Never fake a finding
Scores go on reports that clients hand to their insurer. If a finding is closed, it's because the machine was actually fixed — and the version proves it. Nothing gets marked done to make a dashboard look good.
Cape Town, South Africa — 33.9°S
Cybersecurity engineer · Creator of Vikelus
Attackers don't break in. They walk in — through software you already have, using a hole that's been public for weeks.
I build the thing that finds it first.
The short version
I'm a cybersecurity engineer at F1 IT Solutions in Cape Town. I keep growing businesses secure — and I built the platform that proves they are.
My idea, my build, my code
We don't wait for your devices to get breached. We watch them so they don't.
Every morning Vikelus pulls what the world learned overnight — CISA's list of the holes attackers are actively exploiting, the new critical CVEs, and the exploit-probability scores that say which ones actually matter.
Then it does the part nobody wants to do by hand: it checks the real installed version of every application on every machine we manage. Not per company. Per machine.
If something is genuinely exposed, it stages the fix. Two engineers sign off before anything touches a server. Every step lands in a ticket, and the client gets a report that proves what was checked, what was affected, and what was closed.
A dashboard that says “protected” and can't show you why is just a nicer way of hoping.
How I work
Scores go on reports that clients hand to their insurer. If a finding is closed, it's because the machine was actually fixed — and the version proves it. Nothing gets marked done to make a dashboard look good.
“You're patched” is a claim. “This laptop runs build 141.0.7390.55, and the exploit needs anything below .54” is evidence. Only one of those survives an audit.
Nothing significant gets patched on one person's say-so. Two engineers approve. It's slower. It's also why nothing has gone sideways.
If a business owner can't repeat back what's at risk and what you're doing about it, you haven't explained it. You've just performed.
On stage
Most security advice is written to sound impressive to other security people. That's useless to the person who actually has to decide whether to spend the money.
So I do the opposite. No jargon, no scare tactics, no acronym soup — just what's actually at risk, what it would cost you, and what to do about it on Monday.
The long version
A technical engineer in Cape Town, a BSc that isn't finished yet, and a problem nobody wanted to do by hand.
Straight answers
Contact
A second opinion on your security, a look at Vikelus, or just to connect.