Independent technology expertise for the boardroom. Onafhankelijke technologie-expertise voor de bestuurskamer.
Non-executive advisory, oversight and assurance for boards, audit committees and executive leadership — across technology, cybersecurity, AI and digital regulation. On the board's side of the table, in plain language. Non-executive advies, toezicht en assurance voor raden van bestuur, auditcomités en executive leadership — over technologie, cybersecurity, AI en digitale regelgeving. Aan de kant van de raad, in klare taal.
Technology has become a board responsibility. Technologie is een bestuursverantwoordelijkheid geworden.
Technology now shapes strategy, competitive position, resilience and enterprise risk. Boards are expected to oversee technology strategy, major investments, transformation programmes, cybersecurity, AI and third-party dependencies — and accountability increasingly reaches the boardroom itself. Technologie bepaalt vandaag strategie, concurrentiepositie, weerbaarheid en ondernemingsrisico. Van raden van bestuur wordt verwacht dat ze toezien op technologiestrategie, grote investeringen, transformatieprogramma's, cybersecurity, AI en leveranciersafhankelijkheden — en de verantwoordelijkheid reikt steeds vaker tot in de bestuurskamer zelf.
European regulation raises the bar further. NIS2, DORA, the AI Act and the Cyber Resilience Act turn technology governance into a formal responsibility: organisations must be able to demonstrate that technology risk is understood, managed and overseen — up to board level. And with artificial intelligence, opportunity and risk now emerge faster than traditional governance cycles. Europese regelgeving legt de lat verder omhoog. NIS2, DORA, de AI Act en de Cyber Resilience Act maken van technologiegovernance een formele verantwoordelijkheid: organisaties moeten kunnen aantonen dat technologierisico gekend, beheerst en opgevolgd wordt — tot op bestuursniveau. En met artificiële intelligentie dienen kansen en risico's zich sneller aan dan klassieke governancecycli kunnen volgen.
Yet most boards receive their technology information from the executives responsible for delivering and operating those same environments. A board without independent technology expertise governs with a blind spot. technologyboard makes that blind spot visible — and governable. Toch krijgt de raad zijn technologie-informatie doorgaans van de executives die diezelfde omgevingen bouwen en beheren. Een raad zonder onafhankelijke technologie-expertise bestuurt met een blinde vlek. technologyboard maakt die blinde vlek zichtbaar — en bestuurbaar.
The most important question at the table: “How do we know?” De belangrijkste vraag aan tafel: “Hoe weten we dat?”
“The transformation programme is on track,” management reports. How does the board know? “Het transformatieprogramma zit op schema,” rapporteert het management. Hoe weet de raad dat?
“Cyber risk is under control,” the CISO assures. What evidence does the board have? “Het cyberrisico is onder controle,” verzekert de CISO. Welk bewijs heeft de raad?
“We are ready for NIS2,” the organisation believes. What assurance is that based on? “We zijn klaar voor NIS2,” klinkt het. Op welke assurance steunt dat?
Management provides the answer. technologyboard helps the board challenge the answer — so it can understand, challenge, decide, oversee and obtain assurance. Het management geeft het antwoord. technologyboard helpt de raad het antwoord toetsen — zodat hij kan begrijpen, uitdagen, beslissen, toezien en assurance verkrijgen.
Six domains. One question: how do we know? Zes domeinen. Eén vraag: hoe weten we dat?
Independent advisory, oversight and assurance at board level — not operational delivery. In every domain the test is the same: does it help the board understand, challenge, decide, oversee or obtain assurance? Onafhankelijk advies, toezicht en assurance op bestuursniveau — geen operationele uitvoering. In elk domein is de toets dezelfde: helpt dit de raad om te begrijpen, uit te dagen, te beslissen, toe te zien of assurance te verkrijgen?
Technology Strategy & Investment OversightToezicht op technologiestrategie & investeringen
Board oversight of technology strategy, major investments and sourcing decisions — do the choices support the business strategy?Toezicht op technologiestrategie, grote investeringen en sourcingbeslissingen — dienen de keuzes de bedrijfsstrategie?
From cloud direction and architecture choices to technology debt and vendor dependencies: we help the board judge whether major technology commitments are justified, affordable and aligned — before they are approved.Van cloudrichting en architectuurkeuzes tot technologische schuld en leveranciersafhankelijkheden: we helpen de raad beoordelen of grote technologie-engagementen verantwoord, betaalbaar en afgestemd zijn — vóór ze worden goedgekeurd.
