nl · en
Let's talk

CyberGrowth.

The podcast about growing in cybersecurity — conversations (in Dutch) with the people doing the actual work. A new episode every month.

Listen on Spotify →Apple Podcasts →
A European cloud: sovereign or illusion? With Joey van den Heuvel (A.S.R.)

A European cloud: sovereign or illusion? With Joey van den Heuvel (A.S.R.)

Episode 15 · November 2025 · 38 min

The discussion about a "European cloud" seems endless. Everyone wants more digital sovereignty, yet meanwhile half of our infrastructure still runs on American technology.

In this episode of CyberGrowth by Gruzzy I talk with Joey van den Heuvel of A.S.R. Verzekeringen.

Joey spent years as an IT Security Officer and recently became Product Owner Cloud — exactly the person to ask how realistic that idea of a European cloud actually is.

We talk about the risks of blind trust in cloud providers, the role of politics and business, and why full sovereignty may be more dream than reality.

A conversation about technology, governance, money, and the limits of independence. (In Dutch.)

Risk quantification — the future of risk management? With Paul Permentier and Lars van Zijl of Polar Risk

Risk quantification — the future of risk management? With Paul Permentier and Lars van Zijl of Polar Risk

Episode 14 · October 2025 · 31 min

In this episode of CyberGrowth by Gruzzy we talk with Lars van Zijl and Paul Permentier, founders of Polar Risk. Their mission: helping organizations make risk truly measurable through risk quantification.

We discuss what risk quantification actually involves, why so many companies still wrestle with 'risks in color codes', and how a quantitative approach helps you make better decisions about security investments.

Lars and Paul share how their experience at large organizations brought them to this point, what benefits it delivers for both CISOs and boards, and why they believe it's the future of risk management in cybersecurity.

This episode is packed with practical examples, sharp insights, and a fresh look at making risk concrete — not just on paper, but in hard numbers that convince the business. (In Dutch.)

Chat Control — digital protection or mass surveillance? With Jort Kollerie

Chat Control — digital protection or mass surveillance? With Jort Kollerie

Episode 13 · September 2025 · 27 min

In this episode of CyberGrowth by Gruzzy we talk with Jort Kollerie, specialist at Orange Cyberdefense. Together we dive into the EU's controversial proposal: Chat Control.

We discuss what the plan involves, why it has such a big impact on our privacy and safety, and what risks arise when end-to-end encryption is weakened. Jort explains why this proposal may be well-intentioned, but in practice leads to mass surveillance and greater vulnerability for everyone.

This episode is full of sharp insights, honest criticism, and clear arguments for why we — as a sector ánd as a society — should speak out against Chat Control.

You can do so at: fightchatcontrol.eu (In Dutch.)

Building a career as a hacker? With Anass Ali of the Ethical Hacker Group Netherlands

Building a career as a hacker? With Anass Ali of the Ethical Hacker Group Netherlands

Episode 12 · June 2025 · 36 min

We discuss how to get started as a hacker, which skills really matter, how to develop into a professional pentester, ethical hacker, or red teamer, and what you should and shouldn't do as a starter.

In this episode of CyberGrowth by Gruzzy we talk with Anass Ali, pentester and founder of the Ethical Hacker Group Netherlands. He takes us through his personal journey on the offensive side of cybersecurity: from first steps as a student to building a community.

This episode is full of hands-on experience, honest stories, and concrete tips for anyone who wants to grow in ethical hacking or offensive security. (In Dutch.)

How do you get your organization DevSecOps-ready? With Carlo Klerk of Eraneos Netherlands

How do you get your organization DevSecOps-ready? With Carlo Klerk of Eraneos Netherlands

Episode 11 · May 2025 · 38 min

Developing and maintaining your own tool or software is an integral part of business for many. But how do you deal with the risks? By anchoring security as well as possible in your development and processes, of course! But how do you get everyone on board?

In this episode of CyberGrowth by Gruzzy we dive into the world of secure development together with Carlo Klerk. How do you make security an integral part of your development process, and how do you keep management and development on the same page? Carlo tells us about his experience, how he looks at these processes, and how he approaches them! (In Dutch.)

The ideal project? With Maikel Roolvink of Brandaris Cybersecurity

The ideal project? With Maikel Roolvink of Brandaris Cybersecurity

Episode 10 · April 2025 · 36 min

The reality of some projects can't be predicted in advance, and sometimes the challenge isn't in how to respond, but in the foundation of the policy itself. But how do you find that out?

In this episode we dive in with Maikel Roolvink: how do you identify the ideal security project, what can you run into, and how do you handle different scenarios? He takes us through the do's & don'ts he encountered in his 15 years of experience and how to deal with them successfully! (In Dutch.)

Cyberwarfare — with Tamara Hendriksen and Jort Kollerie of Orange Cyberdefense

Cyberwarfare — with Tamara Hendriksen and Jort Kollerie of Orange Cyberdefense

Episode 9 · May 2023 · 29 min

On this podcast we regularly talk about hackers. Often groups with criminal intent, after money and data, with companies and individuals as victims.

