The Team
Four people who have worked together, built trust over time, and decided to build something that fixes a problem they kept running into in the field.
120+
Years of combined experience across cybersecurity, psychology, and communication
4
Disciplines under one roof: technology, behavior, governance, communication
Our Story
CyberSynergy360 started with four people who spent 18 months working side by side in the Belgian public sector. That shared history matters. We did not form a team by assembling profiles. We built trust by working through real problems together, under real pressure.
In that time, we saw the same problem repeat itself across organizations: security investments that could not be validated, compliance exercises that produced paperwork but did not improve resilience, and leadership left without a clear picture of what their investment was actually delivering.
The answer was rarely more technology. More often, it was a failure of governance, a gap in how people understood their role, or communication that did not reach the right people in a form they could act on.
We founded CyberSynergy360 to fix that. Most security firms send in technical consultants. Some add a governance layer. Very few address how people actually behave under pressure, and almost none have a plan for what to say when something goes wrong. We combine all four disciplines in one team: a practising psychologist, a crisis communication strategist, and two senior technical consultants who have worked through real incidents together. That combination is what CyberSynergy360 is built on.
The Team
A practising psychologist. A crisis communication strategist. Two senior technical consultants. All four at the table on every engagement, with no junior staff in between.
People & Behavior
Patrick is a psychologist with an ISO 27001 certification and a straightforward view on why security programs succeed or fail. Most organizations treat behavioral security problems as a training gap. Patrick's assessment usually finds something different: a culture problem, a policy design problem, or a communication failure. He designs interventions that change what people actually do, not just what they say they know.
Communication Strategy
Natalie brings 25 years of experience in communication, content strategy, and stakeholder management. She is trilingual in Dutch, French, and English. Her background spans communication management, content marketing, and recent work in information security within the Flemish public sector. Within the team, she is the connector: between what the technical assessment finds and what management and end users need to understand. She leads crisis communication planning and helps organizations build the capability to manage an incident without losing control of the message.
Technology & GRC
Tom brings 30 years in IT and more than a decade in cybersecurity, with deep expertise in ISO 27001, CyFun, and NIS2. As a CISSP-certified vCISO, he translates security frameworks into governance that works in practice, not just on paper. He bridges the gap between technical controls and board-level accountability, and keeps management honest about what their security program actually delivers.
Technical Security
Vincent covers the technical security side of every engagement. With experience across enterprise-scale environments, he has a practical sense for where organizations are exposed and what it takes to close those gaps. He brings the depth to back up what the assessment says, and keeps the technical recommendations grounded in what is actually implementable.
What We Stand For
We say what we find, not what clients want to hear. Independent assurance is only worth something if it is genuinely independent.
Security is a shared responsibility. We work with your team, not around it. The goal is to leave you stronger, not dependent.
Complex security findings in plain language, prioritized by what matters most. Decision-makers should be able to read our reports and know what to do next.
We are not here to produce a report that covers us. We are here to make your organization genuinely more secure and more capable of recovering when things go wrong.
Technology without people and process is fragile. People without the right tools and governance are exposed. We address all three together, because that is the only approach that holds.