Digital Transformation OversightToezicht op digitale transformatie
Independent board-level oversight of major programmes — ERP, cloud, data, AI — on strategic alignment, value and risk.Onafhankelijk toezicht op grote programma's — ERP, cloud, data, AI — op strategische alignment, waarde en risico.
Programmes rarely derail overnight; the signals appear early in budget, milestones, dependencies and vendor performance. We read those signals for the board and challenge the reporting — without replacing programme management.Programma's ontsporen zelden plots; de signalen zitten vroeg in budget, mijlpalen, afhankelijkheden en leveranciersprestaties. Wij lezen die signalen voor de raad en toetsen de rapportering — zonder het programmamanagement te vervangen.
Cybersecurity & Digital Resilience OversightToezicht op cybersecurity & digitale weerbaarheid
Cyber risk treated as a business and governance issue — board-level insight instead of technical reporting.Cyberrisico als bedrijfs- en governancekwestie — inzicht op bestuursniveau in plaats van technische rapporten.
From incident and ransomware preparedness to third-party risk and security investment: we translate the security picture into business risk and test whether the board has sufficient evidence that cyber risk is appropriately managed.Van incident- en ransomware-paraatheid tot leveranciersrisico en securityinvesteringen: wij vertalen het securitybeeld naar bedrijfsrisico en toetsen of de raad voldoende bewijs heeft dat het cyberrisico passend beheerst wordt.
Regulatory & Technology GovernanceRegelgeving & technologiegovernance
What NIS2, DORA, the AI Act and the Cyber Resilience Act mean for governance, accountability and evidence — at board level.Wat NIS2, DORA, de AI Act en de Cyber Resilience Act betekenen voor governance, verantwoordelijkheid en bewijsvoering — op bestuursniveau.
Technology + Legal: technologyboard is not a law firm — where legal interpretation is required, we work with specialised counsel. The lawyer answers what the law requires; we address what it means for your governance, technology and risk — and whether the board can demonstrate it.Technology + Legal: technologyboard is geen advocatenkantoor — waar juridische interpretatie nodig is, werken we samen met gespecialiseerde juristen. De jurist beantwoordt wat de wet vereist; wij wat dat betekent voor uw governance, technologie en risico — en of de raad dat kan aantonen.
AI & Emerging Technology GovernanceAI & governance van opkomende technologie
Board-level governance of AI: strategy, investment, risk and responsible adoption — separating strategic opportunity from hype.Governance van AI op bestuursniveau: strategie, investeringen, risico en verantwoorde adoptie — met strategische kansen gescheiden van hype.
Where does AI create value, where does it create risk, and what governance does the AI Act expect? We help the board decide what to pursue, what to pilot, what to postpone — and what management should report.Waar creëert AI waarde, waar risico, en welke governance verwacht de AI Act? We helpen de raad kiezen wat te doen, wat te testen en wat uit te stellen — en wat het management hoort te rapporteren.
Independent Technology AssuranceOnafhankelijke technology assurance
Independent assessments, reviews and second opinions — because a board should not have to rely solely on the answer it is given.Onafhankelijke assessments, reviews en second opinions — omdat een raad niet uitsluitend hoeft te vertrouwen op het antwoord dat hij krijgt.
Technology and cybersecurity assessments, programme reviews, vendor and investment reviews, due diligence. Management provides the answer; technologyboard helps the board challenge it. No statutory audit — independent insight.Technologie- en cybersecurityassessments, programmareviews, leveranciers- en investeringsreviews, due diligence. Het management geeft het antwoord; technologyboard helpt de raad het toetsen. Geen wettelijke audit — onafhankelijk inzicht.
How does our approach work? Hoe verloopt onze aanpak?
Listen & assessLuisteren & inschatten
We start from your strategy, risk appetite and board agenda — not from technology. Where does the board need insight, challenge or assurance first?We vertrekken van uw strategie, risicoappetijt en bestuursagenda — niet van technologie. Waar heeft de raad eerst inzicht, challenge of assurance nodig?
Advise & challengeAdviseren & uitdagen
Independent advice in board and committee meetings, in plain language. We review the papers, question the assumptions and give the board an honest reading.Onafhankelijk advies in bestuurs- en comitévergaderingen, in klare taal. We lezen de stukken, bevragen de aannames en geven de raad een eerlijke lezing.