But plenty is happening at the international level too. Many countries have their own divisions of hackers to obstruct their geopolitical opponents, steal information, or improve their own position in the world.

But who are these so-called 'state actors'? How do they operate? How are they organized?

That's what I discuss in episode 9 with Tamara Hendriksen and Jort Kollerie of Orange Cyberdefense. They've recently researched these countries and will tell you how it all fits together.

Enjoy! (In Dutch.)

OT security: the neglected child? With Fred Streefland of Secior

OT security: the neglected child? With Fred Streefland of Secior

Episode 8 · April 2023 · 33 min

By now we're all familiar with IT security — Information Technology security.

What many people don't know, however, is that there's another kind of security: OT, or Operational Technology.

At least as important a field, but far less known. Why is that? And what exactly is it?

What consequences can it have when your OT security isn't in order?

That's what I discuss in this episode with Fred Streefland, CEO of Secior. Secior specializes in securing OT environments.

Enjoy listening! (In Dutch.)

Help! I want to become an IT security freelancer! With Paul Permentier

Help! I want to become an IT security freelancer! With Paul Permentier

Episode 7 · September 2022 · 30 min

Plenty of information security and IT security specialists have thought about it at some point: shouldn't I start my own business?

But how do you do that? What's involved? How do you find your assignments? And what are the pros and cons?

Great questions to put to Paul Permentier! He started freelancing 9 months ago, so it's all still fresh in his memory.

Enjoy watching and listening! (In Dutch.)

What did information security look like 20 years ago? With Bert Heitink

What did information security look like 20 years ago? With Bert Heitink

Episode 6 · July 2022 · 32 min

With 2.5 years of experience in information security, I'm still a rookie in the field. But I'm very curious about how things were done years ago.

What are the biggest differences and similarities?

What lessons can we learn from the past?

In this podcast I talk about that with Bert Heitink, who has worked in the Dutch IT security industry for more than 20 years. He takes us through his career and paints a picture of how things developed over the years.

Enjoy watching and listening! (In Dutch.)

Certification: why, and where do I start? With Antonio Chan of Indiciatech

Certification: why, and where do I start? With Antonio Chan of Indiciatech

Episode 5 · May 2022 · 20 min

You can demonstrate that you think about your information security with a certificate. But that doesn't necessarily mean you're actually secure.

And there are so many of them — which ones do you need?

In this podcast I talk with Antonio Chan. He knows exactly which certification you need and when, but above all what you need to do to make your organization secure.

He shares practical tips for not just demonstrating that you've thought about it, but also for taking the first steps toward a solid information security policy. (In Dutch.)

A journey through time: what could cybersecurity look like in 5 years? With Jort Kollerie of Orange Cyberdefense

A journey through time: what could cybersecurity look like in 5 years? With Jort Kollerie of Orange Cyberdefense

Episode 4 · May 2022 · 28 min

In this podcast we take a look into the future: what could cybersecurity look like in 5 years?

On this journey through time, Jort Kollerie, Manager Security Architecture at Orange Cyberdefense, is our guide! We discuss the future with him along three themes:

Machine Learning & AI

Deception Technology

Survivorship's Bias

Enjoy listening!

With thanks to the Four Elements Hotel in Amsterdam for the beautiful recording location! (In Dutch.)

How do we make the Netherlands digitally secure? With Mark Tissink

How do we make the Netherlands digitally secure? With Mark Tissink

Episode 3 · March 2022 · 38 min

How do we make the Netherlands — and everyone who lives and works here — digitally skilled and safe?

A broad question with several answers.

I discuss it in this podcast with Mark Tissink, interim CISO and author of the book "Grip op Informatiebeveiliging". He has a few ideas about it!

Enjoy, and do let us know what you think of the podcast! (In Dutch.)

Autism and IT security: a good match? With Simone van Lent of Tesorion

Autism and IT security: a good match? With Simone van Lent of Tesorion

Episode 2 · December 2021 · 51 min

Simone van Lent has autism. She didn't always know that, and it hasn't always been easy for her.

Still, she found her way in cybersecurity.

Jesse talks with Simone about that. How did she function in the past? How did people treat her? And how did she eventually end up in IT security?

Enjoy listening! (In Dutch.)

Deepfakes: a new challenge? With Parya Lotfi of DuckDuckGoose

Deepfakes: a new challenge? With Parya Lotfi of DuckDuckGoose

Episode 1 · November 2021 · 43 min

In the very first episode of the Gruzzy Cyber Security podcast we take a deep dive into deepfakes.

What is a deepfake?

What can they be used for? Including the wrong purposes?

How do we integrate them into a security policy?

Jesse discusses the answers to those questions with Parya Lotfi of DuckDuckGoose. They specialize in detecting deepfakes, but also in creating them so you can test your own systems.

Enjoy listening! (In Dutch.)

Know a guest or a topic?

CyberGrowth runs on good conversations. Know someone who should be at the table? Let us know.