// Trust & Qualifications
Trust & Qualifications
Explore SKOPION Intelligence’s voluntary commitments and the completed training and professional memberships of its owner, Bartosz Joachimiak. Each record is attributed to its actual holder and scope.
AI Pact — voluntary commitment
SKOPION Intelligence is a signatory to the European Commission’s AI Pact. The Pillar II pledge covers the three core commitments on AI governance, mapping potentially high-risk AI systems and promoting AI literacy.
Participation is a voluntary commitment, not certification of compliance with the AI Act.
European Commission AI Pact →Allianz für Cyber-Sicherheit

SKOPION Intelligence is a registered participant in the Allianz für Cyber-Sicherheit of the German Federal Office for Information Security (BSI).
Participation does not constitute certification, assessment or endorsement of SKOPION services by the BSI.
Qualifications and professional engagement
Bartosz Joachimiak is registered as a Digital First Aider (Digitaler Ersthelfer) in the Cyber-Sicherheitsnetzwerk and is a member of the Information Systems Security Association (ISSA International). His completed Linux Foundation courses include:
- Cybersecurity Essentials (LFC108)
- Developing Secure Software (LFD121)
- Securing Your Software Supply Chain with Sigstore (LFS182)
- Automating Supply Chain Security: SBOMs and Signatures (LFEL1007)
- Secure AI/ML-Driven Software Development (LFEL1012)
- Conversational AI: Ensuring Compliance and Mitigating Risks (LFS120)
- Understanding the EU Cyber Resilience Act (CRA) (LFEL1001)
Qualys - Certificate of Completion
- CyberSecurity Asset Management
Global Cyber Alliance coursesShow 7 completed courses
- Understanding Cyber Risk for Small Business
- Creating Strong Passwords & Two-Factor Authentication
- Protect Against Email Spoofs & Phishing
- Protect Against Phishing & Malware
- Protecting Your Business Data with Backups
- Software Updates & Business Security
- How to Inventory Your Devices, Apps & Accounts
Hack Smarter Labs - practical completionsShow 9 completed challenge labs
- Challenge Lab: Casino (Medium)
- Challenge Lab: Exception (Medium)
- Challenge Lab: GitOops (Medium)
- Challenge Lab: HealthSmarter (Medium)
- Challenge Lab: Second (Medium)
- Challenge Lab: SysAdmins (Medium)
- Challenge Lab: Kiosk (Medium)
- Challenge Lab: Race Conditions (Medium)
- Challenge Lab: GateCrasher (Easy)
CISA / Idaho National Laboratory - ICS trainingShow 15 completed ICS courses (4.30 CEU)
- ICS Cybersecurity Practices (100W)
- Differences in Deployments of ICS (210W-01)
- Influence of IT Components on ICS (210W-02)
- Common ICS Components (210W-03)
- Cybersecurity Within IT and ICS Domains (210W-04)
- ICS Cybersecurity Risk (210W-05)
- ICS Cybersecurity Threats (210W-06)
- ICS Cybersecurity Vulnerabilities (210W-07)
- ICS Cybersecurity Consequences (210W-08)
- Attack Methodologies in IT & ICS (210W-09)
- Mapping IT Defense-In-Depth Security Solutions to ICS - Part I (210W-10)
- Mapping IT Defense-In-Depth Security Solutions to ICS - Part II (210W-11)
- ICS Cybersecurity (300)
- ICS Cybersecurity Evaluation (401)
- ICS Cybersecurity Landscape for Managers (FRE2115)
CyberDefenders - practical completionsShow 2 completed blue-team labs
- GetPDF (Blue Team)
- l337 S4uc3 (Medium, Endpoint Forensics)
The registration, membership and course-completion records are held by Bartosz Joachimiak personally; they do not certify SKOPION or its services.
Transport & web security
- TLS 1.3, externally rated SSL Labs A+
- HTTPS enforced, HSTS (2 years, includeSubDomains, preload)
- Modern security headers: CSP, X-Frame-Options (DENY), X-Content-Type-Options (nosniff), Referrer-Policy, Permissions-Policy
Application security
- OWASP ASVS v5.0 Level 1 — internal self-verification (OWASP does not issue confirmations; self-verification)
- Contact form protected against automated abuse (Cloudflare Turnstile)
- No unnecessary internal infrastructure disclosure; sanitized error handling
Data protection (GDPR)
- Technical and organizational measures; no third-party trackers or analytics
- Only a strictly-necessary language cookie; contact solely via the secured form
Secure communication
- Published security.txt (RFC 9116) and PGP key for encrypted first contact
- Responsible disclosure welcome
Readiness & training
- Self-assessment against CIS Controls v8 (Implementation Group 1)
- Ongoing awareness and skills training (Global Cyber Alliance, EC-Council, Linux Foundation); completion records kept internally
Operations
- Hardened operational baseline with multi-factor protection, role-based access and controlled deployments.
- Backup and recovery processes are maintained internally and reviewed regularly.
- Security-relevant updates and operational events are monitored internally and documented traceably.
Technical transparency
- Secure connection via HTTPS with HSTS
- HTTP security headers configured, including CSP, X-Frame-Options and Referrer-Policy
- Email protection for skopion.de: SPF, DKIM and DMARC with p=reject
- Responsible disclosure channel and security.txt available
- Legal notices, privacy information and clear service limitations
Cyber Security Network
Bartosz Joachimiak, owner of SKOPION Intelligence, is personally registered as a Digital First Aider (Digitaler Ersthelfer) in the German Cyber-Sicherheitsnetzwerk (CSN). The registration concerns his participation in the network.
Open Bartosz Joachimiak’s CSN entry →Public professional profiles
Cyberhive EUROPE
SKOPION Intelligence is listed with a public vendor profile and the solution profile “SKOPION Digital Risk & Exposure Analysis” on Cyberhive EUROPE. Publishing the vendor and solution profile does not constitute ECSO membership, a certification or a ‘CYBERSECURITY MADE IN EUROPE’ label.
Marktplatz IT-Sicherheit
SKOPION Intelligence is listed with a public vendor profile on Marktplatz IT-Sicherheit. The entry supports discoverability within the IT security ecosystem and does not constitute a certification, an audit or a recommendation.
Open vendor profile →Regional company presence
IHK Mittlerer Niederrhein
SKOPION Intelligence is listed with a public company profile (“Mein Unternehmen”) at IHK Mittlerer Niederrhein. The public company profile supports regional visibility and does not constitute a professional review, a certification or a recommendation by the IHK.
Open company profile →WFMG – Start-ups in MG
SKOPION Intelligence is listed in the public startup directory of Mönchengladbach's economic development agency. The listing supports regional visibility in the startup ecosystem and does not constitute certification, an audit, funding approval or endorsement.
View public startup profile →// Institutional trust layer
Statements in the technical sections describe internal self-assessments and readiness measures unless an external source is named there. The AI Pact, personal registration, membership and course completions are separate evidence types.