red team operations. Modelled on real adversary behaviour, not a checklist.
Read more
02
Architecture and programme reviews: how your environment is put together, where it is brittle, and what to change first. Delivered as written recommendations.
Read more
03
Design or rationalise an in-house security operations capability: detection coverage, tooling, staffing model. Vendor-neutral, with a three-year horizon.
Read more
Why independent
With a large consultancy, you meet the senior people in the pitch and work with junior staff in delivery. Here, you get the person you met.
No sales-to-delivery handoff, no partner overhead. The person scoping your engagement is the person doing the technical work and presenting to your board.
Scenarios
01
EDR everywhere, a working SOC, a clean pentest. You still want to know how far an attacker already inside could get and which telemetry would catch them.
02
Overlapping SOC tools and a seven-figure renewal coming up. You want an independent view of what each tool earns its keep doing before you sign for another three years.
03
An IoT or OT-adjacent environment has never had an honest external test. The team wants findings they can fix, not a stack of CVSS numbers.
Most engagements begin with a 30-minute conversation. If I am not the right fit, I will say so and point you to someone who is.