The company
About
A team built on principles, not vendor agreements — specialising in identity security, cybersecurity, and technology infrastructure.
Founder & Principal Consultant
Alberto Vargas Cervera
Cybersecurity Solution Architect with over 15 years of experience designing and implementing robust security architectures and regulatory compliance strategies. Specialises in translating complex regulatory requirements into practical, scalable technical solutions that protect critical assets while enabling business growth. Helps organisations strengthen their security posture and achieve compliance with major frameworks. Passionate about bridging the gap between technical security requirements and business objectives -- making compliance a strategic advantage rather than a burden.
- Cybersecurity architecture and solution design
- Regulatory compliance: GDPR, NIS2, ISO 27001, and ENS
- Security risk assessments and gap analysis
- Cloud and hybrid security implementations
- Technical controls for data protection and access management
- Incident response planning and continuous monitoring
Who we are
A team guided by principles, not vendors
We are a team of professionals specialising in identity security, cybersecurity, and technology infrastructure. We work with organisations that need technology that functions, is secure, and respects the privacy of their users and the sovereignty of their data. We evaluate each situation independently and recommend what genuinely fits each client's reality — with no commercial commitments to any manufacturer.
Independence
We hold no commercial agreements with technology manufacturers. Our only loyalty is to the client.
Privacy by design
We integrate data protection from the ground up — not as a requirement added after the fact.
Transparency
We explain what we do and why, without unnecessary jargon or black boxes.
Technological sovereignty
We prioritise solutions that keep control and data in the client's hands, within European jurisdiction.
Our approach
Vendor-agnostic, committed to your data
We believe technology should serve the people and organisations that use it — not the other way around. That is why we work in a vendor-agnostic way: we analyse each client's real context and recommend solutions based on technical, security, and suitability criteria. Data sovereignty is a principle, not a marketing differentiator. We systematically favour infrastructure and solutions that keep data under the client's control, within European jurisdiction and aligned with the GDPR and NIS2 regulatory framework.
- Independent evaluation with no conflict of interest with manufacturers or distributors
- Systematic preference for infrastructure headquartered and jurisdictionally based in the European Union
- Alignment with GDPR, NIS2, and national security frameworks
- Clear communication about the risks, options, and trade-offs of every technical decision
- Solutions the client understands, manages, and controls without permanent dependency on third parties
Why trust us
Verifiable results, without hyperbole
We do not ask for trust upfront; we build it with every project. We work with documented results, clear deliverables, and explanations that any technical or business lead can understand and verify. We describe what we do and also what we do not do — because honesty about limitations is as important as technical competence.
- Proven experience across identity, security, and infrastructure projects in multiple sectors
- Every project concludes with clear, documented, and verifiable deliverables
- No hyperbole: we describe real capabilities, not marketing promises
- Direct engagement with the technical or business lead — no intermediaries
- Long-term focus: we are not a one-off supplier, but a long-term technology partner