Skip to content

About

Senior, independent,
deeply technical.

Independent cybersecurity consultant based in the Netherlands, working under my own name through Consulereit. Offensive testing, security architecture review, and SOC design — for organisations in defence, critical infrastructure, healthcare, and industry.

I take one consulting engagement at a time.

The route here

I started on the blue side, as a tier-2 SOC analyst for a global managed security provider — monitoring, triage, and malware analysis for enterprise customers. That is where I learned how incidents actually unfold and where detection fails.

I then moved into offensive consulting: first at a Dutch practice, then for several years inside the security lab of a large telecom operator. The work spanned pentesting, red team operations, detection engineering, and IoT and OT security, with assignments in defence and critical-infrastructure environments.

I went independent to do deep, long-form work for one organisation at a time — and to do the work myself rather than oversee it.

Credentials

OSCE3OSCPOSWEOSEPOSEDCRTO

OSCE3 bundles OSWE (source-level web exploitation), OSEP (evasion and internal operations), and OSED (Windows exploit development); OSCP sits alongside them. All are examined in live, hands-on labs.

MSc Advanced Cyber Security, focused on offensive research and detection engineering.

Eight-plus years of full-time security work across SOC analysis, pentesting, red team, detection engineering, and advisory.

Discuss a specific situation?

A short call is the easiest way to start.