01
Consultancy
Security audits, ISMS policy and threat modeling, aligned with ISO 27k and the Czech Cyber Security Act. We also harden how software gets built, through a secure development lifecycle (SSDLC).
Audits · ISMS · ISO 27k · Threat modeling · SSDLC
02
Incident Handling & Response
Incident response service design, hands-on handling and digital forensics, led by a GIAC Certified Incident Handler. Built on SOC, CERT and SOAR experience, with threat intelligence feeding detection.
GCIH · DFIR · SOC/CERT · SOAR · SIEM · MISP
03
vCISO
Part-time security leadership: strategy, governance, risk management and a roadmap your stakeholders accept. Grounded in his role as Cyber Security Architect at a university hospital in Pilsen — shaping security strategy, governance and stakeholder buy-in — plus GRC across ISO 27k, PCI DSS and SOC 2.
Strategy · Governance · Risk · ISO 27k · PCI DSS · SOC 2
04
DevSecOps
Secure CI/CD and SSDLC baselines built on Zero Trust principles, so every change is checked on its way to production. GitLab pipelines, Kubernetes runtime security and GitOps delivery.
GitLab CI · Kubernetes · Falco · Flux · Zero Trust
05
DevOps & Infrastructure as Code
Kubernetes platforms built and run as code, from bare metal and small VPS setups to AWS and Azure, with monitoring and observability in place from day one.
K3s · K8s · Rancher · AKS · EC2 · Ansible · Terraform · Podman
06
OT/ICS & IoT security
Ethical hacking of IT, OT, ICS/SCADA and (I)IoT environments, continuous vulnerability assessment, and anomaly and intrusion detection for networks where availability comes first.
ICS/SCADA · (I)IoT · Vulnerability assessment · IDS