Cybersecurity Expert
Paweł Kwiatkowski
Experience without fluff
Paweł joined Srivakula Gov Affairs in March 2018, right after he spent seven years building infrastructure for a large software house in Poznań. He is not a theorist with certificates in frames. In 2024, he conducted 38 full security audits for IT companies that participated in public tenders. We check facts, not assumptions – that is his main work principle. If there is a hole in your code, Paweł will find it in an average of 42 minutes and talk about it without beating around the bush.
Practical approach to NIS2
We speak plainly about difficult regulations, and Paweł is a master at it. Instead of quoting paragraphs of the NIS2 directive, he prepares a list of 14 specific points that a company must implement to avoid paying a fine. In the last quarter, he helped three companies from the fintech sector pass inspections without a single serious reservation. His work is not just numbers, the concrete results are visible in the documents, not in the presentations. He focuses on what realistically protects data, and not on what looks nice in a report for the board.
- Successfully closed 112 critical vulnerabilities in government systems last year.
- Prepared 23 companies for KSC certification in a record time of 4.59 months each.
- Verification of the security of one module usually takes him from 6 to 9 business days.
Why is it worth talking to him?
Paweł doesn't promise that everything will be perfect. He can be stubborn when checking admin permissions, but thanks to this our clients avoided data leaks in projects worth a total of 4.7 million PLN in 2023 alone. Your IT, our paperwork – he takes on this harder part so that programmers can deal with writing code and not reading acts. If you send an audit inquiry, Paweł usually replies within 85 minutes with a specific date for a 20-minute reconnaissance of the topic.
Privately, Paweł doesn't trust any smart devices in his home that have Wi-Fi access. He claims most of them are 'riddled with holes'. Such professional paranoia, however, helps him catch errors that others don't see. He respects clients' time, so he comes to meetings with a ready list of problems to solve, not with questions for which answers are on Google.