From Service Desk to SOC: The Talent Pool You Already Have In-House

De route van servicedesk naar SOC is de best beschikbare interne doorstroom die de meeste organisaties nooit inrichten. Twee verdiepingen lager zit een team dat elke dag meldingen beoordeelt, prioriteert, doorvraagt en vastlegt. Dat is triagewerk. De inhoud verschilt, het denkwerk niet, en dat maakt de leerafstand tot een analistenrol korter dan de functietitels suggereren. [โฆ]
Retraining IT Administrators in Cybersecurity: Your Fastest Internal Talent Pool

For most Dutch employers, retraining IT administrators in cybersecurity is the quickest route to building in-house expertiseโand itโs precisely the route thatโs considered the least. The position is open, the recruitment agency sends profiles that arenโt a good fit, and three doors down sits someone whoโs been familiar with the environment for five years and knows which server never [โฆ]
Cloud Misconfigurations: Why Your SOC Analysts Need to Understand the Cloud, Too

Cloud security analysts donโt miss misconfigurations because they arenโt paying close enough attention, but because thereโs nothing to look for. In June 2026, the NCSC put it bluntly in an expert blog post about misconfigurations as an open door to sensitive data: in the case of a misconfiguration, there is no technical vulnerability that can be patched; the functionality works exactly as [โฆ]
Identity-based attacks: Why Your IAM Team Is Just as Important as Your SOC

Identity-based attacks are the type of attack that doesnโt set off any alarm bells. The NCSC sums up the problem in a single sentence: itโs becoming increasingly common for hackers not to break in, but rather to log in using legitimate credentials. In such cases, thereโs no exploit, no malware, and no unusual network traffic. Thereโs simply a successful login, just like thousands of [โฆ]
Insider Threats: Why HR and Security Need to Work Together

In the Netherlands, insider threat detection rarely fails due to technical issues; it almost always fails because of organizational factors. The security team notices that an account is downloading 400 files at 1:30 a.m., but doesnโt know that the employee was told last week that his contract wouldnโt be renewed. HR does know this, but has no idea that the [โฆ]
Phishing Detection as a Team Discipline: Beyond Phishing Simulations

Organizing phishing detection across the entire team means more than just teaching employees to avoid clicking links. Most organizations measure their resilience based on the click-through rate from the most recent simulation, while the real question is what happens in the thirty minutes after someone does click a link. Verizonโs 2026 Data Breach Investigations Report shows that phishing is quite [โฆ]
Cybersecurity in Education: Open Systems, Limited Budget, High Risk

Cybersecurity education requires decisions that are more critical than in any other sector. By definition, an educational institution must be open: thousands of students log in using their own devices, researchers share data with partners around the world, and instructors switch between systems depending on the course they are teaching. At the same time, the budget is set in [โฆ]
Cybersecurity in the Financial Sector: Different Risks, Different Skills

Cybersecurity in the financial sector is a different field than security in the rest of the business world. Banks, insurance companies, and payment institutions protect an infrastructure through which some 13 billion euros flow every day, under the watchful eye of a regulator that actively monitors and conducts tests. Criminals rarely target the servers themselves here; instead, they target the [โฆ]
Cybersecurity in the Healthcare Sector in 2026: Why Smart Training Works Fundamentally Differently

For CISOs and HR managers in the Dutch healthcare sector, cybersecurity in healthcare is a completely different issue than cybersecurity for office-based organizations. The healthcare sector operates 24 hours a day, uses medical equipment that cannot be replaced when a patch becomes available, processes the most sensitive category of data that exists, and is demonstrably the most sought-after target for [โฆ]
Cybersecurity Trends for 2027: 5 Smart Shifts to Prepare for Now

For CISOs and CTOs who donโt want to be left behind in 2027, the cybersecurity trends for 2027 are already visible in the data from 2025. Companies that wait for official predictions in mid-2026 will be 18 months behind organizations that start preparing today. Five shifts are clearly emerging: AI threats that stem from [โฆ]