Passkeys for your business: logging in without a password, and hard to phish
Passkeys replace the password with a key on your device that will not work on a fake site. What they are, what to watch for and how to start sensibly.
Knowledge base
Straightforward articles on cybersecurity, AI automation and regulation. Written for business owners, not IT experts.
Passkeys replace the password with a key on your device that will not work on a fake site. What they are, what to watch for and how to start sensibly.
Free apps, personal cloud storage and AI tools nobody ever approved. Why shadow IT happens, what the real risks are, and how to fix it without a witch-hunt.
An AI agent does not just answer questions, it takes actions in your systems. What that realistically delivers today, the risks, and the ground rules that help.
Many small business websites run for years without maintenance. What to sort out: updates, admin accounts, tested backups, HTTPS and access to your domain.
Scammers hide links in QR codes: in emails, PDFs, letters and on stickers. Why it works, how to recognise it, and what to tell your employees about it.
Booking appointments, drawing up rosters and planning jobs takes a lot of time. What you can automate, where it goes wrong and what to watch with customer data.
When someone leaves, their accounts, passwords and sharing links often keep working longer than you think. A practical checklist to close them off properly.
Microsoft 365 does not set itself up securely. Six points to go through with your IT partner, from MFA and admin accounts to a backup that really is a backup.
Where the time goes when you prepare a quote, what you can automate, where AI helps, and which parts you should always keep checking yourself.
Without DMARC enforcement, anyone can send email that appears to come from your domain. What SPF, DKIM and DMARC do, and how to introduce them safely.
Cyber insurance can soften the blow of an incident, but it covers far from everything. What it is and is not for, and what to watch in the small print.
What do you do when your systems fail, your premises are unusable, or your data is held hostage? A practical continuity plan keeps your business running in a crisis.
Your employees are your biggest risk and your best defence. Here is how to build genuine security awareness that sticks, beyond a mandatory course.
GDPR and NIS2 look alike, but protect different things. Here is how to understand the overlap, the differences, and why you may face both at once.
AI sounds convincing, even when it talks nonsense. What hallucinations are, where they are most dangerous, and a practical way to check AI output.
Outdated software is the most common way in for attackers. Why patching promptly matters so much, and how to approach it simply and in a structured way.
Your IT partner has access to your whole business. These eight questions help you choose a reliable, fitting supplier, and spot hot air.
Your employees are already using AI, with or without permission. Here is how to draw up a short, practical AI policy that covers the risks and captures the benefits.
Your network is the front door of your business. Practical steps to secure your wifi, router, and guest network, without becoming a network administrator.
ISO 27001 and NIS2 are often mentioned in one breath, but they are not the same. The difference explained clearly, and how they actually reinforce each other.
Before investing in automation, you want to know if it pays off. A simple method to estimate payback time and return realistically.
An urgent payment on behalf of the director, or a supplier with 'new' bank details. Here is how to recognise CEO and invoice fraud and build a simple defence.
A risk assessment sounds heavy, but it is just structured thinking about what can go wrong. Here is how to do one yourself in five understandable steps.
An AI assistant can catch customer questions and qualify leads, or drive customers away. When it works, and how to set it up well and securely.
Remote work widens your attack surface. With these seven practical agreements you keep hybrid working secure without hindering your people.
Under NIS2, directors are personally responsible for cybersecurity. What that means concretely and how the board can demonstrably take up its role.
Not every process is suited to automation. With this checklist you quickly spot the tasks where automating truly pays off, and which to leave alone.
In a data breach every minute counts. A practical plan: what to do immediately, when to report to the data protection authority, and how to prevent a repeat.
Digitalising need not be a big, scary project. Here is how to modernise step by step, with results you measure, without turning your business upside down.
AI can speed up legal work, but confidentiality and accuracy are sacred. Where AI genuinely helps, and the limits you must guard.
A backup you cannot restore is not a backup. Here is how to set up a reliable backup strategy with the 3-2-1 rule that saves you after an incident.
NIS2 requires organisations to report serious incidents quickly. How that reporting duty works, which deadlines apply, and how to prepare for it.
Email eats hours. With smart rules, templates, and AI help you remove recurring email work without anything falling through the cracks.
Ransomware can shut a business down for days. No scare story, but a clear explanation and the concrete measures that genuinely reduce the risk.
An IT policy sounds bureaucratic, but a good version fits on a few pages and prevents hassle. What belongs in it and how to keep it practical.
Stop rebuilding every quote or letter from scratch. Here is how to let recurring documents fill themselves, faster, error-free, and always on brand.
Weak and reused passwords are one of the biggest risks in SMBs. Here is how a password manager solves that, and how to roll it out.
Even if NIS2 does not apply to you directly, it can reach you through your clients. How to prepare for questions about your security in the chain.
Where does AI genuinely help an accountancy firm, and where should you be careful? Six concrete uses, with attention to confidentiality and control.
MFA stops most account break-ins, even when your password has leaked. What it is, why it works, and how to roll it out in your business step by step.
No IT department, but still responsible for your security? A practical, step-by-step guide for business owners in Limburg who want their digital basics in order.
Automation does not have to be big or expensive. Five recurring office tasks you can hand off using smart tools and AI.
AI tools like ChatGPT save time, but what happens to confidential data? Practical rules for safe, GDPR-proof AI use in the office.
The Cybersecurity Act has cleared the lower house and awaits the Senate. Most SMEs are not directly in scope, but their largest customers will pull them in anyway. Here is what to sort out now.
Most cyber incidents start with a single wrong click. Here is how to teach your team to recognise phishing, with concrete examples and one simple rule.
The Dutch Cybersecurity Act (NIS2) is coming. Find out whether your business falls under it, what is expected of you, and seven steps you can take now.
No sales pitch. Just a conversation about where you stand and what makes sense for your business.