Oversee & assureToezien & borgen
A steady oversight rhythm: risks followed up, progress reviewed, evidence in place — quarter after quarter, on the board's side of the table.Een vast toezichtsritme: risico's opgevolgd, vooruitgang beoordeeld, bewijs op orde — kwartaal na kwartaal, aan de kant van de raad.
Four ways to bring us on board. Vier manieren om ons aan boord te halen.
Standing Board AdvisorVast adviseur van de raad
As independent advisor or observer we join selected board, audit committee or risk committee meetings: reviewing board papers, challenging technology proposals, interpreting risk and briefing directors.Als onafhankelijk adviseur of waarnemer sluiten we aan bij geselecteerde vergaderingen van raad, auditcomité of risicocomité: bestuursstukken lezen, technologievoorstellen uitdagen, risico's duiden en bestuurders briefen.
CEO & Executive Sounding BoardKlankbord voor CEO & directie
Confidential counsel for CEOs and executive teams facing significant technology decisions — proposals, vendor choices, major investments, cyber concerns, AI strategy.Vertrouwelijk advies voor CEO's en directieteams bij belangrijke technologiebeslissingen — voorstellen, leverancierskeuzes, grote investeringen, cyberzorgen, AI-strategie.
Technology Due DiligenceTechnology due diligence
Independent assessment for acquisitions, investments and major technology transactions: landscape, architecture, cyber risk, technical debt, dependencies — and the investment still ahead.Onafhankelijke doorlichting bij overnames, investeringen en grote technologietransacties: landschap, architectuur, cyberrisico, technische schuld, afhankelijkheden — en de investering die nog volgt.
Independent Second OpinionOnafhankelijke second opinion
A focused review of one major decision — ERP, cloud migration, sourcing, security investment, AI platform. Independent challenge before an irreversible commitment.Een gerichte review van één grote beslissing — ERP, cloudmigratie, sourcing, securityinvestering, AI-platform. Onafhankelijke challenge vóór een onomkeerbaar engagement.
Board Advisor, Board Observer and Non-Executive Director are distinct roles. Most engagements are advisory and do not constitute a formal directorship; where a formal mandate is appropriate, it is agreed explicitly. Bestuursadviseur, waarnemer en niet-uitvoerend bestuurder zijn verschillende rollen. De meeste opdrachten zijn adviserend, zonder formeel bestuursmandaat; waar een formeel mandaat passend is, wordt dat uitdrukkelijk afgesproken.
On your side of the table. Aan uw kant van de tafel.
technologyboard provides independent, non-executive technology expertise to boards and executive leadership. We hold no reseller agreements and no implementation interests: we are not financially incentivised to recommend any platform, cloud provider, security product or integrator. Recommendations serve one interest — the organisation's. technologyboard levert onafhankelijke, non-executive technologie-expertise aan raden van bestuur en executive leadership. We hebben geen resellerakkoorden en geen implementatiebelangen: we worden niet financieel beloond om een platform, cloudprovider, securityproduct of integrator aan te bevelen. Aanbevelingen dienen één belang — dat van de organisatie.
Where specialist expertise is required — technology law, privacy, deep security engineering, sector knowledge — we work with experienced independent professionals in the relevant domain, with full transparency about their role. One independent point of accountability for the board. Waar specialistische expertise nodig is — technologierecht, privacy, diepgaande security-engineering, sectorkennis — werken we met ervaren onafhankelijke professionals in het betreffende domein, met volledige transparantie over hun rol. Eén onafhankelijk aanspreekpunt voor de raad.
Peter De Herdt — founder
Peter De Herdt is the founder of technologyboard and an experienced cybersecurity and technology-risk advisor, with extensive experience in cybersecurity architecture, risk management, governance and regulatory compliance in complex, regulated environments. He advises senior leadership on translating technology and cyber risk into clear business and governance decisions — providing independent challenge, strategic guidance and assurance at executive and board level.
Peter De Herdt — oprichter
Peter De Herdt is de oprichter van technologyboard en een ervaren adviseur in cybersecurity en technologierisico, met ruime ervaring in securityarchitectuur, risicobeheer, governance en regelgevende compliance in complexe, gereguleerde omgevingen. Hij adviseert het senior leiderschap over het vertalen van technologie- en cyberrisico naar heldere bedrijfs- en governancebeslissingen — met onafhankelijke challenge, strategisch advies en assurance op directie- en bestuursniveau.
Independent, no vendor tiesOnafhankelijk, zonder leveranciersbelangen
No platform to sell, no implementation hours to fill.Geen platform te verkopen, geen implementatie-uren te vullen.
