Skip to content
Back

// Trust & Qualifications

Trust & Qualifications

Explore SKOPION Intelligence’s voluntary commitments and the completed training and professional memberships of its owner, Bartosz Joachimiak. Each record is attributed to its actual holder and scope.

AI Pact — voluntary commitment

SKOPION Intelligence is a signatory to the European Commission’s AI Pact. The Pillar II pledge covers the three core commitments on AI governance, mapping potentially high-risk AI systems and promoting AI literacy.

Participation is a voluntary commitment, not certification of compliance with the AI Act.

European Commission AI Pact

Allianz für Cyber-Sicherheit

Allianz für Cyber-Sicherheit

SKOPION Intelligence is a registered participant in the Allianz für Cyber-Sicherheit of the German Federal Office for Information Security (BSI).

Participation does not constitute certification, assessment or endorsement of SKOPION services by the BSI.

Qualifications and professional engagement

Bartosz Joachimiak is registered as a Digital First Aider (Digitaler Ersthelfer) in the Cyber-Sicherheitsnetzwerk and is a member of the Information Systems Security Association (ISSA International). His completed Linux Foundation courses include:

  • Cybersecurity Essentials (LFC108)
  • Developing Secure Software (LFD121)
  • Securing Your Software Supply Chain with Sigstore (LFS182)
  • Automating Supply Chain Security: SBOMs and Signatures (LFEL1007)
  • Secure AI/ML-Driven Software Development (LFEL1012)
  • Conversational AI: Ensuring Compliance and Mitigating Risks (LFS120)
  • Understanding the EU Cyber Resilience Act (CRA) (LFEL1001)

Qualys - Certificate of Completion

  • CyberSecurity Asset Management
Global Cyber Alliance coursesShow 7 completed courses
  • Understanding Cyber Risk for Small Business
  • Creating Strong Passwords & Two-Factor Authentication
  • Protect Against Email Spoofs & Phishing
  • Protect Against Phishing & Malware
  • Protecting Your Business Data with Backups
  • Software Updates & Business Security
  • How to Inventory Your Devices, Apps & Accounts
Hack Smarter Labs - practical completionsShow 9 completed challenge labs
  • Challenge Lab: Casino (Medium)
  • Challenge Lab: Exception (Medium)
  • Challenge Lab: GitOops (Medium)
  • Challenge Lab: HealthSmarter (Medium)
  • Challenge Lab: Second (Medium)
  • Challenge Lab: SysAdmins (Medium)
  • Challenge Lab: Kiosk (Medium)
  • Challenge Lab: Race Conditions (Medium)
  • Challenge Lab: GateCrasher (Easy)
CISA / Idaho National Laboratory - ICS trainingShow 15 completed ICS courses (4.30 CEU)
  • ICS Cybersecurity Practices (100W)
  • Differences in Deployments of ICS (210W-01)
  • Influence of IT Components on ICS (210W-02)
  • Common ICS Components (210W-03)
  • Cybersecurity Within IT and ICS Domains (210W-04)
  • ICS Cybersecurity Risk (210W-05)
  • ICS Cybersecurity Threats (210W-06)
  • ICS Cybersecurity Vulnerabilities (210W-07)
  • ICS Cybersecurity Consequences (210W-08)
  • Attack Methodologies in IT & ICS (210W-09)
  • Mapping IT Defense-In-Depth Security Solutions to ICS - Part I (210W-10)
  • Mapping IT Defense-In-Depth Security Solutions to ICS - Part II (210W-11)
  • ICS Cybersecurity (300)
  • ICS Cybersecurity Evaluation (401)
  • ICS Cybersecurity Landscape for Managers (FRE2115)
CyberDefenders - practical completionsShow 2 completed blue-team labs
  • GetPDF (Blue Team)
  • l337 S4uc3 (Medium, Endpoint Forensics)

The registration, membership and course-completion records are held by Bartosz Joachimiak personally; they do not certify SKOPION or its services.

Transport & web security

  • TLS 1.3, externally rated SSL Labs A+
  • HTTPS enforced, HSTS (2 years, includeSubDomains, preload)
  • Modern security headers: CSP, X-Frame-Options (DENY), X-Content-Type-Options (nosniff), Referrer-Policy, Permissions-Policy

Application security

  • OWASP ASVS v5.0 Level 1 — internal self-verification (OWASP does not issue confirmations; self-verification)
  • Contact form protected against automated abuse (Cloudflare Turnstile)
  • No unnecessary internal infrastructure disclosure; sanitized error handling

Data protection (GDPR)

  • Technical and organizational measures; no third-party trackers or analytics
  • Only a strictly-necessary language cookie; contact solely via the secured form

Secure communication

  • Published security.txt (RFC 9116) and PGP key for encrypted first contact
  • Responsible disclosure welcome

Readiness & training

  • Self-assessment against CIS Controls v8 (Implementation Group 1)
  • Ongoing awareness and skills training (Global Cyber Alliance, EC-Council, Linux Foundation); completion records kept internally

Operations

  • Hardened operational baseline with multi-factor protection, role-based access and controlled deployments.
  • Backup and recovery processes are maintained internally and reviewed regularly.
  • Security-relevant updates and operational events are monitored internally and documented traceably.

Technical transparency

  • Secure connection via HTTPS with HSTS
  • HTTP security headers configured, including CSP, X-Frame-Options and Referrer-Policy
  • Email protection for skopion.de: SPF, DKIM and DMARC with p=reject
  • Responsible disclosure channel and security.txt available
  • Legal notices, privacy information and clear service limitations

Cyber Security Network

Bartosz Joachimiak, owner of SKOPION Intelligence, is personally registered as a Digital First Aider (Digitaler Ersthelfer) in the German Cyber-Sicherheitsnetzwerk (CSN). The registration concerns his participation in the network.

Open Bartosz Joachimiak’s CSN entry

Public professional profiles

Cyberhive EUROPE

SKOPION Intelligence is listed with a public vendor profile and the solution profile “SKOPION Digital Risk & Exposure Analysis” on Cyberhive EUROPE. Publishing the vendor and solution profile does not constitute ECSO membership, a certification or a ‘CYBERSECURITY MADE IN EUROPE’ label.

Marktplatz IT-Sicherheit

SKOPION Intelligence is listed with a public vendor profile on Marktplatz IT-Sicherheit. The entry supports discoverability within the IT security ecosystem and does not constitute a certification, an audit or a recommendation.

Open vendor profile

Regional company presence

IHK Mittlerer Niederrhein

SKOPION Intelligence is listed with a public company profile (“Mein Unternehmen”) at IHK Mittlerer Niederrhein. The public company profile supports regional visibility and does not constitute a professional review, a certification or a recommendation by the IHK.

Open company profile

WFMG – Start-ups in MG

SKOPION Intelligence is listed in the public startup directory of Mönchengladbach's economic development agency. The listing supports regional visibility in the startup ecosystem and does not constitute certification, an audit, funding approval or endorsement.

View public startup profile

// Institutional trust layer

Statements in the technical sections describe internal self-assessments and readiness measures unless an external source is named there. The AI Pact, personal registration, membership and course completions are separate evidence types.