Tell me where you stand and I'll tell you what comes next
A short conversation is usually enough to know whether you have a real problem, how big it is, and in what order to solve it. No obligations and no jargon nobody uses.
Get in touch →Data protection and information security consulting, done by someone who has also built the systems — not just the documents.
DNSC-certified NIS Officer · ISO 27001 Lead Auditor · ISO 42001 auditor (AI management)
I have worked in data protection since 2016. Before that — and alongside it, for more than twenty years — I have been building websites and web infrastructure: hosting, search optimisation, online campaigns, server administration.
That is why I look at compliance differently. When I read a hosting contract, I know what the measures listed in it mean in practice. When I look at a website, I see what the forms collect and what the tracking pixels send before the visitor has had a chance to tick anything. When a company says “we have appropriate technical measures”, I can check whether that is true — not just whether it is written down.
That is the difference between a well-drafted policy and one that actually works. And the reason we work with implementation, not paperwork.
The same hands do the analysis, the documents and the conversation with the authority. No handovers between consultants.
Every credential below can be verified with the body that issued it.
We do not just recommend compliance tools — we build them.
Every sector carries its own risks. We know them from projects, not from textbooks.
I was national runner-up in handball, then won 11 national champion titles in track cycling on the velodrome. What stayed with me is a way of working: prepare first, measure along the way, and repeat until it comes out right.
A short conversation is usually enough to know whether you have a real problem, how big it is, and in what order to solve it. No obligations and no jargon nobody uses.
Get in touch →