Complementary to CIO, CTO and CISOComplementair aan CIO, CTO en CISO
We strengthen the dialogue between board and technology leadership — we do not replace it.We versterken de dialoog tussen raad en technologieleiding — we vervangen ze niet.
Technology + Legal
Regulatory questions addressed together with specialised counsel: the law by the lawyer, the governance by us.Regelgevingsvragen samen met gespecialiseerde juristen: de wet bij de jurist, de governance bij ons.
Board languageDe taal van de bestuurskamer
Options, trade-offs and evidence — instead of technical reporting.Opties, afwegingen en bewijs — in plaats van technische rapporten.
Good questions deserve straight answers. Goede vragen verdienen duidelijke antwoorden.
What does an independent technology board advisor do?Wat doet een onafhankelijk technology board advisor?
Advise the board independently on technology, cybersecurity, AI and digital regulation: reviewing proposals, challenging assumptions, interpreting risk and strengthening oversight. Not an operational role — the critical, constructive voice at the table.De raad onafhankelijk adviseren over technologie, cybersecurity, AI en digitale regelgeving: voorstellen doorlichten, aannames uitdagen, risico's duiden en het toezicht versterken. Geen operationele rol — wel de kritische, constructieve stem aan tafel.
Does this replace our CIO, CTO or CISO?Vervangt dit onze CIO, CTO of CISO?
No. Management operates technology; we help the board understand and challenge it. Good governance strengthens the position of technology leadership: clearer priorities, realistic expectations, and a board that understands what it decides on.Nee. Het management beheert de technologie; wij helpen de raad ze te begrijpen en te toetsen. Goede governance versterkt net de positie van de technologieleiding: duidelijkere prioriteiten, realistische verwachtingen en een raad die begrijpt waarover hij beslist.
Is this a formal board mandate?Is dit een formeel bestuursmandaat?
Not necessarily. Most engagements are as independent advisor or observer, without a statutory directorship. Where a formal non-executive mandate is appropriate, it is agreed explicitly — the roles are distinct and we keep them precise.Niet noodzakelijk. De meeste opdrachten lopen als onafhankelijk adviseur of waarnemer, zonder statutair bestuursmandaat. Waar een formeel niet-uitvoerend mandaat passend is, wordt dat uitdrukkelijk afgesproken — de rollen verschillen en we houden ze zuiver.
Do you provide legal advice?Geven jullie juridisch advies?
No — technologyboard is not a law firm. For legal interpretation of NIS2, DORA, the AI Act or contracts we work with specialised counsel. We address what the obligations mean for governance, technology and risk — and how the board can demonstrate they are addressed.Nee — technologyboard is geen advocatenkantoor. Voor juridische interpretatie van NIS2, DORA, de AI Act of contracten werken we samen met gespecialiseerde juristen. Wij behandelen wat de verplichtingen betekenen voor governance, technologie en risico — en hoe de raad kan aantonen dat ze zijn afgedekt.
How much time does this require?Hoeveel tijd vraagt dit?
That depends on the format: from quarterly board meetings to a monthly rhythm, or a delimited review. In practice it amounts to a limited number of days per year — agreed in advance, with transparent terms per mandate or assignment.Dat hangt af van de vorm: van kwartaalvergaderingen tot een maandelijks ritme, of een afgebakende review. In de praktijk gaat het om een beperkt aantal dagen per jaar — vooraf afgesproken, met transparante voorwaarden per mandaat of opdracht.
How do we start?Hoe starten we?
With a confidential conversation about the question on your board's table — an upcoming investment, cyber risk, NIS2 responsibility, AI governance, a second opinion. You then receive a concrete proposal; the decision remains yours.Met een vertrouwelijk gesprek over de vraag die op uw bestuurstafel ligt — een geplande investering, cyberrisico, NIS2-verantwoordelijkheid, AI-governance, een second opinion. Daarna ontvangt u een concreet voorstel; de beslissing blijft de uwe.
Discuss a board-level technology question.Bespreek een technologievraag op bestuursniveau.
An upcoming investment, cyber risk, NIS2 responsibility, AI governance, a programme losing pace, a second opinion before you sign — bring the question. The first conversation is exploratory, senior and confidential. Een geplande investering, cyberrisico, NIS2-verantwoordelijkheid, AI-governance, een programma dat vaart verliest, een second opinion vóór u tekent — breng de vraag mee. Het eerste gesprek is verkennend, senior en vertrouwelijk.